Senior Identity Management Engineer

Aurora Innovation Aurora Innovation · Robotics · Mountain View, CA · Security

Seeking a Senior Identity Management Engineer to implement and evolve Aurora's identity ecosystem, focusing on Zero Trust principles, modern IAM tools (Conductor One, Ping Directory), and compliance hardening for SOX/ISO.

What you'd actually do

  1. Complete baseline environment configuration for Ping Directory and Conductor One across Dev and Prod tiers.
  2. Integrate HRIS (Workday) with the IGA platform to automate Joiner-Mover-Leaver (JML) processes.
  3. Build and validate production-ready connectors for the core ecosystem, including Okta, AWS, Google, Slack, and Squad.
  4. Deploy "Justify or Revoke" workflows and automated reporting to support SOX/ISO privileged access reviews.
  5. Execute the migration of Workforce and Service identities to Ping Directory.

Skills

Required

  • Information Security
  • IAM solutions
  • Cloud Identity Provider (AWS IAM, Azure)
  • SAML
  • OAuth 2.0
  • OIDC
  • SCIM
  • LDAP
  • Zero Trust principles
  • RBAC
  • ABAC
  • PBAC
  • Python
  • Go

Nice to have

  • Okta
  • Auth0
  • Microsoft Entra ID
  • Conductor One
  • SailPoint
  • Saviynt
  • Ping Directory
  • AWS cloud infrastructure
  • Kubernetes
  • Terraform
  • Helm
  • ArgoCD
  • API Security
  • OAuth scopes and claims

What the JD emphasized

  • implementing IAM solutions in large enterprise environments
  • Zero Trust principles
  • SOX/ISO privileged access reviews