The posting
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior IAM Engineer based in India.
This is a senior-level opportunity to shape and evolve an enterprise Identity and Access Management ecosystem across hybrid and multi-cloud environments. You’ll serve as a technical authority for identity architecture, security, governance, and access automation. The role combines hands-on engineering with strategic architecture across Okta, Active Directory, Entra ID, Google Workspace, and SaaS applications. You’ll lead initiatives focused on Zero Trust, identity governance, lifecycle automation, and secure access at scale. You’ll also influence IAM standards, mentor engineers, and collaborate closely with security, infrastructure, cloud, and application teams. The position offers the opportunity to lead complex projects from architecture and design through implementation and continuous optimization. This is a fully remote, long-term contract role for an experienced IAM professional who enjoys solving complex identity challenges and driving security transformation.
Accountabilities:
- Architect and evolve enterprise IAM strategies across Okta, Active Directory, Entra ID, Google Workspace, SaaS applications, and hybrid or multi-cloud environments.
- Design scalable, secure, and resilient identity solutions while defining IAM standards, reference architectures, patterns, policies, and procedures.
- Serve as the senior technical owner of the Okta platform, including Universal Directory, SSO, MFA, Adaptive Authentication, API Access Management, Lifecycle Management, Workflows, and Identity Governance.
- Design and implement complex application integrations using SAML 2.0, OIDC/OAuth 2.0, SCIM, WS-Federation, and other appropriate identity protocols.
- Build and automate joiner, mover, and leaver processes and user provisioning/deprovisioning across cloud and on-premises applications.
- Establish effective identity governance practices covering access requests, access certifications, reviews, segregation of duties, privileged access, RBAC, and ABAC.
- Lead Zero Trust initiatives focused on least privilege, continuous verification, context-aware access, passwordless authentication, device trust, and adaptive MFA.
- Develop and implement PAM strategies covering privileged and service accounts across cloud and on-premises environments.
- Automate IAM configuration and deployment using Okta APIs, Terraform, infrastructure-as-code practices, and CI/CD pipelines.
- Develop Okta Workflows and custom integrations to automate identity and access processes and improve operational efficiency.
- Integrate IAM capabilities with security and operational platforms such as CSPM, SIEM/SOAR, and ITSM solutions.
- Establish continuous compliance monitoring, automate access reporting and evidence collection, and support regular access certification campaigns.
- Ensure IAM controls align with relevant compliance and security frameworks, including SOC 2, ISO 27001, NIST CSF, HIPAA, and PCI-DSS.
- Support internal and external audits by providing documentation, evidence, and technical walkthroughs.
- Monitor identity-related threats and anomalies in partnership with security operations teams and conduct regular IAM security assessments.
- Mentor junior IAM engineers through technical guidance, code reviews, knowledge sharing, and best-practice development.
- Lead cross-functional IAM initiatives from planning and architecture through implementation, stakeholder communication, risk management, and delivery.
- Communicate IAM strategies, risks, recommendations, and technical concepts effectively to both technical and non-technical stakeholders.
- Stay current with emerging IAM technologies, security threats, identity standards, and platform capabilities, identifying opportunities for continuous improvement.
- 6+ years of hands-on experience in Identity and Access Management, including at least 3+ years administering and engineering Okta in a production enterprise environment.
- Deep practical knowledge of identity and authentication protocols, including SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, WS-Federation, LDAP, and Kerberos.
- Demonstrated experience designing and implementing real-world Okta application integrations using SAML, OIDC/OAuth, and SCIM, with the ability to select the appropriate protocol based on application capabilities and business requirements.
- Strong experience integrating Okta with Active Directory, Entra ID, Google Workspace, and cloud directories within hybrid environments.
- Strong understanding of IAM architecture, identity lifecycle management, access governance, authentication, authorization, and Zero Trust principles.
- Hands-on experience with Okta Universal Directory, SSO, MFA, Adaptive Authentication, Lifecycle Management, Workflows, and Identity Governance.
- Experience with RBAC and ABAC models, privileged access management, access reviews, certifications, and segregation-of-duties controls.
- Practical knowledge of cloud and enterprise security environments, with an understanding of identity-related risks and security operations.
- Experience using Okta APIs, Terraform, infrastructure-as-code, automation, and CI/CD practices to manage IAM configurations and deployments.
- Ability to design scalable integrations and automate identity processes across SaaS, cloud, and on-premises environments.
- Familiarity with security and compliance frameworks such as SOC 2, ISO 27001, NIST CSF, HIPAA, and PCI-DSS.
- Strong analytical and problem-solving skills, with the ability to troubleshoot complex identity issues and make sound architectural decisions.
- Excellent communication and stakeholder-management skills, with the ability to explain technical IAM concepts to both engineering teams and business leaders.
- Demonstrated leadership skills and the ability to mentor engineers, lead technical initiatives, and manage cross-functional projects.
- Comfortable working independently in a fully remote environment and taking ownership of complex, high-impact IAM initiatives.
- Full-time contract position with a long-term engagement and potential opportunity for conversion to a permanent role.
- 100% remote work, with the flexibility to work from anywhere in India.
- Standard full-time schedule of 40 hours per week, Monday through Friday.
- Opportunity to work on enterprise-scale IAM architecture and security initiatives.
- Exposure to hybrid and multi-cloud identity environments spanning Okta, Active Directory, Entra ID, Google Workspace, and SaaS applications.
- Opportunity to influence Zero Trust maturity, identity governance, access automation, and enterprise security strategy.
- Senior-level technical ownership and the opportunity to lead complex IAM projects from concept through delivery.
- Opportunities to mentor engineers and collaborate with security, cloud, infrastructure, and application teams.
- Long-term opportunity within a technically challenging and security-focused environment.
How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1



