Job opening
IAM Engineer
Filed under Staffing and Recruiting
Full job description
About the Company
We are looking for a talented Identity Architect / Okta IAM Consultant for a 6-month contract-to-hire opportunity in a hybrid work environment. This role is ideal for an experienced IAM professional with deep Okta expertise and a strong background leading Entra ID / Azure AD to Okta migrations in complex enterprise environments.
About the Role
Schedule: Hybrid
Duration: 6-month contract-to-hire
Start Date: ASAP
Responsibilities
- Lead the technical architecture for an Entra ID to Okta workforce identity migration, including federation design, app integration sequencing, cutover planning, rollback strategy, and hypercare
- Design and build SSO/SAML/OIDC integrations across enterprise applications, including multi-tenant deployment for US/EU regional data requirements
- Architect lifecycle management and provisioning workflows, including HR-driven joiner/mover/leaver processes and SCIM integrations
- Define and implement MFA, adaptive authentication, and device assurance policies aligned to a zero-trust roadmap
- Act as the technical counterpart to the implementation partner by reviewing designs, challenging assumptions, and ensuring delivery quality
- Maintain and operate the Okta environment post-cutover, including policy tuning, integration onboarding, incident support, and operational runbooks
- Produce audit-ready documentation aligned with ISO 27001 / TISAX control environments
- Support identity orchestration and governance initiatives, including attribute-driven provisioning, ABAC policy models, JIT privileged access, anomaly detection, automated deprovisioning, and audit/recertification capabilities
- Support integration of identity and authorization event logs into the cybersecurity SIEM
Qualifications
- Bachelor’s degree or equivalent work experience
- 7+ years of experience in identity and access management
- 3+ years of hands-on Okta experience building, deploying, and maintaining Okta Workforce Identity Cloud environments
- At least one completed enterprise migration from Entra ID / Azure AD to Okta as an architect or technical lead
- Deep expertise in SAML, OIDC, OAuth 2.0, SCIM, and directory integration in hybrid AD / Entra ID environments
- Experience administering Okta in production, including policy management, app integrations, lifecycle workflows, and troubleshooting
- Experience designing MFA and adaptive access policies at enterprise scale
- Strong documentation skills with the ability to produce audit-ready artifacts
- Proven ability to work alongside system integrators while retaining architectural ownership
Preferred Skills
- Okta Certified Consultant or Okta Certified Architect
- Experience building custom identity automation or governance tooling using Python, SQL, APIs, and event-driven pipelines
Pay range and compensation package
The hourly pay range for this position is $70 to $80 on a W2 basis. As a contract/temporary professional, you are eligible for medical, vision, dental, life, and disability insurance coverage. You may also enroll in our company's 401(k) plan. For additional details on benefits, please visit roberthalf.gobenefits.net.
Equal Opportunity Statement
We are committed to diversity and inclusivity.