NorthwoodSpace

NorthwoodSpace

Corporate Security Architect

Torrance, CA · Contract

No sponsorship$171k-$800kDetected 32 days ago
TypeScriptiOSAndroidAWSCloud PlatformsLinuxOAuthCybersecuritySIEMSOC OperationsComplianceZero TrustNetwork EngineeringCommunicationCollaboration

About the role

  • If you like solving complex challenges and seeing your work deployed around the world with real impact, Northwood is the place to do it.
  • This is a mid-level individual contributor role for an engineer with deep Okta expertise and a strong foundation in IAM architecture, SSO, and role-based access control across complex hybrid environments.

Responsibilities

  • Own Northwood's Okta environment end-to-end, including tenant configuration, application integrations, lifecycle management, MFA policy enforcement, and directory synchronization.
  • Design and maintain Northwood's SSO architecture, ensuring all corporate and government-facing applications are integrated into a consistent, auditable authentication framework.
  • Develop and enforce adaptive authentication policies, step-up MFA configurations, and risk-based access controls aligned to the sensitivity of the systems being accessed.
  • Manage Okta workflows and automation to support user provisioning, deprovisioning, and access change processes across the employee and contractor lifecycle.
  • Design and implement role-based access control frameworks across Northwood's corporate systems, cloud environments, and government workloads, ensuring access is granted on a least-privilege and need-to-know basis.
  • Define and maintain role taxonomies, access request workflows, and entitlement review processes that satisfy CMMC, FedRAMP, and NIST 800-171 access control requirements.
  • Conduct periodic access reviews and certification campaigns, working with system owners to validate that entitlements remain appropriate and revoke unnecessary access.
  • Enforce segregation of duties controls across critical systems, identifying and remediating access conflicts that create compliance or operational risk.
  • Architect, deploy, and manage a unified Mobile Device Management (MDM) solution across macOS, Windows, Linux, and iOS/Android endpoints, ensuring consistent security baselines and configuration compliance across all device types.
  • Establish and maintain OS-level hardening benchmarks (CIS, DISA STIG) across macOS, Windows, and Linux endpoints, translating requirements into enforced MDM policies and automated remediation workflows

Requirements

  • 3+ years of hands-on IAM engineering experience, with demonstrated ownership of Okta administration in a production environment.
  • Deep Okta expertise, including SSO configuration, lifecycle management, MFA policy enforcement, adaptive authentication, Okta Workflows, and SIEM log integration.
  • Strong understanding of SSO protocols including SAML 2.0, OIDC, and OAuth 2.0, with hands-on experience troubleshooting and hardening integrations.
  • Experience designing and implementing RBAC frameworks, including role taxonomy development, entitlement reviews, and access certification processes.
  • Familiarity with privileged access management concepts, including service account governance, least-privilege enforcement, and administrative access controls.
  • Experience integrating identity platforms with endpoint management, cloud environments, and security monitoring tooling.
  • U.S. citizenship or status as a lawful permanent resident required to conform with ITAR export regulations.
  • Your ability to secure the necessary clearance is essential for fulfilling key responsibilities of the role.
  • Develop and maintain access control documentation, including role definitions, provisioning procedures, and audit evidence required for compliance assessments.

Nice to have

  • Active TS clearance or higher.
  • Experience operating Okta in AWS GovCloud or Microsoft GCC environments, including tenant configuration for government workload access controls.
  • Familiarity with Okta Identity Governance (OIG) or similar identity governance and administration (IGA) platforms.
  • Experience with Cloudflare Zero Trust access policies and integration with Okta for identity-aware network access enforcement.
  • Hands-on experience with privileged access management platforms such as CyberArk, BeyondTrust, or equivalent.
  • Background in aerospace, defense, critical infrastructure, or other government-adjacent regulated environments.
  • Experience supporting CMMC, FedRAMP, or SOC 2 audits in an IAM engineering capacity.
  • Okta Certified Administrator, Okta Certified Professional, or equivalent identity platform certification.

Compensation

  • $171k-$800k

Benefits

  • Maintain Okta system health, audit logging, and integration reliability, ensuring identity telemetry flows into Northwood's SIEM for continuous monitoring.

Company info

  • Northwood is a modern space infrastructure company bringing the benefits of space to the masses through advanced communications technology.
  • We are building a global network of phased array ground stations that enable real-time, reliable communication for satellite missions such as national security, global connectivity, and disaster response.
  • With a vertically integrated approach, Northwood designs, builds, and rapidly deploys scalable systems that power the next generation of space missions.
  • Support integration of identity controls with endpoint management platforms, ensuring device trust policies are enforced as part of access decisions.
  • If you need a reasonable accommodation as part of your application for employment or interviews with us, please let us know.

Visa & Work Authorization

  • citizenship or status as a lawful permanent resident required to conform with ITAR export regulations

This listing is sourced directly from NorthwoodSpace's careers page and normalized into a canonical job model.