Назад
Company hidden
20 часов назад

Identity & Endpoint Security Engineer (Okta)

120 000 - 190 000$
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Identity & Endpoint Security Engineer (Okta/IAM): Designing and operating identity, endpoint security, and access governance controls across corporate systems, cloud environments, and sensitive government workloads with an accent on Okta administration, RBAC, SSO, MDM, and least-privilege access. Focus on enforcing CMMC, FedRAMP, NIST, and ITAR requirements, integrating identity telemetry with SIEM, and securing hybrid environments through zero-trust controls.

Location: Torrance, California, United States. U.S. citizenship or lawful permanent residency is required to conform with ITAR export regulations, and the role requires the ability to obtain and maintain a TS/SCI clearance.

Salary: $120,000–$190,000 per year, plus equity, discretionary performance bonuses, and benefits.

Company

hirify.global Space builds a global network of phased array ground stations and communications infrastructure for satellite missions, including national security, connectivity, and disaster response.

What you will do

  • Own and operate the Okta environment, including tenant configuration, application integrations, lifecycle management, MFA, adaptive authentication, workflows, and directory synchronization.
  • Design SSO integrations using SAML, OIDC, and OAuth 2.0 for SaaS applications, internal tools, and government-facing platforms.
  • Design RBAC frameworks, role taxonomies, access request workflows, entitlement reviews, certification campaigns, and segregation-of-duties controls.
  • Architect and manage MDM across macOS, Windows, Linux, iOS, and Android endpoints, including security baselines, configuration profiles, compliance policies, and automated remediation.
  • Implement privileged access and service account governance, including credential rotation, least-privilege controls, break-glass procedures, and audit logging.
  • Support SIEM integration, identity-aware network access, zero-trust policies, and audit activities across CMMC, FedRAMP, SOC 2, and ITAR environments.

Requirements

  • 3+ years of hands-on IAM engineering experience with production Okta administration.
  • Deep experience with Okta SSO, lifecycle management, MFA, adaptive authentication, Okta Workflows, and SIEM log integration.
  • Hands-on experience with SAML 2.0, OIDC, OAuth 2.0, RBAC, entitlement reviews, access certification, and privileged access controls.
  • Experience integrating identity platforms with endpoint management, cloud environments, and security monitoring tools.
  • Understanding of NIST 800-171 identity and access control requirements and government compliance environments.
  • Ability to obtain and maintain a TS/SCI clearance; U.S. citizenship or lawful permanent residency required for ITAR compliance.

Nice to have

  • Active TS clearance or higher.
  • Experience with Okta in AWS GovCloud or Microsoft GCC environments and familiarity with Okta Identity Governance.
  • Experience with Cloudflare Zero Trust, CyberArk, BeyondTrust, CMMC, FedRAMP, or SOC 2 audits.
  • Background in aerospace, defense, critical infrastructure, or regulated government-adjacent environments.
  • Okta, CISSP, or CISM certification.

Culture & Benefits

  • Equity and long-term incentives, including company stock options and discretionary performance bonuses.
  • Comprehensive medical, vision, and dental coverage with flexible spending accounts.
  • Flexible time off and 10 or more paid holidays per year.
  • Retirement savings plans and professional development opportunities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →