Назад
Company hidden
14 часов назад

Sr. Staff IAM Architect

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Sr. Staff IAM Architect (Auth0/Okta): Designing and governing identity architecture across workforce, customer, partner, non-human, and AI agent identities with an accent on CIAM, federation, identity governance, and regulated access controls. Focus on building Auth0 and Okta reference patterns, consolidating authentication paths, extending identity security posture management, and producing audit evidence for HIPAA, HITRUST, and SOC 2.

Location: United States — Remote

Company

hirify.global provides telehealth support solutions that streamline care delivery for companies offering virtual patient support across multiple specialties and all 50 states.

What you will do

  • Own the target-state identity architecture across workforce, non-employee, external, non-human, and AI agent identities.
  • Design and govern the Auth0 customer identity platform, including tenant and organization modeling, MFA, phishing-resistant authentication, and machine-to-machine flows.
  • Define workforce identity consolidation, federation, directory, SSO, SCIM provisioning, and automated deprovisioning patterns across Okta, Entra ID, AWS, and GCP.
  • Build Identity Security Posture Management capabilities, including posture metrics, remediation workflows, drift alerting, and SIEM-integrated identity threat detection.
  • Design access controls and control mappings for HIPAA, HITRUST, and SOC 2, making audit evidence a byproduct of the architecture.
  • Act as the design authority connecting identity-risk findings with engineering remediation and adoption of reference patterns.

Requirements

  • 8+ years of experience in identity and access management, security engineering, or platform architecture, including 3+ years at a staff, principal, or architect level.
  • Hands-on experience designing and delivering CIAM platforms end to end, ideally with Auth0, including tenant and organization modeling, MFA, and machine-to-machine authentication.
  • Strong knowledge of SAML, OIDC, OAuth 2.0, SCIM, WebAuthn, and FIDO2.
  • Enterprise workforce IdP architecture experience with Okta or an equivalent platform, including migrations from fragmented authentication sources.
  • Experience setting architectural direction, documenting decisions, and driving adoption without direct authority.
  • Must be based in the United States.

Nice to have

  • Identity governance experience with joiner-mover-leaver lifecycle, RBAC, access certification, segregation of duties, SailPoint ISC, or NERM.
  • Cloud PAM, zero-standing-privilege models, and just-in-time access tooling such as Britive.
  • Cloud-native identity across AWS, GCP, and Azure, including migrations from AWS Cognito or social and directory sign-in.
  • Non-human identity, service account governance, secrets management, or AI agent identity experience.
  • Terraform, identity threat detection, SIEM integration, regulated-industry access controls, relevant certifications, or digital health experience.

Culture & Benefits

  • Remote work in a relatively flat organizational structure.
  • Autonomy, competence, and belonging are core operating values.
  • Medical, dental, and vision plans.
  • Flexible Spending Accounts or Health Savings Accounts, flexible PTO, and 401(k) with company match.
  • Life insurance, pet insurance, and additional benefits.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →