Talent.com
Staff Security Engineer, TDI Okta
Staff Security Engineer, TDI OktaIsc2 Eastbay Chapter • San Francisco, CA, United States
Staff Security Engineer, TDI Okta

Staff Security Engineer, TDI Okta

Isc2 Eastbay Chapter • San Francisco, CA, United States
4 days ago
Job type
  • Full-time
Job description

Get to know Okta

Okta is The World’s Identity Company. We free everyone to safely use any technology, anywhere, on any device or app. Our flexible and neutral products, Okta Platform and Auth0 Platform, provide secure access, authentication, and automation, placing identity at the core of business security and growth.

At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every single box – we’re looking for lifelong learners and people who can make us better with their unique experiences.

Join our team! We’re building a world where Identity belongs to you.

We are seeking a highly skilled and hands‑on Security Engineer with a DevSecOps focus to join the TDI BT Security team. In this role, you will be embedded directly within our technical environments, working side‑by‑side with engineering and operations teams to strengthen Okta’s security posture across infrastructure, cloud, and business systems.

This is a tactical and strategic role—you will not only coach and mentor teams on vulnerability remediation but also be capable of performing and validating remediations yourself. The ideal candidate combines deep technical security expertise with the ability to troubleshoot in complex environments and drive measurable improvements across the vulnerability management lifecycle.

You’ll partner closely with Security, SRE, and Engineering teams to implement scalable security controls, automate scanning and remediation workflows, and ensure our platforms—from AWS and endpoints to GTM applications like Salesforce, ERP, Google Workspace, Slack, and Zoom—are secure by design.

What You’ll Be Doing

  • Vulnerability & Asset Management – Lead hands‑on vulnerability remediation efforts across endpoints (Mac / Windows), cloud workloads, and on‑prem assets. Deploy, configure, and operationalize tools such as Snyk, Semgrep, and Qualys to expand scanning coverage for all TDI assets. Collaborate with teams to troubleshoot and remediate findings; provide technical mentorship to developers and admins. Improve vulnerability metrics, reporting, and visibility to drive accountability and measurable risk reduction. Partner with GRC to integrate findings into the risk register and ensure timely remediation or risk acceptance.
  • Secure Development & DevSecOps Enablement – Embed within product and engineering teams to advise on secure coding, build pipelines, and deployment best practices. Support and enforce ProdSec SDL adoption across business units, standardizing design reviews and requirements gathering. Implement secrets rotation automation and best practices for secrets management across TDI systems. Lead the Security Champions initiative—mentoring developers and SREs on proactive risk mitigation.
  • Baseline Image & Environment Security – Build and maintain secure baseline container and VM images for AWS environments, integrating core security tooling. Collaborate with SRE to manage update pipelines and enforce compliance with baseline standards. Conduct light Security Architecture Reviews (SARs) for lower environments to confirm proper controls and data handling.
  • Automation & Continuous Improvement – Develop automation for scanning, reporting, and patch validation. Identify and close gaps across CSPM, CI / CD pipeline security, and endpoint hardening. Provide technical guidance for integrating security into business and productivity platforms (Salesforce, ERP, Google Workspace, Slack, Zoom).

What You’ll Bring (Qualifications)

  • 10+ years of experience in Security Engineering, DevSecOps, or Infrastructure Security within a SaaS or enterprise environment.
  • Hands‑on technical expertise in vulnerability scanning, patching, and remediation across cloud, endpoint, and SaaS ecosystems.
  • Experience deploying and managing Snyk, Semgrep, and Qualys tools.
  • Strong knowledge of AWS security practices, SRE principles, and securing business technology stacks (Salesforce, ERP, Google, Slack, Zoom).
  • Proven ability to coach, mentor, and collaborate with development teams to improve remediation velocity.
  • Practical understanding of secure SDLC / PDLC, supply chain security, and secrets management.
  • Excellent troubleshooting and communication skills, with a proactive and solution‑oriented mindset.
  • The annual base salary range for this position for candidates located in the San Francisco Bay area is between $148,000—$222,000 USD. Below is the annual base salary range for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York and Washington. Your actual base salary will depend on factors such as your skills, qualifications, experience, and work location. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. To learn more about our Total Rewards program please visit : https : / / rewards.okta.com / us.

    Some roles may require travel to one of our office locations for in‑person onboarding.

    Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws.

    If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.

    Okta is committed to complying with applicable data privacy and security laws and regulations. For more information, please see our Personnel and Job Candidate Privacy Notice at https : / / www.okta.com / legal / personnel-policy / .

    #J-18808-Ljbffr

    Create a job alert for this search

    Staff Security Engineer • San Francisco, CA, United States

    Related jobs
    Senior Staff Infrastructure Security Engineer

    Senior Staff Infrastructure Security Engineer

    Promote Project • San Francisco, CA, US
    Full-time
    Senior Staff Infrastructure Security Engineer Location San Francisco Salary 55000 - 95000 a year (s) Description Crusoe is building the World's Favorite AI-first Cloud infrastructure company.We...Show more
    Last updated: 30+ days ago • Promoted
    Staff Backend Engineer - Device Security

    Staff Backend Engineer - Device Security

    Verkada • San Mateo, California, United States
    Full-time
    Verkada is the largest cloud-based B2B physical security platform company in the world.Only Verkada offers six product lines — video security cameras, access control, environmental sensors, alarms,...Show more
    Last updated: 30+ days ago • Promoted
    Staff Security Engineer, Secure Digital Asset Operations

    Staff Security Engineer, Secure Digital Asset Operations

    P2P • San Francisco, CA, United States
    Full-time
    At Ripple, we’re building a world where value moves like information does today.It’s big, it’s bold, and we’re already doing it. Through our crypto solutions for financial institutions, businesses, ...Show more
    Last updated: 30+ days ago • Promoted
    Staff Security Engineer, Security Partnerships

    Staff Security Engineer, Security Partnerships

    Stripe • San Francisco, CA, United States
    Full-time
    Staff Security Engineer, Security Partnerships.Staff Security Engineer, Security Partnerships.Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world's lar...Show more
    Last updated: 1 day ago • Promoted
    Staff Platform Security Engineer

    Staff Platform Security Engineer

    Gemini • San Francisco, CA, United States
    Full-time
    Staff Platform Security Engineer.Be among the first 25 applicants.Staff Platform Security Engineer.Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offer...Show more
    Last updated: 30+ days ago • Promoted
    Staff Security Engineer

    Staff Security Engineer

    Pomelo Care • San Francisco, CA, United States
    Full-time
    Pomelo Care is a multi‑disciplinary team of clinicians, engineers and problem solvers who are passionate about improving care for moms and babies. We are transforming outcomes for pregnant people an...Show more
    Last updated: 1 day ago • Promoted
    Staff Platform Security Engineer (IAM)

    Staff Platform Security Engineer (IAM)

    Gemini Trust Company • San Francisco, CA, United States
    Full-time
    Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and in...Show more
    Last updated: 1 day ago • Promoted
    Staff Security Engineer

    Staff Security Engineer

    EvenUp Inc. • San Francisco, CA, United States
    Full-time
    EvenUp is on a mission to close the justice gap using technology and AI.We empower personal injury lawyers and victims to get the justice they deserve. Our products enable law firms to secure faster...Show more
    Last updated: 2 days ago • Promoted
    Staff Security Engineer

    Staff Security Engineer

    Credit Genie • San Francisco, CA, United States
    Full-time
    Credit Genie is a mobile-first financial wellness platform designed to help individuals take control of their financial future. We leverage artificial intelligence to provide personalized insights a...Show more
    Last updated: 1 day ago • Promoted
    Staff Blockchain Security Engineer

    Staff Blockchain Security Engineer

    Gemini Trust Company • San Francisco, CA, United States
    Full-time
    Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and in...Show more
    Last updated: 4 days ago • Promoted
    Staff Enterprise Security Engineer

    Staff Enterprise Security Engineer

    Gemini • San Francisco, CA, United States
    Full-time
    Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and in...Show more
    Last updated: 30+ days ago • Promoted
    Staff Security Operations Engineer

    Staff Security Operations Engineer

    Canonical • San Francisco, CA, United States
    Full-time
    Staff Security Operations Engineer.Continue with Google Continue with Google.Be among the first 25 applicants.Staff Security Operations Engineer. We have opened several senior / staff Security Operati...Show more
    Last updated: 30+ days ago • Promoted
    Staff Security Engineer, Container & VM Security

    Staff Security Engineer, Container & VM Security

    The Rundown AI, Inc. • San Francisco, CA, United States
    Full-time
    At Anthropic, we're building frontier AI systems that require unprecedented levels of security and isolation.We're seeking a Staff Security Engineer specializing in container and VM security to hel...Show more
    Last updated: 4 days ago • Promoted
    Remote Staff Security Engineer — Build Secure Platforms

    Remote Staff Security Engineer — Build Secure Platforms

    Parafin • San Francisco, CA, United States
    Remote
    Full-time
    A technology firm is seeking an experienced security-focused engineer to enhance its security posture in cloud environments. The role involves leading security efforts, establishing best practices, ...Show more
    Last updated: 12 hours ago • Promoted • New!
    Staff Enterprise Security Engineer

    Staff Enterprise Security Engineer

    Gemini Trust Company • San Francisco, CA, United States
    Full-time
    Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and in...Show more
    Last updated: 1 day ago • Promoted
    Staff Security Engineer, TDI

    Staff Security Engineer, TDI

    Okta • San Francisco, CA, United States
    Full-time
    We are seeking a highly skilled and hands-on Security Engineer with a DevSecOps focus to join the TDI BT Security team.In this role, you will be embedded directly within our technical environments,...Show more
    Last updated: 4 days ago • Promoted
    Staff Security Engineer

    Staff Security Engineer

    Box • Redwood City, CA, United States
    Full-time
    Box (NYSE : BOX) is the leader in Intelligent Content Management.Our platform enables organizations to fuel collaboration, manage the entire content lifecycle, secure critical content, and transform ...Show more
    Last updated: 30+ days ago • Promoted
    Staff Security Engineer (Hybrid)

    Staff Security Engineer (Hybrid)

    Fiddler AI • San Francisco, CA, United States
    Full-time
    Staff Security Engineer (Hybrid).Join us as our first Security Engineer to define and drive the foundation of security for a next‑generation developer platform that powers responsible AI.Your work ...Show more
    Last updated: 1 day ago • Promoted