IT IAM & SaaS Integration Engineer

Gatik AIMountain View, CA
Onsite

About The Position

The IT IAM & SaaS Integration Engineer is the architect of our digital perimeter. You will transform manual provisioning into automated, "Zero-Touch" workflows, ensuring our SaaS stack (Google workspace, Okta, Slack, Azure, etc.) is perfectly synced and compliant. You will architect the identity lifecycle across our hybrid Google/Okta environment. Your mission is to eliminate manual ticketing by leveraging IGA tools (e.g. Lumos) to automate access requests and governance. You will ensure that every SaaS integration is secure, automated, and audit-ready. This role is onsite 5 days/week at our Mountain View, CA office!

Requirements

  • 3+ years managing Google Workspace and Okta.
  • Expertise in SAML, OAuth 2.0, and SCIM.
  • Experience with Lumos, IdenHQ, or similar modern IGA platforms.
  • Proficiency in Zapier as well as Python or PowerShell for API-based automation.
  • Experience with HRIS-to-IdP integrations (e.g., Rippling to Google Workspace/Okta).

Responsibilities

  • Identity Governance & RBAC: Design and manage comprehensive RBAC frameworks. Conduct regular access reviews and audits for SOC2/ISO 27001 compliance.
  • Automated Lifecycle Management: Build and maintain automated onboarding/offboarding workflows using Google workspace, Okta Workflows, MSFT Entra, or Python.
  • IGA Implementation: Lead the rollout of IGA tools (e.g. Lumos) to automate User Access Reviews (UAR) and build a self-service "AppStore" for employees.
  • Automated Lifecycle: Design "Zero-Touch" onboarding/offboarding workflows using Zapier and Okta Workflows, ensuring access is revoked instantly across all 50+ SaaS tools.
  • Governance & Compliance: Use your IGA platform to enforce Least Privilege and provide "push-button" audit evidence for SOC2/ISO 27001.
  • Integration Development: Connect new SaaS tools via SAML/OIDC/SCIM, primarily utilizing Google Cloud Identity for the majority of our stack.
  • Risk Mitigation: Proactively track for orphaned accounts, stale roles, and over-privileged access to maintain a "Least Privilege" environment
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service