×
Register Here to Apply for Jobs or Post Jobs. X

Senior IAM Engineer Integration

Job in Phoenix, Maricopa County, Arizona, 85001, USA
Listing for: United Software Group
Full Time position
Listed on 2026-07-01
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Job Description & How to Apply Below
Position: Senior IAM Engineer with Integration experience

Senior IAM Engineer with Integration Experience

Location:

Phoenix AZ (Onsite)

Duration:
Contract

M&A Integrations (Okta/SSO)

M&A / Integration Delivery

  • Design and implement tenant-to-tenant federation (Okta/ADFS/IdP-initiated and SP-initiated) and progressive consolidation to a primary IdP (Okta).
  • Plan and execute SSO cutovers for top business applications; define rollback plans and success criteria.
  • Establish secure B2B/B2E access patterns for acquired entities (SAML 2.0, OAuth 2.0/OIDC, SCIM).
  • Orchestrate account migration strategies (just-in-time provisioning, SCIM, directory sync), and drive de-dupe/merge identity hygiene.

IAM Engineering & Operations

  • Configure and manage Okta (policies, routing rules, app integrations, Device Trust, MFA/Adaptive MFA, Groups, Lifecycle Management, Workflows).
  • Implement secure federation (SAML/OIDC), token policies, consent and scopes, and PKCE where applicable.
  • Integrate with Active Directory / LDAP, govern group design, and rationalize permissions to least-privilege.
  • Define and enforce password vaulting patterns for non-federated apps and privileged identities (e.g., Cyber Ark/Hashi Corp/1

    Password Enterprise).
  • Build and maintain access review, joiner/mover/leaver (JML) automation, and policy-as-code where feasible.
  • Partner with app owners to onboard applications to SSO/MFA and eliminate legacy/basic auth.

Required Qualifications

  • Hands-on expertise with Okta (tenant administration, federation, SSO/MFA, Lifecycle Management, Workflows, SCIM, device posture).
  • Strong working knowledge of SSO, federation, SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, and secure token handling.
  • Proficiency with Active Directory (domain trusts, OU/group strategy, GPO basics, identity hygiene) and directory sync concepts.
  • Demonstrated M&A integration experience: discovery, Day-1 readiness, SSO cutover, identity consolidation, and decommissioning legacy IdPs.
  • Password vaulting/Privileged Access exposure (e.g., Cyber Ark, Hashi Corp Vault, Beyond Trust, or enterprise password managers).
  • Applied least-privilege and Zero Trust design; familiarity with NIST CSF, CIS Controls, or ISO 27001 principles.
  • Experience in AWS and/or GCP (federation, RBAC, service accounts, workload identity).
  • Strong verbal and written communication; ability to interface with execs, security, app owners, and engineers.
  • Scripting for automation (e.g., Power Shell, Python, Okta APIs/SDKs) and comfort with Git-based workflows.
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary