Senior IAM Engineer building integration and orchestration infrastructure to secure AI and data systems at Komodo Health. Design automated identity lifecycle processes, RBAC/ABAC, SSO/MFA, and custom automations with Okta, Workato, and Python while ensuring SOC2/HIPAA compliance.
150k – 210k/yr
Remote5+ YOESecurity Engineering
About the role
Responsibilities
Design and maintain automated onboarding, offboarding, and departmental transfer processes across ecosystem (WorkDay, Okta, Google Workspace, etc.).
Build and optimize complex, multi-step automation flows; maintain and grow iPaaS (Workato) environment, treating "Integrations as a Product."
Build resilient, scalable "recipes" that move data across the enterprise while maintaining strict IAM governance utilizing Okta Workflows.
Implement and enforce Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC) models.
Manage SSO (SAML/OIDC) and MFA configurations.
Ensure all access remains compliant with SOC2/HIPAA/GDPR standards through regular access reviews and audit logging.
Develop custom scripts (Python, Perl, Ruby, etc.) and API integrations to bridge gaps where out-of-the-box connectors are unavailable.
Secure the "Data Perimeter" for AI Infrastructure and Data Infrastructure; manage identity lifecycle for AI Agents and Service Accounts with least-privileged access.
Collaborate with HR, Finance, Sales Ops and other teams to identify bottlenecks in the lead-to-revenue lifecycle and solve them through identity-driven automation.
Collaborate with cross-functional teams to improve provisioning/deprovisioning processes.
Integrate and manage IdPs within the IAM system.
Handle and streamline access requests.
Develop and implement IAM policies and procedures.
Respond to ad-hoc requests.
Requirements
5–8+ years of experience in Identity and Access Management, including significant hands-on expertise with Okta (including OIE & OIG).
Proficiency in Python, Ruby or other languages for automating repetitive tasks and handling large-scale data imports/exports.
Automation mindset with proven ability to build event-driven flows, use custom API connectors, and handle error logic.
Comfortable working with RESTful APIs, JSON, and Webhooks.
Experience using Terraform or Github to manage identity providers (Infrastructure as Code).
Understanding of Zero Trust architecture and Privileged Access Management (PAM) tools like CyberArk, BeyondTrust, etc.
Strong understanding of identity lifecycle management, directory services, SSO, MFA, SCIM provisioning, and federation (SAML, OIDC, OAuth).
Proven experience partnering with HR, Finance, Compliance, and other cross-functional teams to design and implement IAM & Enterprise solutions.
Demonstrated ability to streamline and automate processes using automation.
Experience with auditing, governance, and access certification processes.
Excellent problem-solving, communication, and stakeholder management skills.
Nice-to-Haves
Experience with Workato or similar Integration Orchestrator tools such as Zapier, Snaplogic or Merge.
Experience with Okta Workflows.
Certifications: Workato or Okta Certified Professional/Administrator/Consultant.
Experience integrating IAM with HR systems (e.g., Workday).
Knowledge of compliance requirements related to IAM.
Background in cloud platforms (AWS, GCP, Azure) and IAM integrations.
Experience with IAM tools such as Auth0, or Azure AD.
Compensation
San Francisco Bay Area and New York City: $173,000–$210,000 USD
All Other US Locations: $150,000–$180,000 USD
Eligible for performance-based bonuses, equity awards, comprehensive benefits including health, dental, vision insurance, flexible time off, 401(k) match, disability and life insurance.
Owns end-to-end fraud strategy for applicant onboarding, including manual review, alternative data signals, rules development, and performance monitoring. Requires 5-10 years in fraud/credit risk, strong SQL, and expertise in onboarding fraud vectors.
150k – 210k/yr
On-site5+ YOESecurity Engineering
Senior Product Security Engineer
RipplingSan Francisco, CA +3
Hands-on security engineer building product security guardrails, tooling, and SDLC integrations for a multi-product HR/IT/Finance platform. Requires 5+ years in product security, fluency in Python/React/DRF, and experience leading cross-team vulnerability remediation.
151k – 280k/yr
Hybrid5+ YOESecurity Engineering
Senior Engineer, Security
Grow TherapyNew York, NY +2
Senior Security Engineer owning data security infrastructure including classification, masking, encryption, and AI data pipelines. Hands-on builder who defines and executes the data protection roadmap.
152k – 250k/yr
Remote5+ YOESecurity Engineering
Senior Developer, Product Security
1PasswordUnited States
Senior security-focused developer implementing new security features and secure libraries for iOS and hybrid apps at 1Password. Requires 5+ years of security development experience, 3+ years with iOS and Rust.
153k – 214k/yr
Remote5+ YOESecurity Engineering
Senior Security Research Scientist
CensysSan Francisco, CA +3
Conducts internet-wide security research using scan data to identify trends, vulnerabilities, and threats. Analyzes large datasets with tools like BigQuery and Snowflake, partners with engineering teams, and shares insights publicly. Requires deep knowledge of internet protocols.