Responsibilities: • Okta Platform Ownership: Administer, maintain, and optimize our Okta tenant, including Universal Directory, Single Sign-On (SSO), and Multi-Factor Authentication (MFA) policies.
• Lifecycle Management (LCM): Design, implement, and maintain advanced user provisioning and deprovisioning solutions (JIT, SCIM) across our entire application ecosystem (e.g., Google Workspace, Slack, etc).
• Automation with Workflows: Develop, test, and manage complex, resilient automation using Okta Workflows to streamline identity processes, orchestrate actions between systems, and enforce security policies.
• Authentication & Authorization: Configure and manage SSO integrations using industry-standard protocols such as SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC).
• Experience with Infrastructure as Code (IaC) tools for managing configuration (e.g., Terraform).
• Security Posture: Partner with the Security team to enhance and enforce a Zero Trust security model by implementing strong, adaptive authentication rules and least-privilege access across all applications.
• Access Reviews: Manage and automate access certification campaigns and audits to meet compliance requirements (e.g., SOC 2, ISO 27001).
• Troubleshooting: Serve as the Tier 3 escalation point for all complex IAM-related issues, providing expert diagnosis and resolution for identity, federation, and access problems.
• Scripting & API Integration: Utilize scripting languages (Python, PowerShell) and Okta's API to create custom integrations, manage system configurations, and further automate tasks that cannot be handled by built-in connectors or workflows.
Requirements: • Experience: 5+ years of hands-on experience in Identity and Access Management engineering, with a minimum of 3 years dedicated to Okta administration and engineering.
• Okta Expertise: Deep, demonstrable expertise in Okta's core products, including Okta Workflows, Okta Lifecycle Management, and Okta Adaptive/Contextual MFA.
• Technical Protocols: Expert-level knowledge of authentication and authorization protocols (SAML, OAuth, OIDC, SCIM).
• Scripting: Proficiency in at least one scripting language (e.g., Python, PowerShell) for API interaction and automation.
• SaaS/Cloud Integration: Proven experience integrating Okta with critical enterprise SaaS applications like Google Workspace, Slack, and cloud platforms (AWS, Azure, or GCP).
⚡
Показать контакты
#Гибрид #ИБ
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Текст вакансии взят без изменений
Источник - Telegram канал. Название доступно после авторизации