Identity & Access Management Engineer
Core
Own the day-to-day administration and continuous improvement of the identity and access environment, focusing on Okta, application integrations, lifecycle automation, and identity governance.
Role type
Identity & Access Management Engineer
Builds
Secure, connected, and easy-to-work-in identity infrastructure for 25 million employees across 6,000 companies
Domain
Cloud Identity & Access Management (IAM)
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Okta administration, SAML, SCIM, OIDC, MFA, lifecycle policies, authentication, session, and device trust policies, SaaS application onboarding, identity governance, HRIS integration automation, access certification, OAuth, shadow IT detection
Preferred skills
Google Workspace, Active Directory, MS Entra, Jamf, Island
Responsibilities
Manage day-to-day identity and access administration in Okta, including provisioning, deprovisioning, MFA resets, application access requests, and authentication, session, and device trust policies; Full lifecycle management of SaaS applications and maintain existing SAML, SCIM, and OIDC configurations and group mappings; Build and own joiner, mover, and leaver workflows end to end, including automated pipelines using Okta Workflows, APIs, and SCIM to connect the HRIS to Okta; Configure, deploy, and continuously improve Okta Identity Governance, including access request workflows and self-service or automated approval paths aligned to access policy; Support audit and compliance activities by automating access certification reporting, gathering system and directory log evidence for SOC 2 and ISO 27001 audits, and reviewing inactive SaaS licences and unapproved OAuth integrations; Contribute to configuration, optimisation and troubleshooting for other ancillary platforms as required, such as Google Workspace, Active Directory / MS Entra, Island & Jamf
Seniority
Mid-level, hands-on IC