Duration: 7-month assignment with possibility of extension(s) based on performance and budget
Pay: ~$80/hr.
Location: Remote (EST)
(Cannot work C2C at this time)
Who You’ll Work With
You’ll join a global cybersecurity team within the Secure Foundations Cyber Security group, focused on Identity and Access Management (IAM). This team is responsible for developing and managing IAM services globally, supporting both internal and external applications. Team members are distributed across multiple regions, including North America, Europe, and Asia, promoting a collaborative, diverse, and innovative work environment.
What You’ll Do
As a Lead Okta Identity Governance Engineer, you will play a critical role in the digital transformation of IAM processes, focusing on the seamless migration from legacy systems like IBM Tivoli Identity Management to Okta Identity Governance (OIG). This position involves:
- Leading the design, implementation, and maintenance of identity governance solutions using Okta Identity Governance.
- Configuring OIG components, including Lifecycle Management, Access Certification, Okta Workflows, and Access Governance.
- Developing and integrating custom IAM solutions with enterprise applications using APIs.
- Collaborating closely with IT, security, and application development teams to align IAM solutions with organizational goals.
- Ensuring compliance with security best practices and company policies.
- Automating identity governance tasks using Okta Workflows, inline hooks, event hooks, and custom connectors.
- Managing user lifecycle processes, access request workflows, and access certifications.
- Performing rigorous testing and validation of OIG implementations for functionality, performance, and security.
- Documenting configurations, processes, and workflows to support team knowledge sharing.
QualificationsMinimum Professional Experience- 6+ years of IT professional experience.
- 4+ years of IT security experience.
- 3+ years of hands-on experience in Identity and Access Management (IAM) in complex enterprise environments.
- 3+ years of experience with Okta Identity Cloud, including core functionalities like Lifecycle Management, Access Governance, Workflows, and API integrations.
Required Certifications- Okta Certified Administrator (Mandatory)
- Okta Certified Developer (Mandatory)
- Okta Certified Workflow (Nice to have)
Technical Expertise- Advanced understanding of Okta APIs, including REST, OIDC, and OAuth flows.
- Proficiency in scripting languages like Python and JavaScript for custom identity solutions.
- Experience using Okta API Access Management to secure APIs and integrate with enterprise systems.
- Strong understanding of IAM concepts, including user provisioning, authentication protocols (SAML, OAuth), directory services, and security best practices.
- Proficiency in version control systems (Git) and CI/CD pipelines.
- Experience with relational databases and cloud-based warehousing (e.g., Snowflake).
Desired Skills (Nice-to-Have)- Experience integrating on-premises applications with SSO solutions and multiple IdPs using SAML/OIDC.
- Experience with infrastructure as code (IaC) tools like Terraform and Ansible.
- Familiarity with cloud platforms like AWS and Azure.
- Experience with JML (Join, Move, Leave) processes and identity lifecycle management.
- Knowledge of security frameworks and secure coding principles.
Job Duties and ResponsibilitiesTechnical Leadership- Lead the technical design and development of OIG migration projects.
- Define target states for OIG implementations, mapping legacy ITIM functionalities to modern OIG features.
- Create and maintain automation scripts to streamline identity and access management tasks.
- Implement and optimize Okta Workflows, including inline hooks, event hooks, and delegated flows.
- Conduct access reviews and certifications to ensure compliance with organizational policies and regulations.
Integration and Automation- Integrate various applications with Okta using JDBC, REST web services, Active Directory, and other directory services.
- Develop custom connectors and automation tools for seamless identity management.
- Implement access governance workflows to enforce proper access control and certification processes.
Collaboration and Communication- Partner with stakeholders to make informed decisions throughout the project lifecycle.
- Collaborate with security and engineering teams to ensure seamless integration with existing infrastructure.
- Document processes, configurations, and workflows to support team knowledge sharing.
Testing and Quality Assurance- Design and execute rigorous test plans to validate the migrated OIG solution's functionality, performance, and security.
- Monitor OIG implementations for optimal performance and proactively troubleshoot issues.
Ongoing Support and Continuous Improvement- Provide ongoing support to users during and after the migration, addressing emerging issues.
- Stay up to date with the latest IAM trends, technologies, and best practices.
- Propose and implement improvements to enhance the security and functionality of identity governance processes.