Okta Engineering Lead

Apex Systems

Indianapolis (IN)

On-site

USD 120,000 - 180,000

Full time

18 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Medical insurance
Dental insurance
Vision insurance
401K
ESPP
HSA
Employee Assistance Program (EAP)
Corporate discounts

Job summary

Everforth Apex is seeking an IAM SSO Solution Architect/Sr SSO Engineer to lead the design and implementation of IAM strategies across on-prem and cloud environments. You will work with architects and service owners to deliver scalable, adaptable identity solutions that align with business needs.

The role emphasizes integrating AI-driven capabilities, adaptive authentication, and cross-team coordination with IGA and PAM teams to deliver a cohesive identity stack.

Qualifications

  • Experience architecting IAM solutions in Azure and AWS.
  • Knowledge of SAML, SPML, XACML, SCIM, OpenID and OAuth.

Responsibilities

  • Define IAM reference architectures for on-prem and cloud.
  • Lead enterprise governance for IAM standards adoption.
  • Develop reusable, scalable security architectures for cloud services.
  • Collaborate with stakeholders to align IAM with business needs.
  • Guide security roadmaps for cloud security and IAM.

Skills

IAM
Azure/AWS
SAML OpenID OAuth
CASBs Cloud Security
Azure AD Architecture
SSO Federation
Networking basics
Scripting basics

Education

Bachelor's or Master's in Information Assurance/CS/IS

Tools

Azure AD
Ping Identity
ADFS

Job description

Job Description

Job# 3052714

The IAM SSO Solution Architect or Sr SSO Engineer is a technical position which will support the development of security strategies and architecture vision as it relates to the access management initiatives, specifically setting the direction for IAM as it relates to on prem and cloud. The IAM SSO Solution Architect or Sr SSO Engineer will work with other Architects and Service Owners to provide a consensus-based enterprise solution that is scalable, adaptable and synchronized with the ever changing business needs.

As AI driven capabilities are integrated into the identity program, this role will lead the technical enablement of Okta's AI and automation features including adaptive authentication, anomalous behavior detection, and event driven workflows working in close coordination with the IGA and PAM teams to support a cohesive intelligence augmented identity stack.

Key Responsibilities
  • Subject-matter expertise across all IAM topics as it relates to both cloud and on-premises enterprise technology, and the relationship between the architectures.
  • Drive the adoption of Authentication and Authorization reference architectures for existing, new and emerging IAM technologies.
  • Drive the adoption of creative solutions to address complex, global IAM problems.
  • Participate in Identity and Access Management enterprise governance processes and drive IAM standards adoption.
  • Develop effective architecture solutions that not only satisfy immediate project requirements but also deliver a coherent, reusable, reliable and phased architecture to help the business grow and change while aligning to strategic vision.
  • Create, maintain and align the Firm's Information Security policies and standards with industry best practices and business needs in the adoption of cloud services and technologies.
  • Represent Information Security on organizational project teams and ensure adherence to existing security policies and standards.
  • Manage the successful technical delivery of Information Security projects and services for our customers by working directly with key business stakeholders, executives and project teams. Security architects are often the technical lead on initiatives and as such must drive the vision and alignment of the solution delivery. This is not a project manager role.
  • Review and management of technical security roadmaps related to cloud security and IAM within a cloud security context.
  • Deliver technical security configuration architecture expertise in implementing cross-organizational information sharing.
  • Develop solutions and recommendations for issues caused by process challenges, emerging threats and technology changes.
Analytical/Decision Making Responsibilities

The individual in this role must be able to understand and interpret identity and access management strategies and direction. Further, the person must be able to bring together key tenets of Information Security to the IAM cloud strategies and develop technical security solutions that properly align. The Architect will contribute to the overall effort of the IAM direction.

Knowledge, Skills, and Experience Requirements

The individual in this role must be well educated in general aspects of Information Security, namely:

  • Experience architecting IAM solutions within Microsoft Azure , Amazon Web Services (AWS) and, preferably, other cloud providers.
  • Intimately familiar with IAM related protocols such as SAML, SPML, XACML, SCIM, OpenID and OAuth.
  • Experience working with cloud security and governance tools, cloud access security brokers (CASBs), and server virtualization technologies.
  • Federation concepts and technologies particularly with solutions from ADFS and Ping Identity.
  • In-depth experience with Microsoft Azure, particularly Azure AD and architecture designs connecting Azure to enterprise infrastructure.
  • Strong experience with Directories, SSO, Federation, Delegated administration, API gateways, SOA services.
  • Strong understanding of cloud computing architecture, technical design and implementations, including Infrastructure as a Service (IaaS), Platform as a Service (PaaS) and Software as a Service (SaaS) delivery models.
  • Excellent customer service and communication (oral / written) skills required.
  • Strong critical thinking and analytical skills and ability to think "out of the box" required.
  • Must be able to work independently or with a team, under minimum supervision.
  • Consults to key customers and senior management on project design and development scope.
  • Some knowledge of scripting languages (vbscript, powershell, perl, javascript, etc.).
  • Assists customer organizations with planning and implementing complex architecture solutions.
  • Understanding of AI/ML-driven identity controls and adaptive access patterns
Desired skills include
  • Expert level experience in Cloud Authentication and Access management Services.
  • Expert level experience in cloud solution development with Azure, AWS, Google, or other relevant cloud solution architectures.
  • Good understanding of Multi-Factor authentication and Privileged Access Management
  • 2-3 years of software development experience is desirable.
  • Must have working knowledge and understanding of networking technologies such as LAN, WAN, TCP/IP, load balancers, firewalls etc.
Education

Bachelor's or Master's degree in Information Assurance, Computer Science, Information Systems or related field of study.

Experience

8+ years of practical experience in the field of IT is required. 5+ years of direct Information Security experience.

Certification Preferences

A security industry certification is preferred including but not limited to CISSP, SSCP, CISM, SANS GSEC, ECSA, ECSP, and Security+.

Everforth Apex is a world-class IT services company that serves thousands of clients across the globe. When you join Everforth Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRateds Best of Staffing and Great Place to Work in the United Kingdom and Mexico.

Everforth Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Everforth Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Everforth Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Everforth Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our ‘Welcome Packet’ as well, which an Everforth Apex team member can provide.

Everforth Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Everforth Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law.

If you require an accommodation under the Americans with Disabilities Act to participate in an interview with a virtual recruiter or to use our website for a search or application, please contact our Benefits Department at info@apexsystems.com or 804-523-8228. Please note that this contact information is strictly to be used for medical ADA accommodations and that no other inquiries will be answered.

UnitedHealthcare creates and publishes the Transparency in Coverage Machine-Readable Files on behalf of Everforth Apex Systems.

2026 Everforth, Inc. All rights reserved.

Everforth Apex Systems is part of the Commercial Segment of Everforth, Inc.

NYSE: EFOR

4400 Cox Road

Suite 200

Glen Allen, Virginia 23060

Everforth Apex is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Everforth Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer/Tester
Security Engineer/Tester

Apex Systems • Seattle (WA)

On-site
USD 87,000 - 90,000
Medical insurance
401K with company match
Employee stock purchase program
Cloud Engineer
Cloud Engineer

Apex Systems • Plano (TX)

Hybrid
USD 120,000 - 150,000
Sr Azure Cloud Infrastructure Engineer
Sr Azure Cloud Infrastructure Engineer

Apex Systems • Washington

Hybrid
USD 170,000 - 210,000
Medical insurance
Dental insurance
401k plan
+1
Systems Engineer MID - App Services NEN Tools Mgmt
Systems Engineer MID - App Services NEN Tools Mgmt

Apex Systems • San Diego (CA)

On-site
USD 110,000 - 150,000
Health insurance
401K with company match
ESPP (employee stock purchase)
Network Security Analyst 1
Network Security Analyst 1

Apex Systems • Austin (TX)

On-site
USD 70,000 - 90,000
Medical, dental, vision insurance
401(k) with company match
Employee stock purchase program (ESPP)
+3
Full Stack / Java Application Developer
Full Stack / Java Application Developer

Apex Systems • Atlanta (GA)

On-site
USD 120,000 - 160,000
Medical, dental, vision insurance
401K with company match
ESPP (employee stock purchase program)
+4
Quality Assurance Eng
Quality Assurance Eng

Apex Systems • South San Francisco (CA)

On-site
USD 100,000 - 140,000
Comprehensive benefits package
Employee stock purchase program (ESPP)
401K program with match
+2
Software Applications Developer I
Software Applications Developer I

Apex Systems • Anaheim (CA)

On-site
USD 65,000 - 90,000
Medical insurance
401K with company match
ESPP
Tenable Security Engineer II
Tenable Security Engineer II

Apex Systems • Skokie (IL)

On-site
USD 100,000 - 130,000
Medical insurance
401K with company match
ESPP
+2
Security & Identity Engineer
Security & Identity Engineer

Apex Systems • Town of Florida (NY), Northern (KY)

Hybrid
USD 83,000 - 124,000
Medical coverage
Dental coverage
Vision coverage
+6