Identity Engineer
Cloudera
Business Area:
ITSeniority Level:
Mid-Senior levelJob Description:
At Cloudera, we empower people to transform complex data into clear and actionable insights. With as much data under management as the hyperscalers, we're the preferred data partner for the top companies in almost every industry. Powered by the relentless innovation of the open source community, Cloudera advances digital transformation for the world’s largest enterprises.
The Infrastructure and Operations organization within IT at Cloudera aims to deliver a highly reliable, performant, secure and scalable service infrastructure for users and applications. We partner with the Information Security team to build a Zero Trust Architecture throughout all systems at Cloudera. We also support configurations from Engineering teams to enable Identity and SSO with in-house applications. We are seeking a dedicated IAM Engineer to support a robust Identity ecosystem including access and credentials management.
The ideal candidate will strike a balance in the Identity and Access Management practice between the need for end users to use systems securely and to use them with ease. They will leverage tight partnerships with Cloudera Information Security team and our Customer Success organization, who serves as our support interface to users. The ideal candidate will carry forward their prior professional experience into this role to guide broad identity architectural decisions with other teams and design tooling and automation to enable scalability of management of the Identity ecosystem.
To comply with FedRAMP requirements, candidates must be US citizens on US soil to be considered for this role. This is a US-Remote opportunity.
As an Identity Engineer, you will:
-
Primary responsibility will be, but not limited to, Identity Engineering for FedRAMP High deployment
Work as a technical lead on all Identity projects, maintaining, alongside a technical program manager, oversight of Identity projects within other teams
Collaboratively design and build a scalable Identity and Access Management infrastructure
Design and build tooling and automation around IAM to support secure self service under Zero Trust principles
Partner with Client Platform Engineering in IT to support identity management of end user devices
Ensure auditability and logging to centralized systems for all IAM-related functions in IT
Identify major risks and minimize tradeoffs between business needs and individual user needs (optimize security and enablement)
Serve as a lead engineer on projects introducing major changes to the flow of user, group, and credential data, such as adding a new identity source
We are excited if you have:
5+ years of experience with architecture, design, operations, and deployment of Okta or equivalent IDP
5+ years of experience designing, deploying and administering Active Directory environments
5+ years of directly supporting authentication functions using industry standard protocols and systems (OIDC, SAML, AD, LDAP)
5+ years of experience in environments making significant use of web service APIs
5+ years of experience in building integrations between web services using Python, Go, Javascript
5+ years experience designing and implementing automation
Experience collaborating and justifying decisions affecting IAM company-wide
Experience in a CI/CD environment using tools such as Gitlab, Spacelift, Jenkins
You may also have:
Okta Certified Professional or Okta Certified Administrator or Okta Certified Consultant certification
Experience designing, deploying and administering Active Directory environments.
RADIUS, OpenLDAP, TACACS
Identity provider integration with a commercial user database, such as Workday
Experience building for compliance (SOC 2, SOX)
Fundamental understanding of Zero Trust Architecture
Experience implementing infrastructure-as-code (Terraform, Ansible, CloudFormation)
What you can expect from us:
Generous PTO Policy
Support work life balance with Unplugged Days
Flexible WFH Policy
Mental & Physical Wellness programs
Phone and Internet Reimbursement program
Access to Continued Career Development
Comprehensive Benefits and Competitive Packages
Employee Resource Groups
Cloudera is an Equal Opportunity / Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
#LI-JB2
#LI-Remote