Senior Systems Engineer (Identity and Access)

FlexportSan Francisco, CA
Onsite

About The Position

Flexport IT is looking for a Senior Systems Engineer (Identity & Access). In this role, you will design, implement, and administer our Identity and Access Management (IAM) solutions to ensure secure, efficient user lifecycle management. While you are our resident Okta expert, you are also a high-level IT generalist. You will oversee our broader SaaS ecosystem (Google Workspace, Slack, Jira) and endpoint management infrastructure (Jamf, Intune). Your expertise will drive automation, protect sensitive data, mitigate security risks, and maintain compliance in a heavily regulated industry. You will continually strive towards automation of toil. Flexport’s book of business is growing fast, but the promise of technology is that we can grow our business faster than our headcount. The automation you build will be a key factor in that effort.

Requirements

  • 5+ years of experience in IAM systems engineering paired with broad IT infrastructure management.
  • Deep, hands-on mastery of Okta configuration, policy creation, and application integration.
  • Strong knowledge of IAM standards including SAML, SCIM, OAuth, OIDC, IGA, RBAC, and LDAP.
  • Experience with scripting (e.g., Python, Bash, or PowerShell) and Okta Workflows to automate IT tasks.
  • Proven track record managing Google Workspace, Slack, Jira, Jamf (macOS), and Intune (Windows).
  • Bachelor’s degree in Computer Science, a related field, or equivalent practical engineering experience.
  • A "compliance-first" attitude to navigate the rigorous requirements of a heavily regulated industry.
  • Excellent problem-solving abilities paired with strong collaborative and interpersonal communication.

Responsibilities

  • Design, implement, and maintain the end-to-end lifecycle of Identity and Access Management platforms.
  • Administer Okta, directory services, Multi-Factor Authentication (MFA), and advanced password management.
  • Manage core collaboration tools including Google Workspace, Microsoft O365, Slack, and Jira/Confluence.
  • Oversee our global fleet of Mac and Windows devices using Jamf and MS Intune.
  • Build automated workflows for provisioning, deprovisioning, and application access.
  • Establish role-based access control (RBAC), entitlement reviews, and access certification processes.
  • Lead the technical onboarding of new SaaS applications for Single Sign-On (SSO).
  • Collaborate closely with the Security team to embed security best practices into our IT infrastructure.
  • Author technical operating procedures, engineering roadmaps, and compliance policies.
  • Provide high-tier technical leadership and escalation support for complex IT operations.

Benefits

  • medical
  • dental
  • flexible time off
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service