Live opening · Posted 5 days ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
EPAM is a leading global provider of digital platform engineering and development services. We are committed to having a positive impact on our customers, our employees, and our communities. We embrace a dynamic and inclusive culture. Here you will collaborate with multi-national teams, contribute to a myriad of innovative projects that deliver the most creative and cutting-edge solutions, and have an opportunity to continuously learn and grow. No matter where you are located, you will join a dedicated, creative, and diverse community that will help you discover your fullest potential.
We are seeking a hands-on IAM Engineering Manager to lead the identity security architecture and execution for migrating workforce identity from Okta Workforce Identity to Microsoft Entra ID across a large application portfolio. You will set technical standards, solve complex federation challenges, and guide migration quality end-to-end.
Responsibilities
Own the migration architecture and technical strategy for transitioning identity provider capabilities from Okta to Microsoft Entra ID
Define migration patterns, sequencing, and technical standards for re-platforming application integrations to Entra ID
Design and validate SAML and OpenID Connect configurations including claims mapping and policy equivalency
Lead technical decisions to ensure conditional access and authentication controls meet phishing-resistant and Zero Trust goals
Serve as the technical escalation point for complex application migration issues and non-standard federation cases
Execute or review high-risk migrations including service-to-service authentication and client-credentials flows
Build and maintain runbooks, reference architectures, and reusable configuration templates to accelerate delivery
Validate identity lifecycle behavior, provisioning expectations, and access policy parity before and after cutovers
Troubleshoot and resolve defects related to federation, token issuance, claims, and authentication failures during migration waves
Partner with the technical project manager to provide technical scoping, sequencing, and risk inputs without owning program management deliverables
Document technical decisions and configurations in Confluence and track engineering work in Jira
Coordinate with compliance and audit stakeholders when migration timing impacts control testing windows
Requirements
8+ years of hands-on identity engineering experience with production design and troubleshooting
Proven IdP migration experience moving applications between identity platforms at enterprise scale
Technical leadership experience defining architecture, standards, and escalation paths for complex workstreams
Large-scale project experience sequencing and executing migrations across many applications and stakeholders
Advanced Microsoft Entra ID skills including authentication, federation, and conditional access design
Advanced Okta Workforce Identity skills including policy models, factors, and federation configurations
Strong SAML expertise including federation setup and claims or attribute mapping
Strong OpenID Connect skills including token, scope, and claims configuration
Strong documentation skills using Atlassian Confluence for decisions, runbooks, and reference designs
Strong delivery skills using Atlassian Jira to track work and manage migration backlogs
Strong troubleshooting skills for federation, token issuance, and authentication failures
Upper-Intermediate English proficiency (B2) for clear technical communication with stakeholders
Nice to have
Agile delivery experience working in iterative increments with cross-functional teams
Scaled Agile Framework experience aligning engineering execution to program cadence
Privileged Access Management (PAM) exposure and understanding of identity dependencies
We offer
International projects with top brands
Work with global teams of highly skilled, diverse peers
Healthcare benefits
Employee financial programs
Paid time off and sick leave
Upskilling, reskilling and certification courses
Unlimited access to the LinkedIn Learning library and 22,000+ courses
Global career opportunities
Volunteer and community involvement opportunities
EPAM Employee Groups
Award-winning culture recognized by Glassdoor, Newsweek and LinkedIn
EPAM is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, sexual orientation, gender identity or expression, disability, protected veteran status, or any other characteristic protected by applicable law.
Work arrangement
Yes
More openings worth a look
Recently tracked roles with full details and direct application links.