B

Senior IAM Engineer

Better Mortgage Corporation
NewPosted today

LOCATION

Gurugram · Remote

EXPERIENCE

5+ Years

TYPE

FullTime

SALARY

Negotiable

SKILLS REQUIRED

Identity and Access ManagementSCIM ProvisioningSAML authenticationOAuth and OIDCOkta Administration

Job description

Overview

Own and advance Better's identity and access management program as the subject matter expert for Okta and the broader IAM ecosystem. Administer Okta end to end, integrate it with enterprise systems, partner with Security on access controls, lead lifecycle automation, and serve as the senior escalation point for complex identity issues.

What you'll do

  • Administer Okta end to end, including users, groups, applications, authentication policies, sign-on rules, network zones, and Okta Workflows across the full product suite.
  • Configure and support Okta authentication and access standards, including OAuth/OIDC, SAML, SCIM, Okta FastPass, Device Trust, device-bound SSO, and Device Access.
  • Integrate and manage third-party SaaS applications in Okta, including SSO setup, SCIM-based provisioning and de-provisioning, group push, and role mapping.
  • Own Okta's integrations with Microsoft (Entra ID / Active Directory) and Workday as the HR system of record driving joiner, mover, and leaver events.
  • Design and operate the joiner/mover/leaver lifecycle, ensuring timely, accurate, and auditable provisioning and de-provisioning across all in-scope applications.
  • Ensure application integrations meet security best practices, including least-privilege access, MFA enforcement, strong authentication policies, and well-structured group and role design.
  • Partner with the Security team to design and implement Okta and application-level security controls, policies, and risk-based / adaptive access rules.
  • Support audit, compliance, and access certification activities, including reporting, evidence collection, and periodic access reviews.
  • Build and maintain Okta Workflows and other automations for onboarding, offboarding, group membership, and access reviews.
  • Provide tier 2 and tier 3 support for IAM-related issues, including triage, root-cause analysis, and remediation, and serve as the escalation point for the helpdesk.
  • Document configurations, runbooks, and processes to support team continuity, onboarding, and audit readiness.

What you'll need

  • 5+ years of experience in an Identity and Access Management, IT security, or systems engineering role.
  • Hands-on experience administering Okta in production across the full product suite, including users, groups, applications, authentication policies, and Okta Workflows.
  • Deep working knowledge of identity standards and Okta features, including OAuth/OIDC, SAML, SCIM, Okta FastPass, Device Trust, device-bound SSO, and Device Access.
  • Proven experience integrating third-party SaaS applications with Okta, including SSO and SCIM provisioning.
  • Experience integrating Okta with Microsoft (Entra ID / Active Directory).
  • Experience integrating Okta with Workday as the HR system of record driving lifecycle events.
  • Experience designing and operating joiner/mover/leaver lifecycle processes at scale.
  • Experience partnering with Security teams to implement IAM controls, policies, and best practices for application integrations and access design.
  • Experience providing tier 2 and tier 3 end-user support for identity-related issues.
  • Strong problem-solving and troubleshooting skills, with a structured, root-cause-driven approach.
  • Strong written and verbal communication skills, with the ability to work directly with business, IT, and security stakeholders.

Nice to have

  • Okta Certified Administrator, Okta Certified Consultant, or Okta Certified Master.
  • Experience building AI agents to assist with Okta and IAM management, including automating joiner/mover/leaver tasks, triaging access requests, running access reviews, surfacing anomalous sign-in or policy events, and providing self-service support through Slack or other channels.
  • Experience scripting and integrating with REST APIs, such as Python or JavaScript, to extend Okta and IAM workflows.
  • Experience with privileged access management (PAM) tools, such as CyberArk, BeyondTrust, Delinea, or Keeper.
  • Experience supporting IAM in regulated environments, such as SOX, SOC 2, HIPAA, or PCI.
  • Familiarity with Zero Trust principles and conditional/adaptive access design.

Details

  • Location: Gurugram, Haryana.

Read the full description and apply on the company’s own careers page.

Stay safe

Hiring on Abekus is free for applicants

We never charge a fee, and employers are prohibited from doing so. If a recruiter asks for payment, please report them right away.

Senior IAM Engineer