Design, deploy, and maintain robust, highly-available IAM infrastructure, leveraging tools like Okta for identity services and SailPoint for access governance and lifecycle management.
Develop and maintain automation scripts (Python, PowerShell, or similar) to streamline identity lifecycle processes and integrate IAM solutions using Infrastructure-as-Code (IaC) principles.
Implement and enforce modern authorization and authentication standards, including SAML, OAuth 2.0, OpenID Connect (OIDC), and SCIM for seamless and secure application integration.
Assist in the engineering and operational support of PAM solutions to manage and audit access to critical systems and administrative accounts.
Collaborate closely with product, engineering, and risk teams to embed fraud controls into application development lifecycles and business processes.
Partner with security operations team to utilize application logs and security events from Coupa products into our centralized SIEM for real-time fraud detection and response.
Serve as a technical expert during fraud-related security incidents, assisting with forensic analysis and remediation.
Requirements
3-5 years of hands-on experience in an IAM Engineering, Application Security, or Cyber Security role within a cloud-native environment.
Proven, hands-on experience engineering and maintaining enterprise-level IAM solutions, including strong practical knowledge of Okta and/or SailPoint.
Deep expertise in modern authorization and authentication protocols (SAML, OAuth 2.0, OIDC, SCIM).
Proficiency in scripting or programming languages for automation and building APIs/integrations.
Expertise in application security principles with the ability to specifically address fraud
Solid understanding of cloud security principles and experience with cloud Identity Providers (e.g., Azure AD/Entra ID, AWS IAM).