Jobs · devitjobs

V

Sr. Cloud Security Engineer (Okta)

Vanguard · Posted 7d ago

onsiteFull-timesenior8+ yrs$120,000 - 160,000🇺🇸 United States
Apply on devitjobs

About the role

Salary: $120,000 - 160,000 per year Requirements: We need at least 7 years of broad experience in large-scale systems or services, cloud security engineering, identity platform engineering, identity and access management, or a related discipline. We require a bachelors degree in Computer Science, Information Technology, Cybersecurity, Engineering, or equivalent practical experience. We need extensive hands-on experience with Okta Workforce Identity Cloud. We require at least 2 current Okta certifications, such as Okta Certified Professional, Administrator, Consultant, or Developer. We expect demonstrated expertise in SAML 2.0, OIDC/OAuth 2.0, SCIM provisioning, Okta APIs, MFA and adaptive authentication, FastPass, device assurance, sign-on policies, FIDO2, Okta Verify implementations, identity lifecycle management, federation design, application onboarding and troubleshooting, and directory services. We need strong experience with CI/CD pipelines, GitHub-based development, infrastructure as code (Terraform or OpenTofu), Python, PowerShell, or similar scripting languages, AWS services, REST APIs, Okta Workflows, Splunk and log analysis, and change management/production support. Preferred experience includes identity threat protection, behavior detection and risk signals, Okta AI or agentic AI capabilities, automation framework development, event-driven architectures, identity governance concepts, disaster recovery planning, backup and recovery solutions, audit and compliance frameworks, and AWS, GCP, and Azure security controls. We also value experience with secrets management, PKI and certificate management, and security monitoring/observability platforms. Responsibilities: We design, implement, and maintain enterprise-scale identity solutions using Okta Workforce Identity capabilities. We lead application onboarding efforts, including SAML, OIDC/OAuth, SCIM provisioning, federation, lifecycle management, and authentication integrations. We develop scalable identity architectures that strengthen security, improve operational efficiency, and enhance the end-user experience. We partner with cloud and platform engineering teams to integrate identity controls across enterprise platforms and cloud environments. We build automation using APIs, scripting, workflows, infrastructure as code, and CI/CD pipelines to reduce manual work and improve service delivery. We automate operational processes, platform governance controls, application onboarding activities, and compliance reporting. We apply platform engineering best practices, including Git-based deployment models, testing strategies, release management, and configuration standardization. We continuously evaluate emerging technologies and capabilities to improve scalability, reliability, security, and operational effectiveness. We own resiliency initiatives, including disaster recovery planning, service continuity testing, monitoring, observability, and operational readiness reviews. We support production operations and critical incident response while driving permanent engineering fixes for recurring issues. We lead root cause analysis and implement preventative controls to improve platform stability. We establish and maintain monitoring, alerting, and operational dashboards that provide visibility into platform health and key performance indicators. We implement and maintain secure authentication, authorization, and access management controls. We support audit readiness through controls, documentation, evidence collection processes, and governance standards. We assess and reduce security risks tied to identity systems, integrations, and cloud-based services. We drive improvements to platform security posture through continuous improvement, vulnerability remediation, policy modernization, and threat detection capabilities. We serve as a technical leader and trusted advisor for workforce identity services and authentication technologies. We influence architecture decisions, engineering standards, and operational best practices across teams. We mentor engineers and support knowledge-sharing initiatives that reduce key-person dependency and improve organizational resiliency. We collaborate with internal stakeholders, vendors, and cross-functional teams to deliver strategic identity initiatives. We manage major incidents, root cause analysis, and operational readiness activities. We analyze complex authentication, authorization, and provisioning issues across multiple integrated systems. We create technical documentation, standards, procedures, and operational runbooks. We drive measurable improvements in application onboarding, platform reliability and availability, incident response effectiveness, automation adoption, audit readiness, operational risk reduction, and service scalability/engineering efficiency. Technologies: Agentic AI AI AWS Azure CI/CD Cloud GCP Git GitHub Support OAuth PowerShell Python REST SAML Security Splunk Terraform Lambda CloudWatch Hardw

Read the full posting on devitjobs →

FAQ

Is the Sr. Cloud Security Engineer (Okta) role at Vanguard remote?+

This Sr. Cloud Security Engineer (Okta) position is listed as onsite.

What is the salary for the Sr. Cloud Security Engineer (Okta) role at Vanguard?+

The listing states $120,000 - 160,000.

What seniority level is this Sr. Cloud Security Engineer (Okta) role?+

This is a senior level position.

How do I apply for the Sr. Cloud Security Engineer (Okta) role at Vanguard?+

Use the "Apply on devitjobs" button to open the original posting on devitjobs, where you can submit your application directly to Vanguard.