Identity Management Consultant
Role: Senior IAM Engineer
Position Type: Full-Time Contract (40hrs/week)
Contract Duration: 6 months+ (Contract to Hire)
Work Schedule: 8 hours/day (Mon-Fri)
Location: 100% Remote in India
We are seeking a Senior IAM Engineer with 6+ years of hands-on IAM experience and 3+ years of production Okta engineering experience. This role will architect and implement enterprise identity solutions across Okta, Active Directory, Entra ID, Google Workspace, and SaaS applications, with a strong focus on identity governance, zero trust, automation, and secure application integrations.
The ideal candidate must have hands-on experience implementing SAML, OIDC/OAuth, SCIM, and other identity protocols, designing JML processes, automating Okta configurations, and leading complex IAM initiatives in hybrid environments.
Key Responsibilities
- Architect and evolve enterprise IAM solutions across Okta, AD, Entra ID, Google Workspace, and SaaS.
- Design and implement complex Okta application integrations using SAML, OIDC/OAuth, SCIM, and other protocols.
- Administer and engineer Okta Universal Directory, SSO, MFA, Adaptive Authentication, Lifecycle Management, Workflows, and Identity Governance.
- Build automated Joiner/Mover/Leaver (JML) and provisioning/deprovisioning workflows.
- Integrate Okta with Active Directory, Entra ID, Google Workspace, HR systems, and cloud applications.
- Design RBAC/ABAC, access reviews, certifications, SoD, and privileged access controls.
- Drive Zero Trust, least privilege, passwordless, FastPass, and adaptive MFA initiatives.
- Automate IAM using Okta APIs, Terraform, Okta Workflows, and CI/CD.
- Integrate IAM with SIEM/SOAR, CSPM, and ServiceNow.
- Support IAM audits, compliance, security assessments, and continuous access monitoring.
- Mentor junior engineers and lead complex IAM projects from design through implementation.Must-Haves
- 6+ years hands-on IAM experience.
- 3+ years hands-on Okta engineering/administration in a production enterprise environment.
- Strong hands-on Okta application integration experience.
- Deep knowledge of SAML 2.0, OAuth 2.0, OIDC, SCIM, WS-Federation, LDAP, and Kerberos.
- Experience integrating Okta with Active Directory + Entra ID + Google Workspace.
- Experience with Okta Lifecycle Management, Workflows, Universal Directory, SSO, MFA, and API Access Management.
- Strong understanding of identity governance, RBAC/ABAC, JML, access reviews, and provisioning.
- Experience with Zero Trust and least-privilege access.
- Hands-on automation using Okta APIs, Terraform, or similar IaC.Nice-to-Haves
- Okta Identity Governance.
- PAM solutions.
- Workday/BambooHR integrations.
- ServiceNow IAM integrations.
- SIEM/SOAR and CSPM integrations.
- AWS/Azure/GCP identity.
- SOC 2, ISO 27001, NIST, HIPAA, or PCI-DSS.
- Okta certifications.