Okta logo

Staff DevSecOps Engineer, Enterprise Technology

Okta · Posted Sep 15

Cloud-based identity and access management solutions for workforce and customer security

Bengaluru, IndiaFull-timeHybridLead/Staff8+ years₹60.0L–₹1.0Cr yearly100+ applicants
Enterprise SoftwareCybersecurityIdentity ManagementCloud ComputingPublic Company
Full time

Get a personal compatibility score

Add a resume for personal matches

About the role

Okta secures AI by building trusted, neutral identity infrastructure that enables organizations to safely embrace AI. This role is a Staff DevSecOps Engineer in the Enterprise Technology team, serving as technical authority and architectural owner for embedding security, compliance, and automated release practices across enterprise applications including Salesforce, NetSuite, Workday, Adobe Experience Manager, and Vercel/Next.js. The engineer will bridge development, security, and enterprise ops, designing automated security pipelines, observability, edge defense, and identity management.

What you will do

  • Multi-Platform CI/CD Governance: Architect and scale enterprise-grade CI/CD and deployment frameworks across diverse systems (Salesforce via Gearset/Copado, AEM/Web via CircleCI/GitHub Actions, NetSuite, and Workday).
  • Shift-Left Security Pipeline: Integrate automated SAST, DAST, Software Composition Analysis (SCA), and secrets detection into workflows using tools like SonarQube, Snyk, PMD, GitGuardian, and OWASP ZAP.
  • Secrets & Supply Chain Management: Standardize secrets management (e.g., HashiCorp Vault) and safeguard third-party dependencies, API integrations, and package deployments across all enterprise platforms.
  • Global Edge Protection: Manage, configure, and optimize enterprise CDN policies via Cloudflare (or platform CDNs) to protect web properties and API endpoints against DDoS, volumetric, and layer-7 attacks.
  • Traffic Filtering & WAF Management: Define and enforce Web Application Firewall (WAF) rules, rate limiting, ModSecurity policies, and bot management strategies to shield public-facing endpoints (AEM, Vercel apps, custom portals)
  • Enterprise IAM & SSO Governance: Collaborate with InfoSec to manage identity policies, RBAC, OAuth 2.0, JWT authentication, and SAML/SSO integrations across platforms (Salesforce, NetSuite, AEM Cloud, Workday, Okta/Entra ID).
  • Headless & API Security: Architect secure API gateways, protect GraphQL endpoints, manage CORS policies, and enforce API key lifecycle management for decoupled frontend applications (Next.js/React deployed on Vercel).
  • Centralized Security Monitoring: Build and optimize real-time SIEM logging and security analytics in Splunk (or Datadog) to track cross-platform threats, unauthorized changes, and anomalous API behavior.
  • Incident Management & Root Cause Analysis: Lead technical response for platform security events, perform root cause analysis (RCA), and analyze heap/thread dumps, log trails, and network traffic.
  • Automated Compliance & Risk Auditing: Establish continuous compliance controls for regulatory and corporate standards (SOX, SOC2, GDPR, ISO 27001) across SaaS and PaaS tools.
  • Cross-Functional Leadership: Partner with Enterprise Architects, Engineering leads, and Information Security to establish DevSecOps standards and threat modeling practices.
  • DevSecOps Culture: Drive self-service tooling, create developer security guidelines, and mentor senior and mid-level engineers in secure coding and automation best practices.

Skills used in this role

SalesforceNetSuiteWorkdayAdobe Experience Manager (AEM)VercelNext.jsGearsetCopadoCircleCIGitHub ActionsJenkinsSonarQubeSnykPMDGitGuardianOWASP ZAPHashiCorp VaultCloudflareModSecurityOAuth 2.0JWTSAMLSSOOktaEntra IDGraphQLCORSReactSplunkDatadogSIEMSOXSOC 2GDPRISO 27001PythonBashGoTerraformAWSAzureRESTRBACWAFCDNDDoSDNSSSL/TLSPrisma CloudWizAkamaiDevSecOpsCI/CDSASTDASTSCAIAMAPI SecuritySite Reliability Engineering (SRE)Security EngineeringThreat ModelingIncident ResponseRoot Cause AnalysisObservabilityCISSPCCSPAWS Certified Security – Specialty

What the employer is looking for

  • Experience: 8+ years of hands-on experience in DevSecOps, Site Reliability Engineering (SRE), or Security Engineering, with at least 3+ years in a senior or lead capacity supporting enterprise applications.
  • Multi-Platform Ecosystem Knowledge: Proven experience securing and automating deployments across two or more enterprise platforms: Salesforce, Adobe Experience Manager (AEM Cloud/AEMaaCS), NetSuite, or Workday.
  • DevOps & Pipeline Automation: Deep expertise with modern SCM and automation pipelines including GitHub Actions, CircleCI, Jenkins, Gearset, and Copado.
  • Edge & WAF Security: Advanced hands-on experience managing Cloudflare, Akamai, or similar edge security platforms (WAF rules, SSL/TLS automation, DDoS mitigation, DNS management).
  • Security Tooling Expertise: Proficiency in embedding SAST/DAST/SCA and secrets scanning tools (Snyk, SonarQube, GitGuardian, OWASP ZAP, Prisma Cloud/Wiz) into developer workflows.
  • SIEM & Monitoring: Expertise with Splunk or Datadog for log aggregation, security dashboard creation, threat hunting, and automated alerting.
  • Scripting & IaC: Mastery in Python, Bash, or Go, alongside Infrastructure-as-Code (Terraform) for automated environment provisioning and security guardrails.
  • API & Frontend Integration Security: Solid grasp of API security (REST, GraphQL, JWT, OAuth 2.0) and secure deployment patterns for modern frontend setups (Next.js/React on Vercel).

Preferred qualifications

  • Industry certifications such as CISSP, CCSP, AWS Certified Security – Specialty, or platform-specific certifications (e.g., Salesforce Certified Development Lifecycle & Deployment Architect).
  • Experience with cloud platforms (AWS, Azure, G...

Benefits and support

  • Compensation and benefits are detailed in the job posting

About Okta

Okta is a leading independent provider of cloud-based identity and access management solutions that securely connect people and technologies to the right applications. The company powers both Workforce Identity and Customer Identity platforms, allowing organizations to securely manage user access and navigate modern challenges like agentic AI security.

Industry
Enterprise Software
Company size
7500+ employees
Founded
2009
Location
San Francisco, California, USA
Funding stage
Public Company

Funding

Public Company · $228M raised

Sequoia CapitalAndreessen HorowitzGreylock PartnersKhosla VenturesAltimeter Capital
  • 2010-02-01Series A$10M
  • 2011-08-01Series B$16.5M
  • 2012-12-01Series C$25M
  • 2013-09-01Series D$27M
  • 2014-06-01Series E$75M
  • 2015-09-01Series F$75M
  • 2018-02-21Post IPO Debt$300M

Leadership

TM
Todd McKinnon

Co-Founder and Chief Executive Officer

FK
Frederic Kerrest

Co-Founder and Executive Vice Chairman

SD
Shannon Duffy

Chief Marketing Officer

SM
Scott Morgan

Chief Legal Officer