xelys jobs xelys jobs

Security Engineer II – IAM & SaaS Governance

Solvd

full-remotemidpermanentsecurityoperations Anywhere in the World Today via WWR

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

Tags

OktaIAMIdentity and Access ManagementSAML 2.0OIDCOAuth 2.0SCIMRBACABACSaaS Security Posture Management

About the role

Role Overview

Solvd is seeking a Mid-Tier Security Engineer (II) specializing in IAM & SaaS Governance to join the Cyber Security team. You will engineer and secure the identity perimeter and SaaS ecosystem—not just manage tickets—by owning Okta and driving data governance across core SaaS applications.

Responsibilities

  • Identity & Access Management (IAM) Engineering
    • Own and administer Okta as the primary engineer.
    • Configure advanced capabilities including custom authorization servers, adaptive MFA, and conditional access policies.
  • Lifecycle Automation
    • Build and maintain automated joiner-mover-leaver (JML) workflows using Okta Workflows, SCIM, or custom API scripts.
  • Federation & Protocols
    • Implement secure SSO integrations using SAML 2.0, OIDC, and OAuth 2.0.
  • Data Governance & SaaS Security (Least Privilege)
    • Design/audit/refine RBAC and ABAC models across enterprise SaaS (e.g., Google Workspace, Microsoft 365, Slack, Salesforce, GitHub).
    • Enforce the principle of least privilege and monitor/remediate data exposure risks.
  • Data Exposure Mitigation
    • Detect and address unauthorized data sharing, public file exposure, and “shadow IT” API integrations.
  • Access Reviews & Compliance
    • Lead quarterly user access reviews (UARs) and provide evidence for SOC 2 Type II, ISO 27001, and GDPR.
  • SaaS Security Posture Management (SSPM)
    • Use SSPM tools or native security centers to continuously audit and harden SaaS configurations.
  • Monitoring & Incident Response
    • Analyze Okta system logs and SaaS audit logs for anomalous activity (e.g., impossible travel, credential stuffing, unauthorized data exfiltration).
    • Partner with the SOC team to ensure IAM/SaaS logs are ingested into the SIEM for real-time alerting.

Requirements

  • 3–5 years experience in Security Engineering, IAM, or Systems Engineering with a strong security focus.
  • Strong Okta expertise (Okta Certified Administrator or Certified Consultant preferred).
  • Security mindset with experience implementing data governance, DLP, and zero-trust access models.
  • Deep knowledge of identity/networking protocols: TCP/IP, HTTP, SAML, OAuth, OIDC, SCIM.
  • Scripting proficiency in Python, PowerShell, or Bash for REST API automation.
  • Log/query experience using tools such as Splunk, ELK, SQL, or cloud-native SIEMs.

Nice-to-Haves / Preferences

  • Okta certification(s) as noted above.

Location / Work Setup

  • Anywhere in the World (remote-friendly).

About Solvd

Solvd Inc. is a rapidly growing AI-native consulting and technology services firm delivering enterprise transformation across cloud, data, software engineering, and artificial intelligence. Following the acquisition of Tooploox, Solvd provides end-to-end delivery from strategic advisory and solution design to custom AI development and large-scale implementation. Its capability centers combine technical expertise, delivery methodologies, and sector knowledge to solve complex business challenges.

Scraped 8/4/2026