RSM

Digital Identity – IAM Support Engineer – Okta & CyberArk

Bengaluru Full time

We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, inclusive culture and talent experience and our ability to be compelling to our clients. You’ll find an environment that inspires and empowers you to thrive both personally and professionally. There’s no one like you and that’s why there’s nowhere like RSM.

Experience: 3–5 Years
Location: India
Employment Type: Full-Time

Job Summary

We are seeking an experienced Identity and Access Management (IAM) Support Engineer with 3–5 years of hands-on experience in Okta and CyberArk. The candidate will be responsible for supporting identity and privileged access platforms, managing user and privileged account access, troubleshooting authentication and vault-related issues, and ensuring secure identity lifecycle management across enterprise systems.

Key Responsibilities

  • Provide L2/L3 support for IAM and PAM platforms including Okta and CyberArk.
  • Manage user lifecycle (joiner, mover, leaver) and privileged account onboarding/offboarding.
  • Troubleshoot SSO, MFA, and authentication issues across integrated applications.
  • Configure and maintain SSO integrations using SAML, OAuth 2.0, and OpenID Connect.
  • Administer Okta Universal Directory, groups, policies, and application assignments.
  • Manage CyberArk components including Vault, CPM (Central Policy Manager), PSM (Privileged Session Manager), and PVWA.
  • Onboard and manage privileged accounts and safes in CyberArk.
  • Troubleshoot password management issues, session failures, and account reconciliation errors.
  • Monitor IAM and PAM platforms and respond to security alerts and incidents.
  • Support SCIM provisioning and automated identity workflows in Okta.
  • Work with application and infrastructure teams to onboard applications and privileged accounts.
  • Perform access reviews and compliance activities for privileged and standard accounts.
  • Maintain documentation, SOPs, and operational runbooks.
  • Participate in incident, problem, and change management processes.

Required Skills

  • 3–5 years of experience in IAM/PAM support.
  • Strong hands-on experience with Okta administration and troubleshooting.
  • Experience with CyberArk PAM suite (Vault, CPM, PSM, PVWA).
  • Knowledge of SSO protocols (SAML, OAuth 2.0, OpenID Connect).
  • Experience with MFA, adaptive authentication, and access policies.
  • Understanding of privileged access management concepts (credential vaulting, session management, least privilege).
  • Experience in account onboarding, password rotation, and reconciliation in CyberArk.
  • Familiarity with SCIM/API-based provisioning.
  • Basic scripting knowledge (PowerShell / REST APIs).
  • Experience with ITSM tools (ServiceNow or similar).

Good to Have

  • Experience with Okta Workflows or automation tools.
  • Knowledge of CyberArk integrations with cloud and on-prem platforms.
  • Exposure to identity governance and compliance frameworks.
  • Familiarity with cloud IAM platforms like Microsoft Entra ID or AWS IAM.
  • Relevant certifications in Okta or CyberArk.

Soft Skills

  • Strong troubleshooting and analytical mindset
  • Effective communication and stakeholder coordination
  • Ability to work in 16/5 support model (2 PM / 3 PM IST shift)
  • Good documentation and operational discipline

At RSM, we offer a competitive benefits and compensation package for all our people. We offer flexibility in your schedule, empowering you to balance life’s demands, while also maintaining your ability to serve clients. Learn more about our total rewards at https://rsmus.com/careers/india.html.  

RSM does not tolerate discrimination and/or harassment based on race; colour; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender (including gender identity and/or gender expression); sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the Indian Armed Forces; Indian Armed Forces Veterans, and Indian Armed Forces Personnel status; pre-disposing genetic characteristics or any other characteristic protected under applicable provincial employment legislation.  

Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership. RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please send us an email at careers@rsmus.com.