💼Jobs 📝Blog 🧮Salary Calc 🌍Cost of Living 📋Tax Guide
👤Sign In Post a Job — from $99
Okta

Staff Security Engineer, TDI

EngineeringFull-TimeLead
Location
Worldwide
Job Type
Full-Time
Experience
Lead
Apply Now

Job Description

ABOUT THE ROLE Okta's Technology, Data, and Intelligence (TDI) team is seeking a highly skilled and hands-on Staff Security Engineer with a DevSecOps & Issue Management focus to join the TDI Security team. As a Staff Security Engineer, you will be embedded directly within our technical environments, working side-by-side with engineering and operations teams to strengthen Okta's security posture across infrastructure, cloud, and business systems. WHAT YOU'LL DO In this role, you will build a centralized Security Posture Analytics and Reporting capability that aggregates findings, remediation status, and risk data across Okta's security tools to improve visibility, accountability, and execution. You will also partner closely with Security, TDI SRE, TDI Engineering, and SaaS application teams to implement scalable security controls, automate scanning and remediation workflows, and ensure our platforms are secure by design. Your responsibilities will include: - Up-leveling Okta's Security Posture Management program to handle various issues identified by security tooling across our ecosystem - Managing Okta's Security Posture Management program, including integrating data ingestion pipelines, coding logic to prioritize vulnerability fixes, and developing automated systems at scale - Configuring and operationalizing tools such as Snyk, Semgrep, and Qualys to expand scanning coverage for all TDI assets - Collaborating with teams to troubleshoot and remediate findings; providing technical mentorship to developers and admins - Developing and maintaining metrics, reporting, and executive visibility that drive ownership, accountability, prioritization, and measurable risk reduction across the organization - Partnering with Security and GRC to communicate our risk posture and remediation status - Advising on secure coding, build pipelines, and deployment best practices with product and engineering teams - Supporting and enforcing ProdSec SDL adoption across business units, standardizing design reviews and requirements gathering - Implementing secrets rotation automation and best practices for secrets management across TDI systems - Leading "shift left" security efforts to build security into the SDLC - Collaborating with SRE to manage update pipelines and enforcing compliance with baseline standards - Conducting light Security Architecture Reviews (SARs) for lower environments to confirm proper controls and data handling - Developing agentic automation to scale security posture scanning, reporting, issue remediation, and patch validation - Architecting E2E automation flows and system design for an AI agent and its subagents - Identifying and closing gaps across CSPM, CI/CD pipeline security, and endpoint hardening - Providing technical guidance for integrating security into business and productivity platforms WHAT YOU'LL NEED To be successful in this role, you will need: - 10+ years of experience in security engineering, DevSecOps, and/or related fields - Deep technical security expertise, including experience with security tools and platforms - Strong troubleshooting and problem-solving skills, with the ability to drive measurable improvements across the security posture management lifecycle - Excellent communication and collaboration skills, with the ability to partner with cross-functional teams - Experience with automation, AI development, and continuous improvement - Strong understanding of cloud and infrastructure security, as well as SaaS application security WHY REMOTE As