Role Summary
We are seeking a highly skilled Level 3 (L3) Identity and Access Management (IAM) Engineer to design, manage, and optimize enterprise IAM solutions using Okta and Auth0. The role requires deep expertise in authentication, authorization, identity federation, and security best practices, along with the ability to lead complex IAM incidents and enhancements.
Key Responsibilities:
IAM Operations & Support (L3)
- Act as the L3 escalation point for IAM incidents related to Okta and Auth0.
- Troubleshoot complex authentication and authorization issues (SSO failures, token issues, MFA errors).
- Perform root cause analysis (RCA) and implement permanent fixes.
Okta Administration
- Manage Okta tenants, applications, and integrations.
- Configure and maintain:
- SAML 2.0, OAuth 2.0, OpenID Connect (OIDC)
- Adaptive MFA and password policies
- User lifecycle management (JML Joiner/Mover/Leaver)
- Integrate Okta with:
- Active Directory / LDAP
- SaaS and on-prem applications
- Perform advanced troubleshooting and performance tuning.
- Manage Okta APIs and workflows for automation.
Auth0 Administration
- Design and manage Auth0 tenants and environments.
- Configure:
- Authentication & authorization flows
- Custom rules, actions, and hooks
- Token customization and claims
- Implement secure API authorization using OAuth 2.0 and JWT.
- Integrate Auth0 with third-party identity providers (Social, Enterprise, Custom IdPs).
- Troubleshoot complex login, token, and federation issues.
Security & Compliance
- Enforce IAM security best practices and Zero Trust principles.
- Implement strong authentication mechanisms (MFA, passwordless).
- Support audits and compliance requirements (ISO 27001, SOC2, PCI DSS).
- Review IAM logs and integrate with SIEM tools.
- Perform periodic access reviews and policy audits.
Design & Enhancements
- Lead IAM solution design and onboarding of new applications.
- Provide technical guidance to L1/L2 IAM teams.
- Drive automation and self-service initiatives.
- Participate in IAM roadmap planning and architecture discussions.
Documentation & Knowledge Transfer
- Create and maintain IAM SOPs, runbooks, and architecture documents.
- Provide KT sessions to L1/L2 teams and stakeholders.
- Participate in change management and CAB reviews.
Required Skills & Experience
Technical Skills
- 8 - 10+ years of experience in IAM.
- 3+ years hands-on experience with Okta.
- 2+ years hands-on experience with Auth0.
- Strong expertise in:
- SAML 2.0, OAuth 2.0, OpenID Connect
- MFA, passwordless authentication
- JWT, token lifecycle, and claims
- Experience with:
- AD / Azure AD / LDAP
- API-based integrations
- Automation using REST APIs, PowerShell, Python, or similar
- Hands-on experience integrating IAM with SIEM/SOAR tools.