Senior Security Consultant - Okta (Remote in the US)

GuidePoint Security · Remote · Engineering

Posted 2026-08-22

Apply for this role →

General Description

GuidePoint Security is hiring a Senior Security Consultant – Okta Access Management to join our delivery team on a full-time basis. This is a fully remote role for a seasoned IAM engineer/architect who can independently lead complex Okta engagements from design through implementation with minimal oversight.

The Senior Security Consultant is a hands-on technical leader responsible for architecting, implementing, and optimizing Access Management solutions across the Okta Identity Engine (OIE) and Auth0 platforms. This role requires deep expertise in Okta Workflows, federation, and modern authentication patterns — with the ability to flex between workforce and customer identity use cases depending on engagement needs.

This individual will serve as the technical authority on assigned engagements, driving solution design, leading client workshops, mentoring junior staff, and ensuring delivery excellence across the full engagement lifecycle.

Access Management / CIAM Practice

Coming to the Access Management team means working on the leading edge in the IAM space. As a Senior Security Consultant focused on Okta, you will lead complex identity engagements for some of the largest enterprises in the US — designing solutions that secure millions of users across workforce and customer-facing applications. You will have the autonomy to own your engagements end-to-end while being backed by a collaborative team of IAM specialists.

We partner with the largest vendors in the space to ensure that the latest training is always available to our team. High level communication and collaboration are the standard. Mentorship at all levels is foundational to our culture. We don't just talk about work life balance; we facilitate it with an unlimited PTO benefit.

We understand that in order to retain our talented team, leadership must provide regular feedback and coaching. We recruit new members to the team with the understanding that opportunities for growth are important. Whether your goals include future leadership opportunities, becoming a Practice Director, or even moving to another discipline within security in time, the leadership team is focused on partnering with you to help achieve them.

Roles and Responsibilities:

Technical Delivery & Solution Architecture (50%)

Lead end-to-end design and implementation of Okta OIE solutions including SSO, MFA, adaptive access policies, and Lifecycle Management (LCM)

Design and implement comprehensive LCM solutions including joiner/mover/leaver automation, SCIM provisioning to downstream applications, HR-driven identity workflows, provisioning agent deployment, and directory integrations (AD, LDAP, HR systems such as Workday and SuccessFactors)

Leverage Okta Workflows to extend LCM beyond native connectors — building custom integrations for disconnected applications, automating account reconciliation, orchestrating complex provisioning logic, and implementing event-driven automation across connected systems (including approval chains, attribute transformations, and onboarding/offboarding sequences)

Architect and build Auth0 solutions for customer identity use cases (B2C, B2B, B2B2C) including Universal Login, Actions, Organizations, and custom database connections

Develop federation architectures leveraging SAML 2.0, OAuth 2.0, and OpenID Connect across hybrid environments

Configure and optimize Okta API Access Management including custom authorization servers, token policies, scopes, and claims for securing APIs and microservices

Apply infrastructure-as-code and DevOps/SecDevOps practices to Okta environments — managing tenant configurations via the Okta Terraform Provider, version-controlling policy and application definitions in Git, and integrating identity changes into CI/CD pipelines (e.g., GitHub Actions, GitLab CI) for repeatable, auditable deployments

Lead technical discovery sessions, whiteboarding, and solution design workshops with client architects and engineering teams

Produce technical design documents, architecture diagrams, runbooks, and implementation guides

Perform platform migrations, tenant configurations, and identity consolidation efforts

Engagement Leadership & Delivery Execution (25%)

Lead assigned engagements independently — owning timelines, deliverables, and client communication with minimal oversight

Develop and maintain engagement plans, track milestones, and proactively manage risks and dependencies

Facilitate status meetings, steering committees, and executive briefings

Manage scope and drive change control processes when requirements evolve

Coordinate with other workstreams and delivery resources to ensure alignment across parallel efforts

Ensure engagement closeout includes proper documentation, knowledge transfer, and transition planning

Mentorship & Technical Enablement (15%)

Mentor junior consultants and business analysts on Okta/Auth0 technical concepts and delivery best practices

Conduct internal knowledge-sharing sessions, brown bags, and technical deep dives

Review deliverables and solution designs produced by other team members for quality and accuracy

Contribute to the development of reusable assets including templates, accelerators, and reference architectures

Support onboarding of new team members to the Okta practice

Presales & Practice Development (10%)

Support sales efforts by participating in scoping calls, technical qualification, and solution demonstrations

Contribute to SOW development, LOE estimation, and proposal creation for Okta/Auth0 opportunities

Identify expansion opportunities within active engagements and communicate to account teams

Stay current on Okta/Auth0 product roadmaps, releases, and emerging capabilities

Represent GuidePoint at vendor events, webinars, and industry forums as appropriate

Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes

Required Experience and Education:

Bachelor’s degree in Computer Science, Information Security, or related field — or equivalent work experience

7+ years of hands-on experience in Identity and Access Management

4+ years of direct implementation experience with Okta OIE (Workforce Identity Cloud)

Full proficiency in Okta Workflows — including connector development, error handling, complex flow logic, and API-driven automations

Strong LCM implementation background — proven experience designing and deploying joiner/mover/leaver processes, SCIM provisioning, and automated lifecycle orchestration using Okta Workflows

Demonstrated experience with Auth0 implementation including Actions, Rules, Universal Login customization, Organizations, and tenant architecture

Deep understanding of federation protocols (SAML 2.0, OAuth 2.0, OpenID Connect) and their practical application

Experience with Okta API Access Management, token policies, and custom authorization servers

Proven ability to lead engagements independently with minimal oversight — managing scope, timelines, and client relationships

Strong client-facing communication skills with the ability to present to both technical and executive audiences

Experience producing professional technical deliverables (design documents, architecture diagrams, runbooks)

Preferred Experience and Education:

Experience with additional Okta OIE modules:

Okta Privileged Access (OPA)

Okta Identity Governance (OIG)

Okta Device Access

Okta Identity Threat Protection (ITP)

Okta for AI Agents (O4AA)

Experience with Ping Identity products (PingFederate, PingOne, PingAccess) or other Access Management vendors (Microsoft Entra ID, ForgeRock)

Familiarity with infrastructure-as-code tooling for identity — Okta Terraform Provider, Git-based version control, and CI/CD pipeline integration

Okta certifications:

Okta Certified Professional

Okta Certified Administrator

Okta Certified Consultant

Experience with complementary IAM platforms (CyberArk, SailPoint)

Background in customer identity (CIAM) architecture patterns and multi-tenant design

Additional certifications (CISSP, Security+, AWS/Azure identity certifications)

Prior consulting or professional services delivery experience

Travel Requirements:

Up to 10% travel

Physical Requirements:

Sedentary work

Substantial movement of the wrists, hands, and/or fingers for a minimum of 8 hours a day

Required to have close visual acuity to view computer terminal and/or extensive reading for a minimum of 8 hours a day

Apply for this role →

← Back to all jobs