SoFi

Senior Identity and Access Management Engineer

Azure GCP Terraform API AWS
Search for More Jobs Talk to a recruiter now 💪
Description

Employee Applicant Privacy Notice

Who we are:

Shape a brighter financial future with us.

Together with our members, we’re changing the way people think about and interact with personal finance.

We’re a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way. Join us to invest in yourself, your career, and the financial world.

The Role:

The Senior Identity and Access Management Engineer is responsible for designing, implementing, and managing the organization's identity and access management processes and technology. This role requires a deep understanding of IAM principles, Okta administration, and security best practices. The ideal candidate will possess strong technical skills using the Okta platform in order to automate processes, optimize IAM operations, and secure SoFi systems and data. They will also play a crucial role in ensuring compliance with industry regulations and driving the adoption of Zero Trust principles.

What you’ll do: 

As a Senior Identity and Access Management Engineer,  you will be responsible for implementing, and maintaining the organization's IAM strategy. This includes:

  • Coordinate with IAM leadership and project management on project planning, execution and reporting across concurrent projects.
  • Contribute to the overall design and implementation of Identity and Access Management across cloud and on-prem systems utilizing Okta and associated technologies.
  • Extend Core Okta capabilities with Okta Workflows, APIs, On-Premise Connectors and third party integrations.
  • Assist with leading and mentoring a team of IAM professionals to develop, update and maintain the required IAM governance and certification program to support business and information security requirements for SoFi, and meet compliance obligations
  • Partner with the Security and Information Technology teams to develop and maintain a Zero Trust security architecture to ensure the Confidentiality, Integrity, and Availability of company data
  • Analyze and select tools, methods, techniques and evaluation criteria to enable and meet operational objectives
  • Collaborate with HR, IT, Security and other organizations to ensure a robust approach to identity lifecycle management; including onboarding, transfers, offboarding, role definition and permissions management
  • Ensure strong authentication, authorization, role-based access controls (RBAC) are implemented in existing and new applications and products, including mobile devices and physical access
  • Design, select, and manage IAM, PAM solutions and/or other processes as needed
  • Manage integrations and best practices with directory providers such as Google Workspace, Active Directory, and Entra ID
  • Utilize security policy, IAM best practices and research to advise teams on third party access designs and best practices.
  • Maintain subject matter expertise in Identity and Access Management technologies
  • Enhance IAM processes through ticketing systems such as ServiceNow, Jira 

What you’ll need:

  • Proven experience in administering and managing Okta’s Identity Platform, including Okta Identity Governance and Okta Workflows
  • In-depth knowledge of both Cyber Security and IAM concepts, principles, and best practices.
  • Experience providing oversight and guidance to engineers involved in support of PAM or Secrets Management  solutions
  • Excellent analytical and problem-solving skills
  • Ability to work independently and as part of a team
  • Excellent written and verbal communication skills
  • Okta Certified Administrator certification
  • 5+ years of IAM experience supporting medium-large companies 

Nice to have:

  • Knowledge of cloud platforms (AWS, Azure, GCP)
  • Experience defining, deploying, and auditing AWS IAM Roles across multiple organizations
  • Experience with Terraform and Infrastructure as Code (IaC) pipelines
  • Experience with other IAM tools (e.g., Active Directory, LDAP)
  • Security certifications such as CISSP or CISM
  • Advanced Okta Certified Certifications such as Consultant, Architect, or Developer
  • Strong understanding of financial services regulations and guidance including GLBA, PCI, SOC1/SOC2, and SOX.
Compensation and Benefits
The base pay range for this role is listed below. Final base pay offer will be determined based on individual factors such as the candidate’s experience, skills, and location. 
 
To view all of our comprehensive and competitive benefits, visit our Benefits at SoFi page!
SoFi provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion (including religious dress and grooming practices), sex (including pregnancy, childbirth and related medical conditions, breastfeeding, and conditions related to breastfeeding), gender, gender identity, gender expression, national origin, ancestry, age (40 or over), physical or medical disability, medical condition, marital status, registered domestic partner status, sexual orientation, genetic information, military and/or veteran status, or any other basis prohibited by applicable state or federal law.
The Company hires the best qualified candidate for the job, without regard to protected characteristics.
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
New York applicants: Notice of Employee Rights
SoFi is committed to embracing diversity. As part of this commitment, SoFi offers reasonable accommodations to candidates with physical or mental disabilities. If you need accommodations to participate in the job application or interview process, please let your recruiter know or email accommodations@sofi.com.
Due to insurance coverage issues, we are unable to accommodate remote work from Hawaii or Alaska at this time.
Internal Employees
If you are a current employee, do not apply here - please navigate to our Internal Job Board in Greenhouse to apply to our open roles.
SoFi
SoFi
Financial Services FinTech Life Insurance Wealth Management

0 applies

5 views

Similar Jobs

Software Engineer II, Cloud

Durham, NC Remote Hybrid

Fullstack Engineer

San Jose, CA San Francisco, CA

Python Developer

Bengaluru, India

Software Engineer

Ramat Gan, Israel

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 389 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • Salaries for the engineering jobs on our site range from $100K-$200K. On average, senior engineer positions on our EchoJobs are about $160K.
  • The EchoJobs positions have been sourced and vetted from the top companies to work for in the US as a software engineer, including LinkedIn and other reputable job sites. We also have syndicated jobs from companies that have just raised funding, as well as those that have great unique products and culture. From all of these sources, our founder, Morgan, has also resourced the company's authenticity in terms of their website, public appearance, and more.
  • Yes, our users asked us for just this, so now our search filters allow you to search for your top jobs via location, as well as by onsite, remote, or both. Approximately 30% of our jobs are remote, so you’ve got the best options for you!
  • We have not yet implemented this option, but are considering doing so in the future. For the moment, you would need to cancel your subscription, and resubscribe when you wanted to come back.
  • We add new jobs to EchoJobs every day! We scan our sources for the newest jobs, verify them, and post them to EchoJobs within minutes. We add about 2,000-3,000 new jobs for you each day!
  • From starting your job search to getting hired, the entire job search process can take us software engineers anywhere between 3-6 months. However, at EchoJobs, we’re striving to shorten this duration by finding the best, newest jobs for you, so you can do less job searching, and more applying.
  • We’d recommend checking EchoJobs daily, as we add new jobs to the site each day. Additionally, if you got a chance to read our previous email on “what makes EchoJobs different from any other job search tools,” we also recommended that you set a job alert based on your job filters, so if you get emails on those new jobs, you could be checking more than once per day.
  • If you decide to continue with us after the 1-month trial, we definitely recommend this, as we all know it usually takes 3-6 months to find a quality job as a software engineer these days. So to best support you, we just adjusted our membership options at EchoJobs to monthly, 3 months, or 12 months (this option is more for passive job seekers looking a little bit for the future if they want to come back to work or make a job switch potentially. This lets you see what’s out there in case an even better fit job becomes available.)
  • EchoJobs is truly the only job site of its kind. We want to be THE spot for you to find the best job for you, and haven’t encountered any other company doing this. Other job sites are in niches besides software engineering or focus on a small portion of engineering jobs (like a specific coding language). In the words of Morgan, our founder, “I think what makes EchoJobs different is the amount of jobs, frequency that we add new jobs (we add 2,000-3,000 new jobs daily!), and the powerful search engines to find exactly the job you want more easily and efficiently. We can provide you with the most jobs that are vetted by us, we’ll continually find more new jobs for you, and we make it easier for you to apply and get hired.

What Fellow Engineers Say