Okta Logo

Okta

Staff Identity Engineer

Posted 22 Days Ago
Be an Early Applicant
In-Office
Chicago, IL, USA
161K-221K Annually
Mid level
In-Office
Chicago, IL, USA
161K-221K Annually
Mid level
Lead architecture and implementation of Okta-based enterprise IAM, including adaptive MFA, federation, cloud IAM guardrails, automation, and machine identity security across AWS, GCP, and Azure. Mentor engineers, govern identity controls, support audit compliance, provide technical leadership, and drive secure adoption of AI agents and service-to-service authentication. Occasional travel is required.
The summary above was generated by AI

Secure Every Identity, from AI to Human
Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence.
This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk.

The Identity Team

Okta's internal Identity team secures the foundational trust layer for our modern enterprise. As organizations adopt phishing-resistant MFA, attackers have shifted toward session hijacking and cookie theft. Furthermore, with the rise of autonomous AI workloads, we are extending our platform to protect and govern a growing sprawl of non-human, agentic workflows. Our mission is to ensure every person and machine can safely connect to the right technology at the right time.

The Staff Identity Engineer Opportunity

As a Staff Engineer at Okta, you will be a technical authority within our internal IAM team, driving the architecture and execution of our identity fabric. You will champion our "Customer Zero" philosophy, partnering with product engineering to deploy Okta's newest features internally before they reach global markets. This role requires a technical leader who acts with ownership and urgency, turning action into traction and ruthlessly simplifying complex problems. You will serve as a mentor, influence architectural decisions, and help determine the future of the platform.

What you’ll be doing 

  • Drive Customer Zero Execution: Act as a key technical bridge between internal stakeholders, the Okta on Okta team, and core Product teams. Lead the early adoption of cutting-edge internal capabilities, providing rigorous technical feedback to mature products before global release.
  • Architecture & Hands-On Implementation: Own the lifecycle, policy design, adaptive MFA, and federation (SAML, OIDC) for enterprise Okta tenants. Architect and enforce cloud IAM guardrails across AWS, GCP, and Azure, building API-based pipelines to automate complex workflows.
  • Technical Leadership & Mentorship: Serve as a core technical anchor for the engineering team. Mentor engineers, act as a primary review authority for IAM designs, and set technical standards across the organization.
  • Operational & Security Governance: Drive automation-first initiatives to eliminate systemic inefficiencies. Partner directly with Security, Audit, and Compliance teams to ensure identity controls natively meet audit requirements (SOC 2, ISO 27001, FedRAMP).
  • AI Security Integration: Drive the secure adoption of AI technologies by governing AI agents, machine identities, and service-to-service authentication within the enterprise identity layer.
  • Cross-Functional Partnering & Metrics: Collaborate with cross-functional partners to advance identity security, establish operational KPIs, and translate complex technical milestones into actionable leadership updates.

What you’ll bring to the role

To be successful in this role, you should have deep, hands-on architectural experience across the modern identity and cloud infrastructure lifecycle. We are looking for a practitioner who understands both theory and real-world implementation.

  • Domain Experience: 4+ years of hands-on experience designing, implementing, and maintaining enterprise-scale IAM solutions.
  • Okta Platform Mastery: Deep expertise in managing complex enterprise Okta environments, including hands-on proficiency with Okta Identity Engine (OIE), Directory Integrations, Advanced Policies, Workflows, and Platform APIs.
  • Core Identity Protocols: Advanced expertise in modern authentication and authorization standards (OIDC, OAuth 2.0, SAML 2.0) and phishing-resistant MFA paradigms (FIDO2/WebAuthn, Passkeys).
  • Cloud & Infrastructure as Code: Proven experience defining identity controls as code using Terraform and Okta Workflows. Practical experience designing cloud IAM guardrails across multi-cloud environments (AWS, GCP, Azure) and M2M/service-to-service authentication.
  • Session & Zero Trust Security: Solid background in session lifecycle security, token management/revocation strategies, and continuous access evaluations (CAEP/eSSO) to mitigate session hijacking.
  • Technical Leadership & Mentorship: Demonstrated experience mentoring engineers, driving design reviews, and establishing engineering best practices across teams.
  • Compliance & Automation Mindset: Strong orientation toward automation-first design, with practical experience building identity controls that align with enterprise frameworks (SOC 2, ISO 27001, FedRAMP).
  • Travel: Occasional travel required as needed.

Additional requirements:

  • U.S. soil status - the employee must be on U.S. soil, which means the 50 states, the District of Columbia, or outlying areas of the United States, as defined in Federal Acquisition Regulation (FAR) 2.101, and be a U.S. person.
  • U.S. person status - the employee must be either a U.S. citizen as defined in 42 U.S. Code § 9102; a natural person who is a lawful permanent resident as defined in 8 U.S.C. 1101(a)(20) or who is a protected individual as defined by 8 U.S.C. 1324b(a)(3); or a U.S. national (i.e. includes citizens and non-citizens born in outlying possessions such as American Samoa and Swains Island), green card holders, refugees, and asylees. Working on a U.S. visa does NOT qualify as a U.S. person.

#LI-MC1

#P21721_3536461

Below is the annual base salary range for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York and Washington. Your actual base salary will depend on factors such as your skills, qualifications, experience, and work location. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. To learn more about our Total Rewards program please visit: https://rewards.okta.com/us.   

The annual base salary range for this position for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York, and Washington is between:
$161,000—$221,000 USD

The Okta Experience

  • Supporting Your Well-Being 
  • Driving Social Impact 
  • Developing Talent and Fostering Connection + Community

We are intentional about connection. Our global community, spanning over 20 offices worldwide, is united by a drive to innovate. Your journey begins with an immersive, in-person onboarding experience designed to accelerate your impact and connect you to our mission and team from day one.
Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws.
If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.
Notice for New York City Applicants & Employees: Okta may use Automated Employment Decision Tools (AEDT), as defined by New York City Local Law 144, that use artificial intelligence, machine learning, or other automated processes to assist in our recruitment and hiring process. In accordance with NYC Local Law 144, if you are an applicant or employee residing in New York City, please click here to view our full NYC AEDT Notice.

Okta Chicago, Illinois, USA Office

123 N Wacker Drive, Chicago, IL, United States, 60606

Similar Jobs

One Month Ago
Remote or Hybrid
United States
202K-278K Annually
Senior level
202K-278K Annually
Senior level
Artificial Intelligence • Fintech • Machine Learning • Natural Language Processing • Business Intelligence
Build and operate AlphaSense's identity platform across user management, authentication, and authorization. Design scalable RBAC/ABAC/ReBAC systems, integrate authentication patterns (OAuth/OIDC/SAML), implement SCIM provisioning, and expose GraphQL/gRPC/REST APIs. Partner with security on SOC2/GDPR compliance, drive platform roadmap, champion testing, observability, and reliability, and operate autonomously from North America in close collaboration with the Helsinki team.
Top Skills: AbacAWSGCPGraphQLGrpcHelmJavaJwtKubernetesMavenOauth 2.0OidcRbacRebacRestSaml 2.0ScimSpring BootSQLWebflux
An Hour Ago
Remote or Hybrid
USA
91K-203K Annually
Senior level
91K-203K Annually
Senior level
Machine Learning • Payments • Security • Software • Financial Services
Leads complex, multi-workstream product initiatives as a principal Product Owner. Owns product vision, strategy, backlog integrity, prioritization, and Scrum team alignment. Coordinates Product, Engineering, Design, Delivery, and other stakeholders; improves execution discipline, transparency, and outcome tracking. Stabilizes programs with fragmented ownership or elevated delivery risk while ensuring customer and business requirements are addressed. Requires substantial Product Owner or Senior Product Manager experience, preferably in payments or financial services.
Top Skills: Agile DevelopmentData VisualizationScrumUx Design
3 Hours Ago
Hybrid
Chicago, IL, USA
Mid level
Mid level
Fintech • Machine Learning • Software • Financial Services
Develop and automate verification solutions for complex hardware systems. Collaborate with RTL and software teams, create system- and block-level testbenches, use UVM and EDA tools, automate regression testing, and track coverage metrics through verification closure in a Linux environment.
Top Skills: C++Eda ToolsLinuxRegression Test AutomationScripting LanguagesSystemverilogUvmVerilog

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account