Staff Security Engineer, Defensive Cyber Engineering

Okta Okta · Enterprise · Toronto, ON · Sec - Corp Security-186

Okta is seeking a Staff Security Engineer to join their Defensive Cyber Engineering team. The role involves safeguarding Okta's environments by implementing and managing security solutions, focusing on securing AI systems. The engineer will leverage automation, policy-as-code, and cloud-native technologies to deliver scalable and secure solutions, working closely with Security, Business Technology Engineering, and Product teams. Responsibilities include evaluating, designing, and implementing enterprise security systems, building automation, developing integrations, and establishing monitoring for security posture.

What you'd actually do

  1. Serve as a security subject matter expert (SME) for solution engineering, architecture reviews, security assessment, and vulnerability mitigation
  2. Lead technical efforts evaluating, designing, and implementing new enterprise security systems and feature enhancements
  3. Build, maintain, and enhance custom automation and cloud infrastructure using Terraform or similar tools to support team workflows and the enforcement of security controls
  4. Develop integrations with APIs, cloud platforms (AWS, GCP, Azure), and security infrastructure to improve detection, response, and remediation
  5. Collaborate with cross-functional teams to tackle global technology and security challenges

Skills

Required

  • Enterprise security tools (Okta, Crowdstrike, Palo Alto suite)
  • EDR
  • CASB
  • DLP
  • MDM
  • SASE
  • SSPM
  • Automation
  • Cloud-native technologies
  • Terraform
  • Infrastructure-as-code
  • CI/CD pipelines
  • API integrations
  • Cloud platforms (AWS, GCP, Azure)
  • Python
  • Monitoring and alerting

Nice to have

  • Bash
  • PowerShell
  • Go
  • Advanced identity management technologies (MFA, SAML, OAuth, OIDC, WebAuthn)
  • Okta's ecosystem
  • Continuous compliance solutions (policy-as-code, automated evidence gathering)

What the JD emphasized

  • Strong coding and scripting skills are required
  • Proven track record automating security controls and workflows