4 hours ago
Washington, DC, USAStaff+
Base Salary
$161k - $241k/yr
Responsibilities
- Serve as a security subject matter expert for solution engineering and architecture reviews involving vulnerability scanning and reporting automation.
- Collaborate with SRE to manage update pipelines and enforce baseline compliance standards.
- Develop agentic automation for security posture scanning, reporting, issue remediation, and patch validation.
- Evaluate, design, implement, maintain, and enhance in-house security systems and features.
- Build custom automation and cloud infrastructure with Terraform or similar tools to support security controls and AI workflows.
- Develop integrations with APIs, AWS, GCP, Azure, and security infrastructure to improve vulnerability detection, response, and remediation.
- Write and maintain Python-, Bash-, and Go-based scripts and automations for security operations.
- Establish monitoring and alerting for security posture, misconfigurations, and threats across endpoints, SaaS, and cloud workloads.
- Identify and remediate security gaps and stay current with emerging threats, solutions, and tooling.
Requirements
- 10+ years of experience in Security Engineering, DevSecOps, Infrastructure Security, or SaaS applications in a large corporate environment.
- 10+ years of coding and scripting experience focused on automation and custom tooling for security engineering teams.
- Experience developing and maintaining ETL/ELT pipelines that onboard security data into a security data lake.
- Ability to build and maintain scalable, fault-tolerant vulnerability-data pipelines.
- Proven experience automating security controls and workflows using a cloud-first approach.
- Experience with Terraform and other infrastructure-as-code tools for security infrastructure.
- Familiarity with CI/CD pipelines for security automation and drift management.
- Strong communication skills for collaboration with technical staff, support teams, executive leadership, and external vendors.
- 2+ years of experience building engineering solutions in highly regulated environments is preferred.
- Experience automating commercial or open-source vulnerability and misconfiguration scanners and reporting tools for infrastructure/IP assets, containers, CSPM, and CNAPP is preferred.
- Familiarity with CVE, CVSS, EPSS, OWASP, and the CISA KEV catalog is preferred.
- Must be on U.S. soil and qualify as a U.S. person.
- Must hold an active U.S. TS/SCI clearance with Full Scope Poly.
- Must have proven experience navigating Federal and DoD compliance frameworks, specifically FedRAMP and Impact Level 6 (IL6).
Benefits
- Annual base salary range of $161,000—$241,000 USD for candidates in specified locations, plus equity where applicable, bonus, health, dental and vision insurance, 401(k), flexible spending account, PTO, and parental leave.
- Okta supports well-being, social impact, talent development, connection, and community.
- The role includes an immersive in-person onboarding experience, with Okta’s global community spanning more than 20 offices worldwide.
About Okta
Okta builds cloud-based identity and access management for enterprises and developers, including single sign-on, multi-factor authentication, and lifecycle management. It sells subscription SaaS as the Okta Workforce Identity and Customer Identity Clouds; the latter incorporates Auth0, acquired in 2021. Founded in 2009 and headquartered in San Francisco, Okta is a public company traded on Nasdaq.
