Identity Access Engineer
EverOps - San Francisco
Work at EverOps
Overview
- View job
Overview
Lead, design, implement, and maintain Okta identity solutions to support business needs and security requirements.
Develop and maintain the Identity & Endpoint Management roadmap, leading complex transition projects from legacy systems to modern IAM and endpoint security solutions.
Manage and configure Active Directory (AD) environments, including user account management, group policies, and security settings.
Own the Mac endpoint management strategy, focusing on JAMF administration, security policies, compliance enforcement, and integration with IAM tools.
Develop and implement device trust policies, ensuring seamless integration between identity security (Okta, AD) and endpoint management (JAMF, Intune, Kandji, Crowdstrike, etc.).
Automate identity and endpoint management workflows using DevOps tools such as Terraform, Ansible, PowerShell, Python, and CI/CD pipelines.
Integrate HR systems (Workday, Paylocity, Rippling, etc.) with Okta to streamline user provisioning, de-provisioning, and role-based access control (RBAC).
Enhance endpoint security through policy enforcement, device compliance frameworks, and Zero Trust Network Access (ZTNA).
Collaborate with IT, Security, and HR teams to ensure seamless identity governance, endpoint security, and compliance.
Stay current with industry trends, security best practices, and compliance standards (e.g., GDPR, HIPAA, ISO 27001, NIST).
Conduct regular audits of IAM and endpoint security to ensure adherence to security policies and regulatory requirements.
Provide technical support and training to end-users and internal teams on Okta, endpoint security, and related technologies.
Qualifications:
Bachelor’s degree in Computer Science, Information Technology, or a related field.
5+ years of experience in IAM, endpoint security, and DevOps practices, with a focus on Okta, Active Directory, and Mac endpoint management.
Extensive experience with endpoint management solutions, particularly JAMF, Intune, and Kandji.
Strong understanding of identity lifecycle management, including SSO, MFA, RBAC, and device trust.
Proficiency in scripting and automation tools (e.g., PowerShell, Python, Terraform, Ansible, Bash) for identity and endpoint automation.
Experience with ZTNA/VPN/SASE solutions and device security integrations (CrowdStrike, Carbon Black, etc.).
Familiarity with security frameworks and compliance standards (e.g., GDPR, HIPAA, ISO 27001).
Excellent problem-solving skills, attention to detail, and ability to work cross-functionally.
Preferred Skills:
Okta Certified Professional or higher certification.
Experience with cloud identity providers (Azure AD, Ping Identity).
Hands-on experience with DevOps tools (CI/CD, GitHub Actions, Jenkins, Terraform).
Strong knowledge of Zero Trust security principles.
Experience with containerized security solutions (Docker, Kubernetes).
#J-18808-Ljbffr