- Company Name
- Toyota North America
- Job Title
- Identity & Access Management (IAM) Operations Engineer, Senior
- Job Description
-
**Job Title**
Identity & Access Management (IAM) Operations Engineer – Senior
**Role Summary**
Senior IAM Operations Engineer responsible for the end‑to‑end administration of the Okta Workforce Identity platform, ensuring secure and efficient authentication, single sign‑on (SSO), multi‑factor authentication (MFA), and automated identity lifecycle. Drives integration and optimization of Okta with business applications, federated identity protocols, and customer‑facing CIAM solutions. Collaborates cross‑functionally with Governance, Incident Response, and Engineering to maintain compliance with SOX, GDPR, PCI‑DSS, and other regulatory frameworks, while leading incident response activities and championing continuous improvement in IAM practices.
**Expectations**
- 4+ years of experience in IAM, with primary focus on Okta Workforce Identity.
- Proven capabilities in Okta SSO, MFA, lifecycle automation, and API integration.
- Hands‑on experience with CIAM platforms (ForgeRock, Okta Customer Identity, Auth0).
- Strong understanding of identity protocols: SAML, OIDC, OAuth2, WebAuthN.
- Demonstrated integration of IAM with Active Directory and PowerShell scripting.
- Knowledge of compliance standards (SOX, GDPR, PCI‑DSS) and governance alignment.
- Familiarity with ITIL, Lean, Agile, and tools such as Jira, Confluence, ServiceNow.
- Excellent communication, cross‑functional collaboration, and incident leadership skills.
**Key Responsibilities**
- Administer and maintain the Okta Workforce Identity platform (SSO, MFA, lifecycle, API).
- Monitor, troubleshoot, and optimize Okta integrations and workflows for high availability and performance.
- Design and implement federated identity models using SAML, OIDC, OAuth2, and WebAuthN for internal and third‑party applications.
- Support and enhance CIAM solutions to deliver secure, scalable customer authentication and authorization.
- Collaborate with Governance, Incident Response, and Engineering teams to ensure secure, compliant access controls.
- Align IAM solutions with governance frameworks (SOX, GDPR, PCI‑DSS) and support audit requirements.
- Lead technical efforts during identity‑related security incidents and support incident response.
- Stay current with IAM/CIAM trends, technologies, and best practices; drive continuous improvement initiatives.
**Required Skills**
- Okta Workforce Identity administration (SSO, MFA, lifecycle, API).
- CIAM platforms: ForgeRock, Okta Customer Identity, Auth0.
- Identity protocols: SAML, OIDC, OAuth2, WebAuthN.
- Integration with Active Directory, PowerShell scripting, and access governance.
- Compliance knowledge: SOX, GDPR, PCI‑DSS.
- ITIL, Lean, Agile methodologies; tools: Jira, Confluence, ServiceNow.
- Just‑In‑Time (JIT) access, session monitoring, credential rotation (PAM).
- API Access Management, Identity Governance, Role‑Based Access Control.
- Strong written and verbal communication, stakeholder management.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security, or related field.
- IAM certifications (Okta Certified, ISC² SSCP, CISSP Associate) preferred.
- Experience integrating IAM/CIAM with cloud platforms such as AWS or Azure.