Senior IAM Engineer
Job description
About the role
The role defines identity as the foundation of business operations and builds the Integration/Orchestration Infrastructure that powers critical revenue cycles. The position collaborates with cross-functional teams to design and enforce IAM strategy across the enterprise.
Software engineers turn product ideas into working code. Engineers work in small teams, review each other's work, and ship in small batches. Most teams follow agile practices such as sprints and daily standups. Engineers also write tests, fix bugs, and improve performance. The field values clear communication as much as technical skill. Engineers spend part of every week on planning, code review, and debugging, not just writing new code. The ability to explain a technical decision in plain words separates strong engineers from the rest.
Key facts
What you'll do
These processes ensure consistent identity governance across the ecosystem.
Build and optimize complex, multi-step automation flows while treating integrations as a product.
These controls align access with least-privilege and regulatory requirements.
Manage SAML, OIDC, and MFA configurations to support secure Single Sign-On.
These scripts support large-scale data imports and exports.
Implement identity-driven automation that removes friction in business workflows.
Requirements
Proficiency in Python, Ruby, or other scripting languages for automating tasks and handling large-scale data imports and exports.
Demonstrated experience building event-driven automation flows. Use custom API connectors and robust error handling to support critical integrations.
Comfort working with RESTful APIs, JSON structures, and webhook-driven architectures.
Experience managing identity providers through Infrastructure as Code using Terraform or GitHub.
Understanding of Zero Trust architecture and familiarity with Privileged Access Management tools such as CyberArk or BeyondTrust.
5-8+ years of hands-on Identity and Access Management experience, including deep expertise with Okta (OIE and OIG).
Strong knowledge of identity lifecycle management, directory services, SSO, MFA, SCIM provisioning, and federation using SAML, OIDC, and OAuth.
Proven partnership with HR, Finance, Compliance, and cross-functional teams to design and implement IAM and enterprise solutions.
Demonstrated ability to streamline and automate processes using infrastructure-as-code and integration tools.
Experience with auditing, governance, and access certification processes to maintain compliance.
Excellent problem-solving, communication, and stakeholder management skills to influence technical decisions.
Nice to have
Experience with Workato or similar integration orchestrators such as Zapier, SnapLogic, or Merge.
Certifications for Workato or Okta as a Professional, Administrator, or Consultant.
Experience integrating IAM with HR systems like Workday.
Knowledge of compliance frameworks relevant to identity management.
Background in cloud platforms including AWS, GCP, or Azure and their identity services.
Experience with IAM platforms such as Auth0 or Azure AD.
Practical notes
This role requires work authorization in the United States. Hybrid work arrangements include defined in-office rhythms depending on team and hub assignments. Travel is not expected as part of this role. Typical interview steps
Hiring for engineering roles usually starts with a recruiter screen, followed by one or two technical rounds. Candidates often solve a coding problem, discuss past projects, and answer system design questions. Some loops include a take-home task. Final rounds typically cover team fit and give candidates a chance to ask questions. Interviewers look for how you break down an unfamiliar problem, not just whether you reach the answer. Practicing a few problems aloud and reviewing your own past projects are the best preparation.
Good to know
Identity and access management form the security backbone of modern cloud platforms.
Automation tools like integration platforms as a service enable rapid orchestration across enterprise systems.
Role-based and attribute-based access controls enforce least-privilege principles for humans and machines.
Infrastructure as code supports consistent identity provisioning across cloud providers and on-premises directories.
Zero Trust principles assume no implicit trust and continuously validate every access request.
Securing AI and data infrastructure requires strict identity governance for both human and non-human entities.