Preferred qualification and abilities:
7+ years of development experience in designing and implementing software systems in Java, building highly reliable and mission-critical software.
3+ years of work experience in designing and implementing security solutions for applications and distributed systems.
Work experience and excellent understanding in mitigating OWASP Top 10 attacks on applications, Application Security, Cryptography, Authentication, Authorization using Role-Based and Attribute-Based access controls.
Robust understanding of concepts such as Test-Driven development, Secure SDLC, Secure code reviews and the ability to identify and mitigate threat vectors and vulnerabilities in code and infrastructure.
Good understanding and experience in using cloud service providers such as AWS and GCP.
Developing and maintaining technical documentation such as cookbooks, design and architecture docs.
Troubleshooting and fixing production issues to ensure reliability, security and performance.
Work experience in using RDBMS like MySQL,
valuable grasp of concepts such asreplication and clustering along with familiarity in data stores such as Redis and Elasticsearch.
Excellent grasp of software engineering principles coupled with solid written and verbal communication skills.
B.S or M.S in Computer Science or related fields.
Responsibilities :
Act as a liaison between the engineering and security org to develop innovative requirements for the security roadmap.
Evangelize security best practices across the engineering org.
Research, design, implement and own security oriented frameworks and features with the common goal of protecting Oktas customers.
Routinely participate in cross-vertical code reviews with emphasis on Security.
Break down complex problems into sub-tasks while prototyping rapidly and iteratively contributing to security initiatives using agile practices.
Coach and mentor junior engineers in the team.