Exadel
AI-first global tech company
SeniorIAMEngineer(Okta)
Neural analysis suggests this role is
optimal for Senior candidates.
“Senior IAM Engineer (Okta) at Exadel. Skills: Okta, Identity and Access Management, Python, SSO protocols (SAML, OIDC), SCIM provisioning, Terraform. Maintain and improve identity-server (Python/FastAPI service). Configure and manage Okta across SSO (SAML/OIDC), SCIM provisioning, MFA/Adaptive Auth, Workflows, and Lifecycle Management”
Industry & Context.
Define problems and drive solutions without hand-holding
What They're Looking For.
Must Have
5+ years of experience in identity and access management engineering, Deep Okta expertise - both admin console configuration and programmatic integration via Okta APIs/SDKs, Hands-on experience with SSO protocols (SAML 2.0, OIDC/OAuth 2.0) and federation architectures, Production experience with Python (FastAPI, Flask, or Django) for building identity/auth services (other language is also acceptable), Working knowledge of Terraform for managing IAM infrastructure as code, Experience with SCIM provisioning for automated user lifecycle management, Comfortable working independently as the sole IAM owner - you define problems and drive solutions without hand-holding, English level Intermediate+
Nice to Have
Familiarity with SOC 2 and/or HIPAA compliance requirements as they relate to access controls
What You'll Do.
Maintain and improve identity-server (Python/FastAPI service)
Configure and manage Okta across SSO (SAML/OIDC)
and Lifecycle Management
Support multi-IDP federation
Fix user provisioning and deprovisioning delays
Automate manual access management workflows
Address security gaps in access controls
Conduct access reviews
Maintain and extend CLI tooling for Okta user management
How You'll Work.
Team & Collaboration
Collaborative
Communication Scope
English level Intermediate+
Full Job Description
Why Join Exadel We’re an AI-first global tech company with 25+ years of engineering leadership, 2,000+ team members, and 500+ active projects powering Fortune 500 clients, including HBO, Microsoft, Google, and Starbucks. From AI platforms to digital transformation, we partner with enterprise leaders to build what’s next. What powers it all? Our people are ambitious, collaborative, and constantly evolving. About the Client The leading provider of vehicle lifecycle solutions, with headquarters in Chicago, enables the companies that build, insure, and replace vehicles to power the next generation of transportation. Its platform delivers advanced mobile, artificial intelligence, and car technologies. It connects a network of 350+ insurance companies, 24,000+ repair facilities, hundreds of parts suppliers, and dozens of third-party data and service providers. The customer's collective solutions enhance productivity and help clients deliver better experiences for end consumers. What You’ll Do Maintain and improve our identity-server — a Python/FastAPI service that handles Okta SSO authentication, JWT token signing, RBAC via Okta groups, and user redirect routing Configure and manage Okta across SSO (SAML/OIDC), SCIM provisioning, MFA/Adaptive Auth, Workflows, and Lifecycle Management Support multi-IDP federation — connecting external identity providers into our Okta tenant Fix user provisioning and deprovisioning delays, automate manual access management workflows Address security gaps in access controls and conduct access reviews Maintain and extend CLI tooling for Okta user management (user search, group management, bulk assignment, role migration) What You Bring 5+ years of experience in identity and access management engineering Deep Okta expertise - both admin console configuration and programmatic integration via Okta APIs/SDKs Hands-on experience with SSO protocols (SAML 2.0, OIDC/OAuth 2.0) and federation architectures Production experience with Python (FastAPI, F
Applying for this Senior IAM Engineer (Okta) role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Greenhouse
- Create a Greenhouse profile before applying — it saves time across multiple applications.
- Upload your resume as a PDF; the parser handles it better than Word.
- Answer all knockout questions carefully — wrong answers auto-reject before a human sees you.
- Enable email notifications to track application status in real time.
ANONYMOUS · UNFILTERED
What do employees actually say about Exadel?
Real rants from real employees. Read before you apply.