Senior Okta IAM Engineer

Tenable

Columbia (MD)

Hybrid

USD 115,000 - 153,000

Full time

23 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Medical insurance
Dental insurance
Vision insurance
Disability insurance
Life insurance
401(k) with company match
Employee stock purchase plan
Flexible spending accounts
Employee Assistance Program
Education assistance
Parental leave
Paid time off
Company holidays
Wellness events
Community programs

Job summary

Tenable is seeking a Senior IAM Engineer to lead Okta IAM design, deployment, and governance for our enterprise environment. You will build scalable Terraform modules, manage Workforce Identity Cloud configurations, and automate user provisioning across cloud apps.

You'll work in a hybrid model in Columbia, MD, collaborating with security, IT, and cloud teams while supporting compliance efforts and CI/CD integrations.

Qualifications

  • 8+ years of hands-on experience designing and managing Okta enterprise environments and IAM.
  • 3+ years of production experience using Terraform to manage identity providers and CI/CD pipelines.
  • Ability to commute to the Columbia, MD office three days a week. Hybrid.
  • Deep understanding of identity protocols including SAML 2.0, OAuth 2.0, OIDC, SCIM, and LDAP.
  • Experience with scripting and automation using Python, Bash, or PowerShell, and Okta REST APIs.

Responsibilities

  • Lead design, automated deployment, and administration of the Okta enterprise identity platform.
  • Architect, write, and maintain Terraform modules to provision Okta apps, groups, and policies.
  • Manage Okta Workforce Identity Cloud configurations (SSO, MFA, Adaptive Authentication, UD, Workflows).
  • Automate user onboarding/offboarding and RBAC provisioning across cloud and enterprise apps.
  • Support compliance reporting and integrate Okta Terraform workflows into CI/CD pipelines.

Skills

Okta IAM
Terraform
Identity protocols
Scripting (Python, Bash, PowerShell)
Okta REST APIs
Columbia MD commute

Tools

Terraform
Okta
GitHub/Jenkins CI/CD
Google Workspace
Slack
GitHub/Jira/Confluence

Job description

Who is Tenable?

Tenable® is the Exposure Management company. Over 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent of the Fortune 500, 50 percent of the Global 2000, and large government agencies. Come be part of our journey!

Who is Tenable?

Tenable® is the Exposure Management company. Over 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent of the Fortune 500, 50 percent of the Global 2000, and large government agencies. Come be part of our journey!

What makes Tenable such a great place to work?

Ask a member of our team and they’ll answer, “Our people!” We work together to build and innovate best‑in‑class cybersecurity solutions for our customers; all while creating a culture of belonging, respect, and excellence where we can be our best selves. When you’re part of our #OneTenable team, you can expect to partner with some of the most talented and passionate people in the industry, and have the support and resources you need to do work that truly matters. We deliver results that exceed expectations and we win together!

Applicants must be authorized to work for any employer in the U.S. without sponsorship. We are unable to provide sponsorship for work visas of any kind at the time of hire, or at any point during employment. This includes, but is not limited to: F1-OPT, F1-CPT, H-1B, TN, J-1, etc

Your Role

As a Senior IAM Engineer within our IAM and Corporate Applications team, you will lead the design, automated deployment, and administration of our Okta enterprise identity platform. Your core responsibilities include architecting, writing, and maintaining scalable Terraform modules to provision and manage Okta applications, groups, authentication policies, authorization rules, and admin role assignments. You will manage Okta Workforce Identity Cloud configurations such as SSO, MFA, Adaptive Authentication, Universal Directory, and Workflows. Additionally, you will automate user onboarding, offboarding, and role‑based provisioning (SCIM, SAML, OIDC) across cloud infrastructure and enterprise software. You will enforce Least Privilege Access and Zero Trust policies, assist with compliance reporting (SOX, SOC2, ISO 27001), integrate Okta Terraform workflows into continuous deployment pipelines (GitHub/Jenkins CI/CD), and serve as a subject‑matter expert for complex identity integrations and incident escalations.

Your Opportunity
  • Step in as the primary subject matter expert for all Okta‑related initiatives across our enterprise environment.
  • Leverage Terraform to manage Okta resources and configurations, driving scalable lifecycle management processes and seamless user access control across a secure environment.
  • Assist with managing a broader suite of corporate applications, including Google Workspace, Slack, GitHub, and Atlassian Jira & Confluence.
  • Play a key role in supporting the adoption and integration of emerging AI platforms related to corporate application infrastructure.
What You'll Need
  • 8+ years of hands‑on experience designing and managing Okta enterprise environments and IAM.
  • 3+ years of production experience using Terraform to manage identity providers (specifically the Okta Terraform provider), custom modules, state management, and continuous deployment pipelines.
  • To be considered for this role, you must have the ability to commute to our Columbia, MD office three days a week. Hybrid.
  • Deep understanding of identity protocols including SAML 2.0, OAuth 2.0, OIDC, SCIM, and LDAP.
  • Experience with scripting and automation using Python, Bash, or PowerShell, and interacting directly with Okta REST APIs.
And Ideally
  • Experience with Okta Workflows, Okta Identity Governance (OIG), or Privileged Access Management (PAM) integrations.
  • Experience operating within multi‑cloud environments (AWS, GCP, Azure).
  • A proven track record in enterprise application onboarding automation and directory consolidation.

This is the base pay range for this position. Compensation for the role will depend on a number of factors, including the candidate's qualifications, skills, competencies, location and experience, and may fall outside of the range shown. Employees are also eligible for variable compensation in addition to base pay (commission for sales roles, bonus for non‑sales roles), depending on company and individual performance. Tenable also offers a variety of comprehensive and competitive benefits which include: medical, dental, vision, disability and life insurance; 401(k) retirement savings with company match; an employee stock purchase plan; an employee referral program; flexible spending accounts; an Employee Assistance Program (EAP); education assistance; parental leave; paid time off (PTO); company‑paid holidays; health and wellness events; and community programs.

US Pay Range

$114,500—$152,500 USD

We’re committed to promoting Equal Employment Opportunity (EEO) at Tenable - through all equal employment opportunity laws and regulations at the international, federal, state and local levels. If you need a reasonable accommodation due to a disability during the application or recruiting process, please contact Recruiting@Tenable.com for further assistance.

Tenable Data Consent Statement

Tenable is committed to protecting the privacy and security of your personal data. Depending on your location, one or more of the following notices may apply to you:

General Applicant Privacy Notice

California Applicant Privacy Notice

EU/EEA/UK Applicant Privacy Notice

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Okta IAM Engineer
Senior Okta IAM Engineer

Tenable, Inc. • Columbia (MD)

Hybrid
USD 115,000 - 153,000
Medical insurance
401(k) with company match
Employee stock purchase plan
Staff Security Engineer - Federal
Staff Security Engineer - Federal

Okta • New York (NY)

Hybrid
USD 161,000 - 221,000
Staff Security Engineer - Federal
Staff Security Engineer - Federal

Okta • Washington

On-site
USD 161,000 - 221,000
Equity or bonus
Health, dental, vision insurance
401(k)
+2
Staff Security Engineer - Federal
Staff Security Engineer - Federal

Okta • Seattle (WA)

On-site
USD 161,000 - 221,000
Equity
Bonus
Health insurance
+2
Staff Security Engineer, TDI Okta
Staff Security Engineer, TDI Okta

Isc2 Eastbay Chapter • San Francisco (CA)

On-site
USD 148,000 - 222,000
Health, dental and vision insurance
401(k) with company matching
Paid time off including parental leave
Staff Identity Engineer
Staff Identity Engineer

Okta • Bellevue (WA)

On-site
USD 161,000 - 221,000
Principal Solutions Architect (AWS Technical Alliances)
Principal Solutions Architect (AWS Technical Alliances)

DaParrot Ltd • Northern (KY)

On-site
USD 175,000 - 234,000
Medical insurance
Dental insurance
Vision insurance
+12
Staff Site Reliability Engineer, Networking w/ active TS/SCI
Staff Site Reliability Engineer, Networking w/ active TS/SCI

Okta • Chantilly (VA)

On-site
USD 174,000 - 238,000
Equity where applicable
Bonus
Health, dental & vision insurance
+3
Staff Site Reliability Engineer, Networking w/ active TS/SCI
Staff Site Reliability Engineer, Networking w/ active TS/SCI

Okta • Washington

On-site
USD 174,000 - 238,000
Technical Architect, Auth0
Technical Architect, Auth0

Okta • Bellevue (WA)

On-site
USD 200,000 - 275,000