Okta

Staff Identity Governance and Access Engineer

Okta · Bellevue, Washington; Chicago, Illinois; Washington, DC

Posted 11 days ago

or apply directly on Okta's site. We never take the application ourselves.

Is this posting real?

This role has been open
11 days
Okta's roles stay open a median of 45 days
Reposted
No
Salary listed
No
0% of Okta's roles list one
Ghost-job risk at Okta
low
0 stale, 35 reposted of 320 open
Hiring momentum
541 roles opened in the last 90 days
↑ up vs. the prior 90 days
Last confirmed on the employer's board
2026-09-17

Measured from postings appearing on and disappearing from Okta's own greenhouse board since 2026-08-03. Full hiring picture for Okta.

About this role

The Staff Identity Governance and Access Engineer will take ownership of Okta's Identity Governance, Privileged Access, and Identity Security Posture Management implementations. The role involves designing access workflows, leading lifecycle strategies, and automating processes related to identity management. Additionally, the engineer will mentor team members and communicate technical updates to leadership, ensuring the integrity and security of identity systems.

Our read on this posting3.2out of 5
benefits
3/5
freshness
4/5
career value
4/5
role clarity
5/5
pay transparency
0/5

Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Okta as an employer.

What you need

  • Minimum 4+ years of direct, advanced experience managing and administering enterprise IGA, PAM/ISPM tools and platforms.
  • Demonstrated hands-on experience designing and deploying Birthright Provisioning models and RBAC architectures in production environments.
  • Production experience with OPA or equivalent PAM tooling, including Zero Standing Privilege, Just-In-Time access models, break-glass design, and admin tiering.
  • Production experience with ISPM tools (such as Okta ISPM) that integrate with EDR solutions like Crowdstrike Falcon.
  • Solid grounding in identity and access standards (SAML, OIDC, OAuth 2.0, SCIM) and role/attribute-based access control concepts.
  • Track record of owning technical designs for identity lifecycle problems (joiner/mover/leaver) end-to-end, from design doc through production rollout.

Nice to have

  • Experience governing non-human identities (service accounts, API tokens, secrets, AI agents/workload identities) and scaling access certification programs.
  • Familiarity with ServiceNow and JIRA-based service request intake for IGA/PAM/ISPM operations.
  • Okta certifications — Okta Certified Administrator, Okta Certified Consultant, or Okta Workflows Specialist.
  • Technical integration experience with REST APIs, JSON parsing, webhooks, and Workday-to-IdP patterns (real-time event delivery vs. scheduled reconciliation tradeoffs).
  • Experience supporting compliance audits across multiple frameworks beyond SOX (SOC 2, ISO 27001, HIPAA, GDPR).

What you get

  • Equity (where applicable)
  • Bonus
  • Health, dental and vision insurance
  • 401(k)
  • Flexible spending account
  • Paid leave (including PTO and parental leave)

Worth weighing

  • No specific mention of team size or structure, which could impact collaboration dynamics.
  • The role requires a high degree of autonomy, which may not suit everyone.
  • The salary range is provided but is location-dependent and may vary based on individual qualifications.
  • The posting emphasizes a strong focus on compliance and security, which may involve rigorous processes.

Summarised from Okta's posting. Read the full original.

Listed by Okta on their greenhouse job board, last confirmed open on 2026-09-17. PitchMeAI is not the employer.

More roles at Okta

All 320 open roles at Okta

Apply to a Staff Identity Governance and Access Engineer position at Okta - Jobs near me at Bellevue, Washington; Chicago and 2 more locations