Job Specifications
Security Engineer
Location: Hybrid - Phoenix, AZ
Employment Type: Contract
Overview
We are seeking an experienced Security Engineer to help design and implement a modern Customer Identity & Access Management (CIAM) platform. This role is responsible for replacing a legacy identity system with a new, secure, scalable, greenfield Auth0-based solution.
You will lead the migration from Okta to Auth0, define security baselines, and partner closely across engineering and business teams to deliver a high‑visibility identity modernization initiative supporting large-scale eCommerce environments.
Key Responsibilities
Lead the migration from Okta to Auth0, including design, configuration, testing, and rollout.
Build and secure a greenfield CIAM platform for high‑volume eCommerce traffic.
Implement SSO/MFA for admin accounts and define tenant‑level Auth0 security baselines.
Configure and optimize core Auth0 features (Actions, Attack Protection, Organizations, Connections, Logging).
Set up logging/monitoring and integrate with SIEM platforms (Splunk preferred).
Conduct threat modeling and security assessments across identity flows and customer data handling.
Ensure compliance with standards such as SOC2, PCI, GDPR, and CCPA.
Perform secure user‑migration validation (identity binding, data integrity, session security).
Act as the primary identity/security engineering partner for eCommerce teams.
Translate business requirements into secure authentication and authorization flows.
Collaborate with Engineering, Product, Architecture, DevOps, Compliance, and Risk.
Influence identity‑related decision making and help define the future‑state CIAM architecture.
Support execution within a fast‑paced modernization timeline.
Required Experience
3–5 years hands-on Auth0 experience in a Security Engineering or Identity Engineering capacity.
Logging & log management
SIEM integrations (Splunk preferred)
Threat modeling & security assessments
Attack Protection configuration
MFA/SSO for privileged access
Auth0 tenant security configuration
Deep competency with OAuth 2.0, OIDC, SAML, JWT, token lifecycle management, and identity security concepts.
Identity migration experience, ideally Okta to Auth0.
Experience supporting identity for eCommerce or high‑transaction consumer applications.
Ability to influence stakeholders and clearly communicate complex technical concepts.
Nice-to-Have Experience
Building CIAM platforms from the ground up.
Terraform or Auth0 Deploy CLI (IaC for identity infrastructures).
Large‑scale customer identity migrations (B2C/B2B).
Adaptive authentication, risk-based access, fraud detection.
Participation in major modernization/transformation programs.
About the Company
PDS is one of the leading Aerospace, Information Technology (IT) & Engineering consulting firms in the Western United States. Since 1987, PDS has delivered award-winning solutions and resources to our clients across their information technology, engineering, financial, and human capital management divisions. Whether providing an individual resource in support of a specific project need, to designing, developing, and deploying even the most complex software solutions; PDS brings over two decades of experience in people, proce...
Know more