EverOps is the most trusted consulting partner to technology-driven organizations. We solve complex technical challenges by embedding elite engineers and proven processes that ensure outcomes across DevOps, IT and Security operations. Since 2012, we have empowered companies like Coinbase, Snowflake and Zendesk to become the leading brands you know today.
We are seeking a highly skilled Identity & Endpoint Engineer with extensive experience in Okta identity management, Active Directory (AD), Mac endpoint management, and DevOps practices. The ideal candidate will have a deep understanding of identity and access management (IAM), endpoint security, and automation while leveraging tools such as JAMF, Intune, and built with DevOps methodologies. This role requires expertise in managing identity workflows, integrating HR systems, and securing enterprise endpoints to ensure seamless IT operations.
Key Responsibilities:
-
Lead, design, implement, and maintain Okta identity solutions to support business needs and security requirements.
-
Develop and maintain the Identity & Endpoint Management roadmap, leading complex transition projects from legacy systems to modern IAM and endpoint security solutions.
-
Manage and configure Active Directory (AD) environments, including user account management, group policies, and security settings.
-
Own the Mac endpoint management strategy, focusing on JAMF administration, security policies, compliance enforcement, and integration with IAM tools.
-
Develop and implement device trust policies, ensuring seamless integration between identity security (Okta, AD) and endpoint management (JAMF, Intune, Kandji, Crowdstrike, etc.).
-
Automate identity and endpoint management workflows using DevOps tools such as Terraform, Ansible, PowerShell, Python, and CI/CD pipelines.
-
Integrate HR systems (Workday, Paylocity, Rippling, etc.) with Okta to streamline user provisioning, de-provisioning, and role-based access control (RBAC).
-
Enhance endpoint security through policy enforcement, device compliance frameworks, and Zero Trust Network Access (ZTNA).
-
Collaborate with IT, Security, and HR teams to ensure seamless identity governance, endpoint security, and compliance.
-
Stay current with industry trends, security best practices, and compliance standards (e.g., GDPR, HIPAA, ISO 27001, NIST).
-
Conduct regular audits of IAM and endpoint security to ensure adherence to security policies and regulatory requirements.
-
Provide technical support and training to end-users and internal teams on Okta, endpoint security, and related technologies.
Qualifications:
-
Bachelor’s degree in Computer Science, Information Technology, or a related field.
-
5+ years of experience in IAM, endpoint security, and DevOps practices, with a focus on Okta, Active Directory, and Mac endpoint management.
-
Extensive experience with endpoint management solutions, particularly JAMF, Intune, and Kandji.
-
Strong understanding of identity lifecycle management, including SSO, MFA, RBAC, and device trust.
-
Proficiency in scripting and automation tools (e.g., PowerShell, Python, Terraform, Ansible, Bash) for identity and endpoint automation.
-
Experience with ZTNA/VPN/SASE solutions and device security integrations (CrowdStrike, Carbon Black, etc.).
-
Familiarity with security frameworks and compliance standards (e.g., GDPR, HIPAA, ISO 27001).
-
Excellent problem-solving skills, attention to detail, and ability to work cross-functionally.
Preferred Skills:
-
Okta Certified Professional or higher certification.
-
Experience with cloud identity providers (Azure AD, Ping Identity).
-
Hands-on experience with DevOps tools (CI/CD, GitHub Actions, Jenkins, Terraform).
-
Strong knowledge of Zero Trust security principles.
-
Experience with containerized security solutions (Docker, Kubernetes).
Top Skills
What We Do
Introducing a New Kind of Partner:
THE EMBEDDED SERVICE PROVIDER
A PARTNER THAT CAN PERFORM COMPLEX DELIVERY AS PART OF YOUR TEAM
Companies have a lot of trouble finding partners that can perform complex deliveries and services. A partner that can co-own problems from within their organization. Enter the Embedded Service Provider: An ESP performs a service from within the client team structure.
THE EVEROPS TECHPOD
For It Operations, Production DevOps and Identity
Our TechPod model is what allows us to take on complex parts of your technology from within your team structure. As part of every contract, you get all TechPod elements:
- Pod Leader
- Architect
- Engineering
- Project work as part of the monthly cost
- Operations
ENGINEERED OPERATIONS
The foundation of our TechPods is our Engineered Operations group: The relentless pursuit of applying engineering & automations to operations functions. All clients benefit from:
- EverOps Labs - Speeds architecting and validates deployments
- EverOps GitOps models
- EverOps Alternative Compute models
- EverOps ZeroTrust models for corp & engineering
- EverOps Cloud Governance models
- EverOps Deployment Automation
- EverOps Site Reliability Engineering
- EverOps NOC Automation-monitoring -> Alerting -> Slack / Pagerduty
- EverOps Site build & PM templates