Handshake Logo

Handshake

Senior IAM Automation Engineer

Reposted 7 Days Ago
Be an Early Applicant
In-Office
San Francisco, CA
176K-220K Annually
Senior level
In-Office
San Francisco, CA
176K-220K Annually
Senior level
The Senior IAM Automation Engineer will architect, implement, and manage the identity automation ecosystem, enabling secure identity operations and automating onboarding/offboarding workflows.
The summary above was generated by AI
About Handshake

Handshake is building the career network for the AI economy, backed by the largest and most trusted job network on the internet. As the only three-sided job marketplace connecting 18 million knowledge workers, 1,500 educational institutions, and 1 million employers, Handshake powers career discovery, hiring, and upskilling—from first internships to full-time roles, freelance work to gig work, and beyond.

Founded in 2014, we’ve built the most trusted platform for early talent—owning the college-to-career market and powering nearly every career center. Today we’re building on that foundation to help students and early professionals upskill or reskill for the future.

Now’s a great time to join Handshake. Here’s why:
Category Leader: Over 92% coverage across US universities & 77% of total US university student population.
Proven Market Demand: Deep employer partnerships across Fortune 500s and the world’s leading AI research labs.
World-Class Team: Leadership from Scale AI, OpenAI, xAI, Notion, Coinbase, and Palantir, just to name a few.
Capitalized & Scaling: $434M raised with a $175M+ run rate.

About the Role

Handshake is seeking a Senior IAM Automation Engineer to own the architecture, design, and implementation of our enterprise identity automation and governance ecosystem. You’ll define the long-term IAM automation strategy, build resilient and scalable lifecycle workflows, and enable secure-by-default identity operations across SaaS, cloud, and internal platforms.
You’ll partner closely with Security, IT Engineering, People Operations, and Product/Platform Engineering to deliver highly automated, auditable, and reliable identity solutions.

In this role, you will:
  • Architect, build, and own automated onboarding, offboarding, and access-change workflows across Okta, Workday, SCIM, and event-driven systems.

  • Engineer integration layers between identity platforms and internal applications using Python, REST APIs, Webhooks, and Terraform.

  • Implement error-handling, reconciliation logic, telemetry, and monitoring to ensure reliability and determinism in identity lifecycle events.

  • Modernize existing provisioning logic and replace manual processes with scalable automation frameworks.

  • Develop tooling and pipelines enabling version-controlled, testable, observable IAM automation.

  • Act as a technical owner for Handshake’s IAM ecosystem, including Okta, Google Workspace, GCP, AWS IAM, and internal access systems.

  • Engineer and optimize authentication & authorization protocols (OIDC, OAuth2, SAML, JWT), fine-grained access policies, and scalable RBAC/ABAC models.

  • Build custom automation using Okta Workflows or API-driven orchestration.

  • Design SOC2-compliant access controls, approvals, attestations, and auditability mechanisms.

  • Build automated access certification systems with full data lineage.

  • Conduct identity-related incident forensics and implement preventative automation.

  • Provide cross-functional leadership, setting standards, best practices, and reference architectures for identity automation.

  • Serve as service owner for IAM automation platforms with accountability for uptime, consistency, and continuous improvement.

Desired Capabilities
  • 4–7+ years of hands-on IAM engineering, identity automation, or identity governance experience.

  • Strong scripting/automation skills in Python, Node.js, and REST-based integrations.

  • Experience with IAM platforms such as Okta, Google Workspace/GCP, Azure AD, or similar.

  • Deep understanding of identity protocols, token flows, SCIM, and distributed lifecycle orchestration.

  • Experience with Terraform or other infrastructure-as-code frameworks.

  • Ability to diagnose complex identity issues across SaaS, cloud, and distributed systems.

  • Strong understanding of DevOps practices, observability, and secure engineering principles.

  • Demonstrated ownership mindset across architecture, implementation, monitoring, and iterative improvement.

Extra Credit
  • Advanced experience with GCP IAM, Google Workspace IAM, AWS IAM, cross-account access patterns, and policy automation.

  • Experience with Okta Workflows, SailPoint/IGA, or Privileged Access Management (PAM) solutions.

  • Experience designing scalable authorization models for high-growth or distributed organizations.

  • Certifications such as Okta Architect, Azure Identity Engineer, CISSP.

  • Prior experience in SaaS, high-growth, or distributed engineering environments.

Perks

Handshake delivers benefits that help you feel supported—and thrive at work and in life.
The below benefits are for full-time US employees.

🎯 Ownership: Equity in a fast-growing company
💰 Financial Wellness: 401(k) match, competitive compensation, financial coaching
🍼 Family Support: Paid parental leave, fertility benefits, parental coaching
💝 Wellbeing: Medical, dental, and vision, mental health support, wellness stipend
📚 Growth: Learning stipend, ongoing development
💻 Remote & Office: Internet, commuting, and free lunch/gym in our SF office
🏝 Time Off: Flexible PTO, 15 holidays + 2 flex days
🤝 Connection: Team outings & referral bonuses

Explore our mission, values, and comprehensive US benefits at joinhandshake.com/careers.

Top Skills

Aws Iam
GCP
Google Workspace
Jwt
Oauth2
Oidc
Okta
Python
Rest Apis
SAML
Scim
Terraform
Webhooks
Workday
HQ

Handshake San Francisco, California, USA Office

We're located right in the center of everything in the financial district of downtown San Francisco. We're just 1 block from Montgomery St Bart!

Similar Jobs

An Hour Ago
Remote or Hybrid
8 Locations
133K-234K Annually
Senior level
133K-234K Annually
Senior level
eCommerce • Fintech • Hardware • Payments • Software • Financial Services
As a Senior Data Engineer for Customer Operations, you will develop and maintain data models, pipelines, and visualizations to support decision-making within cross-functional teams and improve customer support experiences.
Top Skills: AirflowBigquery)DatabricksDbtGitLookerPrefectPythonSnowflakeSql (MysqlTerraform
12 Hours Ago
Remote or Hybrid
3 Locations
105K-163K Annually
Mid level
105K-163K Annually
Mid level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Regional Sales Manager will drive new business and nurture existing relationships with enterprise clients, achieving sales quotas and collaborating with internal teams.
Top Skills: Salesforce
12 Hours Ago
Remote or Hybrid
2 Locations
105K-163K Annually
Senior level
105K-163K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Manage healthcare accounts, execute account strategies, develop relationships with decision makers, and drive sales for CrowdStrike's cybersecurity products. Requires strong sales and communication skills.
Top Skills: CloudCybersecuritySaaSSalesforce

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account