Okta IAM Consultant/Developer
Must Have Skills
Preferred Skills
About the Client Our client is a globally recognized professional services organization with a strong presence across consulting, technology, assurance, and business transformation. The organization works with leading enterprises across industries to solve complex business and technology challenges, with a strong focus on digital transformation, cybersecurity, cloud, risk, and technology modernization.
About the Role We are looking for an experienced Okta IAM Consultant / Developer with strong hands-on expertise in Okta Identity Engine, Universal Directory, Lifecycle Management, SSO, MFA, and API Access Management.
The successful candidate will be responsible for designing, implementing, configuring, integrating, testing, deploying, and supporting enterprise Okta solutions. The role requires a combination of strong IAM fundamentals, Okta technical expertise, development/scripting capabilities, and the ability to engage directly with clients and cross-functional technology teams.
The ideal candidate should be comfortable working across the complete Software Development Lifecycle (SDLC), translating business requirements into secure and scalable IAM solutions, troubleshooting complex identity issues, and participating in technical design and architecture discussions.
Key Responsibilities Design, configure, implement, integrate, test, deploy, and support enterprise Okta IAM solutions. Work across the complete SDLC, including requirements gathering, solution design, development/configuration, testing, deployment, documentation, and production support. Configure and manage Okta Identity Engine (OIE), Universal Directory, Lifecycle Management, SSO, MFA, and API Access Management. Design and implement secure authentication and authorization solutions based on business and technical requirements. Configure Okta applications, authentication policies, sign-on policies, MFA policies, password policies, groups, group rules, and profile mappings. Implement SSO integrations for SaaS, enterprise, custom, and on-premises applications using SAML 2.0 and OIDC. Configure and support identity federation, provisioning, deprovisioning, reconciliation, and directory synchronization. Implement and manage Joiner-Mover-Leaver (JML) lifecycle processes. Integrate Okta with Active Directory, LDAP, HR systems, SaaS platforms, and custom applications. Configure and manage authorization servers, scopes, claims, access policies, and OAuth 2.0/OIDC flows. Develop and consume Okta REST APIs for user, group, application, and identity lifecycle operations. Develop scripts or integrations using Java, JavaScript, Node.js, Python, PowerShell, or similar technologies. Work with REST APIs, JSON, web services, and API-based integrations. Troubleshoot authentication, federation, provisioning, directory synchronization, MFA, and application access issues. Analyze complex IAM issues and provide root-cause analysis and sustainable technical solutions. Participate in client meetings, technical workshops, requirement discussions, and architecture/design sessions. Translate business requirements into secure, scalable, and highly available IAM solutions. Collaborate with application, security, infrastructure, HR, and other technology teams to deliver identity solutions. Support production deployments, incident resolution, change management, and continuous improvement initiatives. Follow organizational security standards, coding practices, SDLC processes, and documentation requirements. Lead or mentor junior team members where required.
Required Okta / IAM Expertise The candidate must have strong hands-on experience with: Okta Identity Engine (OIE) Universal Directory Okta Lifecycle Management Single Sign-On (SSO) Multi-Factor Authentication (MFA) Okta API Access Management Authentication and Authorization Federation Provisioning and Deprovisioning Reconciliation Role-Based Access Control (RBAC) Directory Services Joiner-Mover-Leaver processes Identity & Federation Technologies
Strong working knowledge of: SAML 2.0 OAuth 2.0 OpenID Connect (OIDC) SCIM Just-in-Time (JIT) Provisioning Authentication and authorization flows Identity federation Application provisioning Profile and attribute mapping Okta Configuration & Integration
Hands-on experience with: Okta application integrations Authentication policies Sign-on policies MFA policies Password policies Groups and group rules Profile mappings Attribute mappings Application provisioning SSO configuration Lifecycle Management Active Directory integrations LDAP integrations HR system integrations SaaS application integrations Custom application integrations API Access Management
Experience with: Okta Authorization Servers OAuth 2.0 OIDC Scopes Claims Access policies Token-based authentication API security REST APIs JSON Okta APIs API-based identity integrations Development & Scripting
The candidate should have 2+ years of development or scripting experience with one or more of the following: Java JavaScript Node.js Python PowerShell Similar programming/scripting languages Experience developing IAM integrations, automation scripts, API integrations, or custom identity solutions will be highly valuable. SDLC & Engineering Practices
Experience with: Requirements gathering Technical design Solution architecture Development/configuration Unit and integration testing Deployment Production support Change management Git Jira CI/CD Agile methodologies Software Development Lifecycle (SDLC) Knowledge of SonarQube, OpenSSL, and Keytool is preferred. Infrastructure & Security Knowledge
Good understanding of: SSL/TLS Digital certificates PKI DNS HTTP/HTTPS Reverse proxy Load balancing Secure application communication Enterprise application security
Experience with Okta Access Gateway for integrating legacy or on-premises applications will be an advantage.
Preferred Okta Capabilities Exposure to the following will be an added advantage: Okta Workflows Event Hooks Inline Hooks Custom integrations Okta Access Gateway Enterprise application onboarding Advanced IAM automation Preferred Qualifications Relevant Okta certification is preferred. Experience integrating Okta with multiple enterprise applications and identity sources. Knowledge of Zero Trust security principles. Understanding of passwordless authentication. Exposure to FIDO2/WebAuthn. Knowledge of modern identity security practices. Experience designing highly available and scalable IAM solutions. Experience Requirements 5+ years of professional experience in Identity and Access Management (IAM). 4+ years of hands-on Okta experience, covering implementation, configuration, integration, and support. 2+ years of development/scripting experience using Java, JavaScript, Node.js, Python, PowerShell, or similar technologies. Experience working through the complete SDLC for IAM implementations. Experience in client-facing environments. Experience participating in technical design and architecture discussions. Soft Skills Strong analytical and problem-solving capabilities. Excellent troubleshooting and root-cause analysis skills. Strong written and verbal communication. Ability to communicate effectively with clients and technical stakeholders. Ability to conduct and participate in client meetings and technical workshops. Strong ability to translate business requirements into technical IAM solutions. Ability to work collaboratively with application, security, infrastructure, and business teams. Ability to lead or mentor team members. Strong ownership and accountability for deliverables.
Mandatory Skills Okta Identity Engine, Universal Directory, Lifecycle Management, SSO, MFA, API Access Management, SAML 2.0, OAuth 2.0, OIDC, SCIM, Okta APIs, Java, REST API, JavaScript, IAM, SDLC
Preferred Skills Okta Workflows, Event Hooks, Inline Hooks, Okta Access Gateway, Python, PowerShell, Node.js, Git, Jira, CI/CD, SonarQube, OpenSSL, Keytool, Zero Trust, FIDO2, WebAuthn
Apply to this job
Required — upload a file or paste the text
