About the Role:
We are seeking a skilled IAM Operations Engineer to join CrowdStrike's Identity and Access Management team. As an IAM Operations Engineer, you will be responsible for implementing and maintaining our enterprise identity infrastructure, focusing on Okta, 1Password, and workflow automation. This role is critical in supporting our Enterprise Identity Governance Framework and ensuring secure, efficient access management across our rapidly growing organization. The ideal candidate will combine strong technical skills with a security-first mindset and excellent problem-solving abilities.
What You'll Do:
Identity Platform Management-
Manage and optimize Okta environment for 12,000+ users across several hundred applications
Configure and maintain 1Password enterprise deployment
Develop and implement Okta Workflows for process automation
Support RBAC implementation through Active Directory and Okta group management
Implement and maintain MFA solutions including FIDO2 authentication
System Integration:
Configure SSO integrations for enterprise applications
Implement identity lifecycle management workflows
Integrate identity systems with enterprise applications
Support SailPoint IdentityNow connectivity
Maintain directory synchronization processes
Operational Support:
Troubleshoot authentication and access issues
Manage identity-related service requests
Support application onboarding to identity platforms
Maintain system documentation and runbooks
Participate in on-call rotation for identity services
Security and Compliance:
Implement identity security controls
Support compliance requirements (SOX, C5, etc.)
Monitor identity systems for security issues
Assist with access reviews and certifications
Maintain audit trails and documentation
What You'll Need:
5+ years of experience in IAM operations
3+ years of hands-on experience with Okta (SSO, MFA, Workflows)
Strong understanding of identity protocols (SAML, OAuth, OIDC) and security controls (MFA, access and password policies, session management, security monitoring)
Experience with Active Directory and Azure AD
PowerShell/Python scripting
REST APIs
Team collaborator who is detail-oriented, has strong problem-solving and troubleshooting ability, and is a superior communicator
Project support (implement new solutions, support application onboarding, participate in security assessments, contribute to process improvements)
Proven track record of automation-implementation
Platform support – automation workflows, security controls, create integration solutions, building monitoring dashboards, and maintaining system documentation
Proven track record in automation, implementation
Bonus Points:
A combination of SailPoint IdentityNow, LDAP, SQL, JSON/YAML, Git
Identity Governance
Cloud platform depth (AWS, Azure, GCP combination)
Familiarity with Veza, Delinea PAM, and/or LogScale
Security Certifications (CISSP, CIAM, etc.)
#LI- EV1