Position Summary
Design and improve Okta-based identity lifecycle, application access, group governance, and SaaS provisioning standards in a tightly controlled enterprise environment.
Key Responsibilities
Design Okta groups, application assignments, policies, and lifecycle workflows.
Implement joiner, mover, and leaver processes across HR, identity, and SaaS systems.
Define scalable SaaS provisioning and deprovisioning standards.
Partner with DevOps engineers to express identity configuration through Terraform and CI/CD.
Troubleshoot authentication, provisioning, group membership, and access issues.
Support access reviews, audit evidence, and least-privilege controls.
Create technical standards, operational procedures, and support documentation.
Required Qualifications
Strong hands-on Okta administration and engineering experience.
Experience with lifecycle management, group design, and SaaS provisioning.
Knowledge of SAML, OAuth 2.0, OpenID Connect, and SCIM.
Understanding of HR-driven identity processes and access governance.
Ability to work through controlled, PR-based change processes.
Strong documentation, stakeholder communication, and problem-solving skills.
Preferred Qualifications
Okta Workflows and Identity Governance.
Terraform-based Okta management.
ADP or comparable HRIS integrations.
API scripting and automation.
Experience with agentic ITSM or AI-enabled IT operations.
Behavioral Expectations
Excellent written and verbal communication.
Ownership and self-starter mentality.
Curiosity and first-principles problem-solving.
Ability to work effectively within a lean internal team.
Respect for least-privilege access and controlled delivery.
Interest in AI-native tools and measurable operational outcomes


