okta
Bengaluru · On-site · Full-time
<div class="content-intro"><p><strong>Secure Every Identity, from AI to Human<br><br></strong>Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence.<br><br>This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk.</p></div><p>As a <strong>Staff DevSecOps Engineer</strong> in the ET team, you will be the technical authority and architectural owner responsible for embedding security, compliance, and automated release practices across our enterprise applications ecosystem—including <strong>Salesforce, NetSuite, Workday, Adobe Experience Manager (AEM), and modern web stacks (Vercel/Next.js)</strong>.</p> <p>In this role, you will bridge development, security, and enterprise ops. You will design, scale, and maintain automated security pipelines, unified observability, edge defense, and identity management across critical business systems. You will serve as a technical leader—driving secure-by-design architectures, threat modeling, and automated governance across complex enterprise platforms.</p> <p><strong>Key Responsibilities:</strong></p> <p><strong>Enterprise DevSecOps Architecture & CI/CD Security</strong></p> <ul> <li><strong>Multi-Platform CI/CD Governance:</strong> Architect and scale enterprise-grade CI/CD and deployment frameworks across diverse systems (Salesforce via <strong>Gearset/Copado</strong>, AEM/Web via <strong>CircleCI/GitHub Actions</strong>, NetSuite, and Workday).</li> <li><strong>Shift-Left Security Pipeline:</strong> Integrate automated SAST, DAST, Software Composition Analysis (SCA), and secrets detection into workflows using tools like <strong>SonarQube, Snyk, PMD, GitGuardian,</strong> and <strong>OWASP ZAP</strong>.</li> <li><strong>Secrets & Supply Chain Management:</strong> Standardize secrets management (e.g., <strong>HashiCorp Vault</strong>) and safeguard third-party dependencies, API integrations, and package deployments across all enterprise platforms.</li> </ul> <p><strong>Edge, WAF & Network Security</strong></p> <ul> <li><strong>Global Edge Protection:</strong> Manage, configure, and optimize enterprise CDN policies via <strong>Cloudflare</strong> (or platform CDNs) to protect web properties and API endpoints against DDoS, volumetric, and layer-7 attacks.</
okta
Posted via Greenhouse_public
Apply Now takes you to Rozgoo, where auto-apply can submit your application for this role. Updated 5 days ago.
Apply Now