← All open roles
IL-2026-004Okta

Okta Workforce Identity Architect

Lead Okta Workforce Identity architecture and implementation for mid-market and enterprise clients. You'll own tenant design, federation strategy, lifecycle automation, and integrations with HRIS, AD, and the full SaaS application catalog.

What you'll do

  1. Design Okta tenant topology including Universal Directory, group strategies, and routing rules
  2. Architect federation with SAML, OIDC, and SCIM for B2B and internal applications
  3. Build lifecycle automation using Okta Workflows and / or Okta Identity Governance
  4. Design and implement MFA policies including Okta Verify, FIDO2, and risk-based authentication
  5. Integrate with HR systems (Workday, SuccessFactors, UKG) as sources of truth
  6. Lead AD to Okta migrations and coexistence architectures
  7. Document designs, provide technical enablement to client teams, and support post-go-live stabilization

What we need from you

  1. 6+ years identity and access management experience with at least 3 years hands-on Okta
  2. Okta Certified Consultant or Okta Certified Professional (current)
  3. Deep knowledge of SAML, OIDC, SCIM, and OAuth 2.0 flows
  4. Experience with HR-driven lifecycle and at least two major HRIS integrations
  5. Comfortable leading technical workshops with client architects and application owners
  6. US-based with unrestricted work authorization

Bonus, not required

  • Okta Certified Administrator AND Consultant
  • Okta Identity Governance (OIG) implementation experience
  • Okta Workflows advanced authoring (custom connectors, complex branching)
  • Prior work on Okta CIAM or B2B integrations

What you'll get

Competitive base plus utilization and performance bonuses. Full medical, dental, vision, 401(k) with match. Okta certifications paid in full, Oktane and Identiverse sponsored.