Develop and enhance enterprise billing and revenue management solutions using SAP BRIM and ABAP, focusing on subscription and usage-based billing models.
Senior IAM Engineer
📜 Description
- Architect and evolve enterprise IAM strategies across Okta, Active Directory, Entra ID, Google Workspace, and SaaS applications.
- Design scalable, secure, and resilient identity solutions while defining IAM standards and procedures.
- Serve as the senior technical owner of the Okta platform, including Universal Directory, SSO, MFA, and Identity Governance.
- Lead Zero Trust initiatives focused on least privilege and continuous verification.
- Develop and implement PAM strategies covering privileged and service accounts.
- Mentor junior IAM engineers through technical guidance and best-practice development.
🛠️ Requirements
- 6+ years of hands-on experience in Identity and Access Management, with at least 3+ years administering Okta in a production environment.
- Deep knowledge of identity and authentication protocols, including SAML 2.0, OAuth 2.0, and OpenID Connect.
- Experience designing and implementing Okta application integrations using SAML, OIDC/OAuth, and SCIM.
- Strong understanding of IAM architecture, identity lifecycle management, and Zero Trust principles.
- Hands-on experience with Okta Universal Directory, SSO, MFA, and Identity Governance.
- Excellent communication and stakeholder-management skills.
✨ Benefits
- Full-time contract position with a long-term engagement and potential opportunity for conversion to a permanent role.
- 100% remote work, with the flexibility to work from anywhere in India.
- Standard full-time schedule of 40 hours per week, Monday through Friday.
- Opportunity to work on enterprise-scale IAM architecture and security initiatives.
- Exposure to hybrid and multi-cloud identity environments spanning Okta, Active Directory, Entra ID, Google Workspace, and SaaS applications.
- Opportunity to influence Zero Trust maturity, identity governance, access automation, and enterprise security strategy.
- Senior-level technical ownership and the opportunity to lead complex IAM projects from concept through delivery.
- Opportunities to mentor engineers and collaborate with security, cloud, infrastructure, and application teams.
Full job description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior IAM Engineer based in India.
This is a senior-level opportunity to shape and evolve an enterprise Identity and Access Management ecosystem across hybrid and multi-cloud environments.
You’ll serve as a technical authority for identity architecture, security, governance, and access automation.
The role combines hands-on engineering with strategic architecture across Okta, Active Directory, Entra ID, Google Workspace, and SaaS applications.
You’ll lead initiatives focused on Zero Trust, identity governance, lifecycle automation, and secure access at scale.
You’ll also influence IAM standards, mentor engineers, and collaborate closely with security, infrastructure, cloud, and application teams.
The position offers the opportunity to lead complex projects from architecture and design through implementation and continuous optimization.
This is a fully remote, long-term contract role for an experienced IAM professional who enjoys solving complex identity challenges and driving security transformation.
Accountabilities:
- Architect and evolve enterprise IAM strategies across Okta, Active Directory, Entra ID, Google Workspace, SaaS applications, and hybrid or multi-cloud environments.
- Design scalable, secure, and resilient identity solutions while defining IAM standards, reference architectures, patterns, policies, and procedures.
- Serve as the senior technical owner of the Okta platform, including Universal Directory, SSO, MFA, Adaptive Authentication, API Access Management, Lifecycle Management, Workflows, and Identity Governance.
- Design and implement complex application integrations using SAML 2.0, OIDC/OAuth 2.0, SCIM, WS-Federation, and other appropriate identity protocols.
- Build and automate joiner, mover, and leaver processes and user provisioning/deprovisioning across cloud and on-premises applications.
- Establish effective identity governance practices covering access requests, access certifications, reviews, segregation of duties, privileged access, RBAC, and ABAC.
- Lead Zero Trust initiatives focused on least privilege, continuous verification, context-aware access, passwordless authentication, device trust, and adaptive MFA.
- Develop and implement PAM strategies covering privileged and service accounts across cloud and on-premises environments.
- Automate IAM configuration and deployment using Okta APIs, Terraform, infrastructure-as-code practices, and CI/CD pipelines.
- Develop Okta Workflows and custom integrations to automate identity and access processes and improve operational efficiency.
- Integrate IAM capabilities with security and operational platforms such as CSPM, SIEM/SOAR, and ITSM solutions.
- Establish continuous compliance monitoring, automate access reporting and evidence collection, and support regular access certification campaigns.
- Ensure IAM controls align with relevant compliance and security frameworks, including SOC 2, ISO 27001, NIST CSF, HIPAA, and PCI-DSS.
- Support internal and external audits by providing documentation, evidence, and technical walkthroughs.
- Monitor identity-related threats and anomalies in partnership with security operations teams and conduct regular IAM security assessments.
- Mentor junior IAM engineers through technical guidance, code reviews, knowledge sharing, and best-practice development.
- Lead cross-functional IAM initiatives from planning and architecture through implementation, stakeholder communication, risk management, and delivery.
- Communicate IAM strategies, risks, recommendations, and technical concepts effectively to both technical and non-technical stakeholders.
- Stay current with emerging IAM technologies, security threats, identity standards, and platform capabilities, identifying opportunities for continuous improvement.
- 6+ years of hands-on experience in Identity and Access Management, including at least 3+ years administering and engineering Okta in a production enterprise environment.
- Deep practical knowledge of identity and authentication protocols, including SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, WS-Federation, LDAP, and Kerberos.
- Demonstrated experience designing and implementing real-world Okta application integrations using SAML, OIDC/OAuth, and SCIM, with the ability to select the appropriate protocol based on application capabilities and business requirements.
- Strong experience integrating Okta with Active Directory, Entra ID, Google Workspace, and cloud directories within hybrid environments.
- Strong understanding of IAM architecture, identity lifecycle management, access governance, authentication, authorization, and Zero Trust principles.
- Hands-on experience with Okta Universal Directory, SSO, MFA, Adaptive Authentication, Lifecycle Management, Workflows, and Identity Governance.
- Experience with RBAC and ABAC models, privileged access management, access reviews, certifications, and segregation-of-duties controls.
- Practical knowledge of cloud and enterprise security environments, with an understanding of identity-related risks and security operations.
- Experience using Okta APIs, Terraform, infrastructure-as-code, automation, and CI/CD practices to manage IAM configurations and deployments.
- Ability to design scalable integrations and automate identity processes across SaaS, cloud, and on-premises environments.
- Familiarity with security and compliance frameworks such as SOC 2, ISO 27001, NIST CSF, HIPAA, and PCI-DSS.
- Strong analytical and problem-solving skills, with the ability to troubleshoot complex identity issues and make sound architectural decisions.
- Excellent communication and stakeholder-management skills, with the ability to explain technical IAM concepts to both engineering teams and business leaders.
- Demonstrated leadership skills and the ability to mentor engineers, lead technical initiatives, and manage cross-functional projects.
- Comfortable working independently in a fully remote environment and taking ownership of complex, high-impact IAM initiatives.
- Full-time contract position with a long-term engagement and potential opportunity for conversion to a permanent role.
- 100% remote work, with the flexibility to work from anywhere in India.
- Standard full-time schedule of 40 hours per week, Monday through Friday.
- Opportunity to work on enterprise-scale IAM architecture and security initiatives.
- Exposure to hybrid and multi-cloud identity environments spanning Okta, Active Directory, Entra ID, Google Workspace, and SaaS applications.
- Opportunity to influence Zero Trust maturity, identity governance, access automation, and enterprise security strategy.
- Senior-level technical ownership and the opportunity to lead complex IAM projects from concept through delivery.
- Opportunities to mentor engineers and collaborate with security, cloud, infrastructure, and application teams.
- Long-term opportunity within a technically challenging and security-focused environment.
Requirements:
Benefits:
Similar jobs
Search more Software Engineer jobsSr. Software Engineer II (Remote Eligible)
Design and build full-stack features while leading complex projects and enhancing engineering standards in a collaborative environment.
As a Forward Deployed Engineer, you will lead the implementation of AI agents for credit unions, ensuring they go live and perform effectively while integrating with core banking systems.
Senior Software Engineer
Design and deliver reliable, scalable software solutions as a Senior Software Engineer, shaping system architecture and guiding engineering practices.
Senior Java Developer
Design and build complex Java applications and services while leading technical work, setting coding standards, and mentoring other developers.
