NorthwoodSpace
Corporate Security Architect
Torrance, CA · Contract
No sponsorship$171k-$800kDetected 32 days ago
TypeScriptiOSAndroidAWSCloud PlatformsLinuxOAuthCybersecuritySIEMSOC OperationsComplianceZero TrustNetwork EngineeringCommunicationCollaboration
About the role
- If you like solving complex challenges and seeing your work deployed around the world with real impact, Northwood is the place to do it.
- This is a mid-level individual contributor role for an engineer with deep Okta expertise and a strong foundation in IAM architecture, SSO, and role-based access control across complex hybrid environments.
Responsibilities
- Own Northwood's Okta environment end-to-end, including tenant configuration, application integrations, lifecycle management, MFA policy enforcement, and directory synchronization.
- Design and maintain Northwood's SSO architecture, ensuring all corporate and government-facing applications are integrated into a consistent, auditable authentication framework.
- Develop and enforce adaptive authentication policies, step-up MFA configurations, and risk-based access controls aligned to the sensitivity of the systems being accessed.
- Manage Okta workflows and automation to support user provisioning, deprovisioning, and access change processes across the employee and contractor lifecycle.
- Design and implement role-based access control frameworks across Northwood's corporate systems, cloud environments, and government workloads, ensuring access is granted on a least-privilege and need-to-know basis.
- Define and maintain role taxonomies, access request workflows, and entitlement review processes that satisfy CMMC, FedRAMP, and NIST 800-171 access control requirements.
- Conduct periodic access reviews and certification campaigns, working with system owners to validate that entitlements remain appropriate and revoke unnecessary access.
- Enforce segregation of duties controls across critical systems, identifying and remediating access conflicts that create compliance or operational risk.
- Architect, deploy, and manage a unified Mobile Device Management (MDM) solution across macOS, Windows, Linux, and iOS/Android endpoints, ensuring consistent security baselines and configuration compliance across all device types.
- Establish and maintain OS-level hardening benchmarks (CIS, DISA STIG) across macOS, Windows, and Linux endpoints, translating requirements into enforced MDM policies and automated remediation workflows
Requirements
- 3+ years of hands-on IAM engineering experience, with demonstrated ownership of Okta administration in a production environment.
- Deep Okta expertise, including SSO configuration, lifecycle management, MFA policy enforcement, adaptive authentication, Okta Workflows, and SIEM log integration.
- Strong understanding of SSO protocols including SAML 2.0, OIDC, and OAuth 2.0, with hands-on experience troubleshooting and hardening integrations.
- Experience designing and implementing RBAC frameworks, including role taxonomy development, entitlement reviews, and access certification processes.
- Familiarity with privileged access management concepts, including service account governance, least-privilege enforcement, and administrative access controls.
- Experience integrating identity platforms with endpoint management, cloud environments, and security monitoring tooling.
- U.S. citizenship or status as a lawful permanent resident required to conform with ITAR export regulations.
- Your ability to secure the necessary clearance is essential for fulfilling key responsibilities of the role.
- Develop and maintain access control documentation, including role definitions, provisioning procedures, and audit evidence required for compliance assessments.
Nice to have
- Active TS clearance or higher.
- Experience operating Okta in AWS GovCloud or Microsoft GCC environments, including tenant configuration for government workload access controls.
- Familiarity with Okta Identity Governance (OIG) or similar identity governance and administration (IGA) platforms.
- Experience with Cloudflare Zero Trust access policies and integration with Okta for identity-aware network access enforcement.
- Hands-on experience with privileged access management platforms such as CyberArk, BeyondTrust, or equivalent.
- Background in aerospace, defense, critical infrastructure, or other government-adjacent regulated environments.
- Experience supporting CMMC, FedRAMP, or SOC 2 audits in an IAM engineering capacity.
- Okta Certified Administrator, Okta Certified Professional, or equivalent identity platform certification.
Compensation
- $171k-$800k
Benefits
- Maintain Okta system health, audit logging, and integration reliability, ensuring identity telemetry flows into Northwood's SIEM for continuous monitoring.
Company info
- Northwood is a modern space infrastructure company bringing the benefits of space to the masses through advanced communications technology.
- We are building a global network of phased array ground stations that enable real-time, reliable communication for satellite missions such as national security, global connectivity, and disaster response.
- With a vertically integrated approach, Northwood designs, builds, and rapidly deploys scalable systems that power the next generation of space missions.
- Support integration of identity controls with endpoint management platforms, ensuring device trust policies are enforced as part of access decisions.
- If you need a reasonable accommodation as part of your application for employment or interviews with us, please let us know.
Visa & Work Authorization
- citizenship or status as a lawful permanent resident required to conform with ITAR export regulations
Apply directly at NorthwoodSpace →Create a free account for alerts like thisView NorthwoodSpace immigration profile
This listing is sourced directly from NorthwoodSpace's careers page and normalized into a canonical job model.