We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.

Job posting has expired

#alert
Back to search results
Remote New

Identity Engineer

Cloudera, Inc.
United States, Michigan
Jan 17, 2025

Business Area:

IT

Seniority Level:

Mid-Senior level

Job Description:

At Cloudera, we empower people to transform complex data into clear and actionable insights. With as much data under management as the hyperscalers, we're the preferred data partner for the top companies in almost every industry. Powered by the relentless innovation of the open source community, Cloudera advances digital transformation for the world's largest enterprises.

The Infrastructure and Operations organization within IT at Cloudera aims to deliver a highly reliable, performant, secure and scalable service infrastructure for users and applications. We partner with the Information Security team to build a Zero Trust Architecture throughout all systems at Cloudera. We also support configurations from Engineering teams to enable Identity and SSO with in-house applications. We are seeking a dedicated IAM Engineer to support a robust Identity ecosystem including access and credentials management.

The ideal candidate will strike a balance in the Identity and Access Management practice between the need for end users to use systems securely and to use them with ease. They will leverage tight partnerships with Cloudera Information Security team and our Customer Success organization, who serves as our support interface to users. The ideal candidate will carry forward their prior professional experience into this role to guide broad identity architectural decisions with other teams and design tooling and automation to enable scalability of management of the Identity ecosystem.

To comply with FedRAMP requirements, candidates must be US citizens on US soil to be considered for this role. This is a US-Remote opportunity.

As an Identity Engineer, you will:

  • Primary responsibilitywill be, but not limited to, Identity Engineeringfor FedRAMP High deployment

    Work as a technical lead on all Identity projects, maintaining, alongside a technical program manager, oversight of Identity projects within other teams

  • Collaboratively design and build a scalable Identity and Access Management infrastructure

  • Design and build tooling and automation around IAM to support secure self service under Zero Trust principles

  • Partner with Client Platform Engineering in IT to support identity management of end user devices

  • Ensure auditability and logging to centralized systems for all IAM-related functions in IT

  • Identify major risks and minimize tradeoffs between business needs and individual user needs (optimize security and enablement)

  • Serve as a lead engineer on projects introducing major changes to the flow of user, group, and credential data, such as adding a new identity source

We are excited if you have:

  • 5+ years of experience with architecture, design, operations, and deployment of Okta or equivalent IDP

  • 5+ years of experience designing, deploying and administering Active Directory environments

  • 5+ years of directly supporting authentication functions using industry standard protocols and systems (OIDC, SAML, AD, LDAP)

  • 5+ years of experience in environments making significant use of web service APIs

  • 5+ years of experience in building integrations between web services using Python, Go, Javascript

  • 5+ years experience designing and implementing automation

  • Experience collaborating and justifying decisions affecting IAM company-wide

  • Experience in a CI/CD environment using tools such as Gitlab, Spacelift, Jenkins

You may also have:

  • Okta Certified Professional or Okta Certified Administrator or Okta Certified Consultant certification

  • Experience designing, deploying and administering Active Directory environments.

  • RADIUS, OpenLDAP, TACACS

  • Identity provider integration with a commercial user database, such as Workday

  • Experience building for compliance (SOC 2, SOX)

  • Fundamental understanding of Zero Trust Architecture

  • Experience implementing infrastructure-as-code (Terraform, Ansible, CloudFormation)

What you can expect from us:

  • Generous PTO Policy

  • Support work life balance with Unplugged Days

  • Flexible WFH Policy

  • Mental & Physical Wellness programs

  • Phone and Internet Reimbursement program

  • Access to Continued Career Development

  • Comprehensive Benefits and Competitive Packages

  • Paid Volunteer Time

  • Employee Resource Groups

Cloudera is an Equal Opportunity / Affirmative Action Employer. All qualified applicants willreceive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

#LI-JB2
#LI-Remote

(web-6f6965f9bf-j5kl7)