Associate Iam Engineer

Tempus AI Tempus AI · Vertical AI · Chicago, IL

Associate IAM Engineer responsible for day-to-day identity operations, SSO integrations, device assurance, and troubleshooting authentication issues, focusing on Okta administration and enterprise automation within a healthcare company.

What you'd actually do

  1. Configure, test, and deploy standard SAML 2.0 and OIDC/OAuth 2.0 integrations for onboarding new SaaS applications.
  2. Serve as the Tier 2/3 point of contact for identity-related tickets. Deep-dive into system logs and protocol traces to resolve authentication, MFA, and provisioning failures.
  3. Monitor and maintain automated user provisioning (Joiner/Mover/Leaver processes) across HRIS, Active Directory, and downstream applications. Help triage Okta Workflow errors.
  4. Assist in configuring and monitoring Okta Device Assurance policies to ensure only secure, compliant devices can access corporate resources.
  5. Support user access reviews and regular entitlement certifications using Okta Identity Governance (OIG) to ensure alignment with SOC2, ISO 27001, and SOX frameworks.

Skills

Required

  • 1–3 years of experience in an IT, Security, or Systems Administration role
  • At least 1 year of dedicated hands-on exposure to Okta administration
  • Conceptual understanding of SAML 2.0
  • Conceptual understanding of OpenID Connect
  • Familiarity with SCIM
  • Comfortable navigating and managing Universal Directory
  • Foundational understanding of REST API concepts
  • Understanding of basic security principles like Multi-Factor Authentication (MFA), Least Privilege, and Zero Trust

Nice to have

  • Okta Device Assurance
  • Identity Governance (IGA)
  • Okta Workflows & Automation
  • Okta Certified Professional or Okta Certified Administrator

What the JD emphasized

  • SOC2
  • ISO 27001
  • SOX frameworks