Identity & Endpoint Security Engineer (Okta)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Location: Torrance, California, United States. U.S. citizenship or lawful permanent residency is required to conform with ITAR export regulations, and the role requires the ability to obtain and maintain a TS/SCI clearance.
Salary: $120,000–$190,000 per year, plus equity, discretionary performance bonuses, and benefits.
Company
Space builds a global network of phased array ground stations and communications infrastructure for satellite missions, including national security, connectivity, and disaster response.
What you will do
- Own and operate the Okta environment, including tenant configuration, application integrations, lifecycle management, MFA, adaptive authentication, workflows, and directory synchronization.
- Design SSO integrations using SAML, OIDC, and OAuth 2.0 for SaaS applications, internal tools, and government-facing platforms.
- Design RBAC frameworks, role taxonomies, access request workflows, entitlement reviews, certification campaigns, and segregation-of-duties controls.
- Architect and manage MDM across macOS, Windows, Linux, iOS, and Android endpoints, including security baselines, configuration profiles, compliance policies, and automated remediation.
- Implement privileged access and service account governance, including credential rotation, least-privilege controls, break-glass procedures, and audit logging.
- Support SIEM integration, identity-aware network access, zero-trust policies, and audit activities across CMMC, FedRAMP, SOC 2, and ITAR environments.
Requirements
- 3+ years of hands-on IAM engineering experience with production Okta administration.
- Deep experience with Okta SSO, lifecycle management, MFA, adaptive authentication, Okta Workflows, and SIEM log integration.
- Hands-on experience with SAML 2.0, OIDC, OAuth 2.0, RBAC, entitlement reviews, access certification, and privileged access controls.
- Experience integrating identity platforms with endpoint management, cloud environments, and security monitoring tools.
- Understanding of NIST 800-171 identity and access control requirements and government compliance environments.
- Ability to obtain and maintain a TS/SCI clearance; U.S. citizenship or lawful permanent residency required for ITAR compliance.
Nice to have
- Active TS clearance or higher.
- Experience with Okta in AWS GovCloud or Microsoft GCC environments and familiarity with Okta Identity Governance.
- Experience with Cloudflare Zero Trust, CyberArk, BeyondTrust, CMMC, FedRAMP, or SOC 2 audits.
- Background in aerospace, defense, critical infrastructure, or regulated government-adjacent environments.
- Okta, CISSP, or CISM certification.
Culture & Benefits
- Equity and long-term incentives, including company stock options and discretionary performance bonuses.
- Comprehensive medical, vision, and dental coverage with flexible spending accounts.
- Flexible time off and 10 or more paid holidays per year.
- Retirement savings plans and professional development opportunities.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →