Logo
Social Finance, Inc. (SoFi)

Senior Identity and Access Management Engineer

Social Finance, Inc. (SoFi), Jacksonville, Texas, United States, 75766


Senior Identity and Access Management EngineerInformation SecurityShape a brighter financial future with us. Together with our members, we’re changing the way people think about and interact with personal finance.We’re a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way.

Join us to invest in yourself, your career, and the financial world.The Senior Identity and Access Management Engineer is responsible for designing, implementing, and managing the organization's identity and access management processes and technology. This role requires a deep understanding of IAM principles, Okta administration, and security best practices. The ideal candidate will possess strong technical skills using the Okta platform in order to automate processes, optimize IAM operations, and secure SoFi systems and data. They will also play a crucial role in ensuring compliance with industry regulations and driving the adoption of Zero Trust principles.What you’ll do:Coordinate with IAM leadership and project management on project planning, execution and reporting across concurrent projects.Contribute to the overall design and implementation of Identity and Access Management across cloud and on-prem systems utilizing Okta and associated technologies.Extend Core Okta capabilities with Okta Workflows, APIs, On-Premise Connectors and third party integrations.Assist with leading and mentoring a team of IAM professionals to develop, update and maintain the required IAM governance and certification program to support business and information security requirements for SoFi, and meet compliance obligations.Partner with the Security and Information Technology teams to develop and maintain a Zero Trust security architecture to ensure the Confidentiality, Integrity, and Availability of company data.Analyze and select tools, methods, techniques and evaluation criteria to enable and meet operational objectives.Collaborate with HR, IT, Security and other organizations to ensure a robust approach to identity lifecycle management; including onboarding, transfers, offboarding, role definition and permissions management.Ensure strong authentication, authorization, role-based access controls (RBAC) are implemented in existing and new applications and products, including mobile devices and physical access.Design, select, and manage IAM, PAM solutions and/or other processes as needed.Manage integrations and best practices with directory providers such as Google Workspace, Active Directory, and Entra ID.Utilize security policy, IAM best practices and research to advise teams on third party access designs and best practices.Maintain subject matter expertise in Identity and Access Management technologies.Enhance IAM processes through ticketing systems such as ServiceNow, Jira.What you’ll need:Proven experience in administering and managing Okta’s Identity Platform, including Okta Identity Governance and Okta Workflows.In-depth knowledge of both Cyber Security and IAM concepts, principles, and best practices.Experience providing oversight and guidance to engineers involved in support of PAM or Secrets Management solutions.Excellent analytical and problem-solving skills.Ability to work independently and as part of a team.Excellent written and verbal communication skills.Okta Certified Administrator certification.5+ years of IAM experience supporting medium-large companies.Nice to have:Knowledge of cloud platforms (AWS, Azure, GCP).Experience defining, deploying, and auditing AWS IAM Roles across multiple organizations.Experience with Terraform and Infrastructure as Code (IaC) pipelines.Experience with other IAM tools (e.g., Active Directory, LDAP).Security certifications such as CISSP or CISM.Advanced Okta Certified Certifications such as Consultant, Architect, or Developer.Strong understanding of financial services regulations and guidance including GLBA, PCI, SOC1/SOC2, and SOX.Compensation and BenefitsThe base pay range for this role is listed below. Final base pay offer will be determined based on individual factors such as the candidate’s experience, skills, and location.Pay range: $108,800.00 - $204,000.00Payment frequency: AnnualThis role is also eligible for a bonus, long term incentives and competitive benefits. More information about our employee benefits can be found in the link above.

#J-18808-Ljbffr