Senior Identity Management Engineer
AI summary of the role
A hands-on IAM Engineer to implement and evolve Aurora's modern identity ecosystem built on Zero Trust principles, including deploying Conductor One and Ping Directory.
What you’ll do
- Complete baseline environment configuration for Ping Directory and Conductor One across Dev and Prod tiers.
- Integrate HRIS (Workday) with the IGA platform to automate Joiner-Mover-Leaver (JML) processes.
- Build and validate production-ready connectors for Okta, AWS, Google, Slack, and Squad.
- Deploy 'Justify or Revoke' workflows and automated reporting to support SOX/ISO privileged access reviews.
What you’ll bring
- 4+ years in Information Security, with at least 2 years focused on implementing IAM solutions in large enterprise environments.
- Expert-level knowledge of at least one major Cloud Identity Provider (AWS IAM, Azure) and core protocols (SAML, OAuth 2.0, OIDC, SCIM, LDAP).
- Deep understanding of Zero Trust principles and access models (RBAC, ABAC, PBAC).
- Bachelor’s or Master’s degree in Computer Science, IT, or equivalent practical experience.
Technologies
Conductor One · Ping Directory · SPIRE · Open Policy Agent (OPA) · Okta · AWS IAM · Azure · Workday · Python · Go · Terraform · Helm
About Aurora Innovation
Builds the Aurora Driver, a self-driving truck platform and driver-as-a-service network for carriers, brokers, and OEM partners moving long-haul freight.
Public · 1000–2000 people
Source and classification
Internal deployment & tooling · Evidence for this classification:
Who we are Aurora’s mission is to deliver the benefits of self-driving technology safely, quickly, and broadly. The Aurora Driver will create a new era in mobility and logistics, one that will bring a safer, more efficient, and more accessible future to everyone. At Aurora, you will tackle massively complex problems alongside other passionate, intelligent individuals, growing as an expert while expanding your knowledge. For the latest news from Aurora, visit aurora.tech or follow us on LinkedIn. We are seeking a hands-on IAM Engineer to support the technical execution of our modern identity ecosystem. You will be the primary "labor" engine responsible for implementing our newly licensed tools (Conductor One and Ping Directory). You will be working closely with the IAM Architect in this role. We’ve moved past the basics; our stack is built on Zero Trust principles, featuring SPIRE,
More from the job description
Who we are Aurora’s mission is to deliver the benefits of self-driving technology safely, quickly, and broadly. The Aurora Driver will create a new era in mobility and logistics, one that will bring a safer, more efficient, and more accessible future to everyone. At Aurora, you will tackle massively complex problems alongside other passionate, intelligent individuals, growing as an expert while expanding your knowledge. For the latest news from Aurora, visit aurora.tech or follow us on LinkedIn. We are seeking a hands-on IAM Engineer to support the technical execution of our modern identity ecosystem. You will be the primary "labor" engine responsible for implementing our newly licensed tools (Conductor One and Ping Directory). You will be working closely with the IAM Architect in this role. We’ve moved past the basics; our stack is built on Zero Trust principles, featuring SPIRE, Open Policy Agent (OPA), and a custom-built group management engine. You will own the full IAM lifecycle, evolving our existing infrastructure into a scalable, modern ecosystem that serves as a competitive advantage for our operations. In this role you will Platform Implementation: Complete baseline environment configuration for Ping Directory and Conductor One across Dev and Prod tiers. Workforce Automation: Integrate HRIS (Workday) with the IGA platform to automate Joiner-Mover-Leaver (JML) [... source excerpt omitted ...] for audits, and create system runbooks for the permanent operations team. Your primary focus will be the build, deployment, and configuration of the core IAM platform. Required qualifications Experience: 4+ years in Information Security, with at least 2 years specifically focused on implementing IAM solutions in large enterprise environments. Identity Expertise: Expert-level knowledge of at least one major Cloud Identity Provider (AWS IAM, Azure) and core protocols including SAML, OAuth 2.0, OIDC, SCIM, and LDAP. Modern Principles: Deep understanding of Zero Trust principles and access models such as RBAC, ABAC, and PBAC. Education: Bachelor’s or Master’s degree in Computer Scie [... source excerpt omitted ...] termined by role, level, and location. Within the range, the successful candidate’s starting base pay will be determined based on factors including job-related skills, experience, qualifications, relevant education or training, and market conditions. These ranges may be modified in the future. The successful candidate will also be eligible for an annual bonus, equity compensation, and benefits. Working at Aurora At Aurora, we bring together extraordinarily talented and experienced people united by the strength of our values. We operate with integrity, set outrageous goals, and build a culture where we win together — all without any jerks. We believe in-person work increases collabora
Employer postings · Data from · Sources