Lead Engineer, Identity Management

Reposted 21 Days Ago
Be an Early Applicant
Culver City, CA, USA
In-Office
138K-167K Annually
Senior level
News + Entertainment
The Role
The Lead Engineer, Identity Management oversees the design and operations of the IAM ecosystem, focusing on Okta platform management and compliance. Responsibilities include policy enforcement, identity lifecycle management, and troubleshooting within IAM solutions.
Summary Generated by Built In

The Lead Engineer, Identity Management is responsible for the design, engineering, and operational excellence of Sony Pictures Entertainment’s (SPE) enterprise Identity and Access Management (IAM) ecosystem, with a primary focus on Okta Identity Governance, Identity Lifecycle Management, Security Operations, and Identity Compliance initiatives. 

 

This role leads the end-to-end engineering, configuration, and maintenance of SPE’s Identity Governance and Administration (IGA) platform, ensuring secure, compliant, and efficient management of digital identities across all user populations. The position requires deep expertise in Okta and its governance, access, and lifecycle capabilities, as well as the ability to define and enforce identity standards and policies that align with enterprise security and compliance objectives. 

 

This role will be responsible for providing ongoing support, request fulfillment of the SPE’s IAM platform services, and provide escalation and support to internal application teams and IAM team members. This role also focuses on analyzing emerging authentication technologies to design and implement secure, intuitive, scalable, and reliable Access Management solutions that support SPE’s both internal and external users. 

 

This role must have experience with Okta Identity Management platform. 

 

Core Responsibilities 

  • Lead the design, implementation, and operations of the Okta IGA platform, including lifecycle management (Joiner–Mover–Leaver processes), access governance, and compliance controls. 

  • Partner with business and security stakeholders to develop and enforce identity governance policies, ensuring adherence to corporate, regulatory, and audit requirements. 

  • Oversee access certification campaigns, entitlement reviews, and identity attestation processes to maintain least-privilege access and compliance posture. 

  • Develop detailed architecture, standards, design, and implementation documentation. 

  • Manage directory services, including user provisioning, synchronization, and role-based access control (RBAC) models. 

  • Participate in or lead troubleshooting and incident resolution of complex high severity incidents. 

  • Plan and manage project tasks, schedules, and resources related to Identity Access Management services. 

  • Provide a technical expertise to various application teams in Identity Access Management and governance, to include Single Sign On, MFA, Identity Federation, Lifecycle Management, Enterprise Directory architecture and design, and resource provisioning. 

  • Work with internal and external application support teams to extend the use of SPE’s enterprise Identity Access Management solutions via Okta platform. 

  • Identify and evaluate complex business and technology risks, internal controls which mitigate risks, and related opportunities for internal control improvement. 

  • Understand complex business and information technology management processes. 

  • Responsible to install, integrate and deploy any Identity Management solutions. 

  • Communicate to internal users and external partners aspects of both the IAM product and the implementation at the technical and functional level appropriate for the situation 

  • Work with the Identity Access Management team to continue making enhancement to the SPE’s on-going Identity Access Management program. 

  • Support efforts regarding audit findings, adherence to compliance and organizational change. 

  • Responsible for working to resolve Okta system issues escalated within the service level agreement. 

Qualifications 

  • Bachelor’s degree or equivalent applied experience 

  • 8+ years of experience as an Identity Engineer/Architect or similar role 

  • 8+ Years of direct experience with large scale enterprise level Identity Access Management (IAM) build and engineering. 

  • 6+ years of experience with implementing IAM solutions. 

  • 5+ years in software development (experience developing web applications), preferably in an agile SaaS environment. 

  • Proven experience designing and managing Okta Identity Governance and Administration or equivalent enterprise IGA platforms. 

  • Strong understanding of identity lifecycle automation, access governance, and compliance frameworks such as SOX. 

  • Hands-on expertise with Okta Workflows for automating identity processes and integrations. 

  • Experience integrating Workday (or other HR systems) as a source of truth for identity lifecycle management. 

  • Experience in security and implementation of best practices such as least privilege, Privileged Access Management, passwordless authentication, etc. 

  • Expertise in SSO, MFA, Federation, and directory integration (Active Directory, LDAP, and SCIM-based provisioning). 

  • Hands-on experience with scripting and automation (e.g., PowerShell, Python, or REST APIs) for identity orchestration. 

  • Knowledge of emerging authentication technologies and protocols. 

  • Okta certified professional a plus. 

  • Critical thinking, strategic planning, and process management skills. 

  • Excellent written and verbal communication skills. 

  • Excellent presentation and group dynamics skills. 

  • Proven excellence in client/partner relationship management with other Sr. leaders in IT. 

  • Proactive at finding solutions to complex problems. 

 

The anticipated base salary for this position is $138,000-$167,000. This role may also qualify for annual incentive and/or comprehensive benefits. The actual base salary offered will depend on a variety of factors, including without limitation, the qualifications of the individual applicant for the position, years of relevant experience, level of education attained, certifications or other professional licenses held, and if applicable, the location of the position.

Sony Pictures Entertainment is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, age, sexual orientation, gender identity, or other protected characteristics.

SPE will consider qualified applicants with arrest or conviction records in accordance with applicable law.

To request an accommodation for purposes of participating in the hiring process, you may contact us at [email protected].

Skills Required

  • Bachelor's degree or equivalent applied experience
  • 8+ years of experience as an Identity Engineer/Architect
  • 8+ Years of direct experience with enterprise level IAM build
  • 6+ years of experience with implementing IAM solutions
  • 5+ years in software development, preferably in agile SaaS
  • Proven experience designing and managing Okta IGA platforms
  • Hands-on expertise with Okta Workflows
  • Experience in security best practices
  • Strong understanding of access governance and compliance frameworks
  • Knowledge of emerging authentication technologies

Sony Pictures Entertainment Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Sony Pictures Entertainment and has not been reviewed or approved by Sony Pictures Entertainment.

  • Healthcare Strength Medical, dental, vision, mental-health, and wellness programs are broadly available, with recent updates such as CVS/Caremark for prescriptions on Aetna plans. Multiple plan types (including HSA‑eligible options and a California HMO) point to comprehensive coverage breadth.
  • Retirement Support A 401(k) with immediate company matching and auto-enrollment/auto-increase features supports long-term savings. Additional programs like an Employee Stock Purchase Plan and employer HSA contributions further bolster financial wellbeing.
  • Parental & Family Support Paid parental leave described as generous, along with childcare, fertility support, adoption/surrogacy assistance, and backup care, provides broad family coverage. Ancillary supports like Milk Stork and legal assistance reinforce family-related needs.

Sony Pictures Entertainment Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Culver City, CA
10,000 Employees
Year Founded: 1989

What We Do

We are in the business of creativity, making some of the most beloved film and television of all time for every platform in the world. As the most creative and proudly independent studio, our future is boundless. Sony Pictures Entertainment (SPE) is a division of Sony Group Corporation, a creative entertainment company built on a foundation of technology. Along with our sister companies, we make movies, television, music and games that engage billions of people, connecting creators and audiences around the globe. We are looking for innovators to join us as we forge the future of entertainment! SPE's global operations encompass motion picture production and distribution; television production and distribution; digital content creation and distribution; worldwide channel investments; home entertainment acquisition and distribution, operation of studio facilities; development of new entertainment products, services and technologies; and distribution of filmed entertainment in more than 130 countries.

Similar Jobs

BAE Systems, Inc. Logo BAE Systems, Inc.

Site Reliability Engineer

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Hybrid
San Diego, CA, USA
40000 Employees
133K-226K Annually

Genius Sports Logo Genius Sports

SVP, Strategic Growth

AdTech • Artificial Intelligence • Machine Learning • Marketing Tech • Software • Sports • Big Data Analytics
Easy Apply
Hybrid
Los Angeles, CA, USA
1800 Employees
300K-300K Annually

Zscaler Logo Zscaler

Account Executive

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
California, USA
8697 Employees
117K-168K Annually

Cloudflare Logo Cloudflare

Consultant

Cloud • Information Technology • Security • Software • Cybersecurity
Remote or Hybrid
6 Locations
4400 Employees
167K-264K Annually

Similar Companies Hiring

Philo Thumbnail
On-Demand • News + Entertainment • Digital Media • Cloud
San Francisco, CA
165 Employees
Sandbox VR Thumbnail
Events • Gaming • News + Entertainment • Retail • Virtual Reality
Tsim Sha Tsui East, Kowloon
650 Employees
Hedra Thumbnail
Software • News + Entertainment • Marketing Tech • Generative AI • Enterprise Web • Digital Media • Consumer Web
San Francisco, CA
14 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account