Vanguard logo
VanguardPosted 2 weeks ago

Sr. Cloud Security Engineer (Okta Identity Platform Engineering)

HybridMalvern, Pennsylvania, United States

Full TimeSenior LevelEnterpriseFINANCE

Job Summary

Design, implement, and maintain enterprise-scale identity solutions leveraging Okta Workforce Identity capabilities, leading application onboarding initiatives including SAML, OIDC/OAuth, SCIM provisioning, and federation. Develop scalable architectures that improve security, operational efficiency, and end-user experience while partnering with cloud and platform engineering teams to integrate identity controls across enterprise platforms. Automate operational processes, platform governance controls, and compliance reporting using APIs, scripting, workflows, and infrastructure-as-code to reduce manual effort. Own platform resiliency initiatives including disaster recovery planning, service continuity testing, monitoring, and operational readiness reviews, while participating in production support and critical incident response. Establish and maintain monitoring dashboards that provide visibility into platform health and key performance indicators. Implement secure authentication, authorization, and access management controls to support audit readiness and mitigate security risks associated with identity systems. Serve as a technical leader and trusted advisor for workforce identity services, influencing architecture decisions and mentoring engineers to reduce key-person dependency. Drive initiatives that enhance platform security posture through continuous improvement, vulnerability remediation, and threat detection capabilities.

Required Qualifications

  • Minimum 7 years of broad experience working on large-scale systems or services
  • Cloud Security Engineering
  • Identity Platform Engineering
  • Identity and Access Management
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or equivalent experience
  • Extensive hands-on experience with Okta Workforce Identity Cloud
  • At least 2 current Okta certifications (e.g., Okta Certified Professional, Administrator, Consultant, Developer)
  • SAML 2.0
  • OIDC / OAuth 2.0
  • SCIM Provisioning
  • Okta APIs
  • MFA and Adaptive Authentication
  • FastPass
  • Device Assurance
  • Sign-On Policies/Patterns
  • FIDO2 and Okta Verify
  • Identity Lifecycle Management
  • Federation
  • Design
  • Application Onboarding and Troubleshooting
  • Directory Services
  • CI/CD Pipelines
  • GitHub-based Development
  • Infrastructure as Code (Terraform or OpenTofu)
  • Python, PowerShell, or similar scripting languages
  • AWS Services (Lambda, Secrets Manager, CloudWatch)
  • REST APIs
  • Okta Workflows
  • Splunk and Log Analysis
  • Change Management and Production Support

Desired Qualifications

  • Identity Innovation
  • Identity Threat Protection
  • Behavior Detection and Risk Signals
  • Okta AI and Agentic AI capabilities
  • Platform Engineering Automation Framework Development
  • Event-Driven Architectures
  • Governance & Recovery
  • Identity Governance Concepts
  • Disaster Recovery Planning
  • Backup and Recovery Solutions
  • Audit and Compliance Frameworks
  • AWS, GCP and Azure security controls
  • Secrets management
  • PKI and certificate management
  • Security monitoring and observability platforms

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce