Arch · 3 months ago
Full-Stack Developer — IAM/Okta Integrator
Arch Systems, LLC is seeking a Full-Stack Developer specializing in IAM/Okta integration. In this role, you will implement secure authentication and authorization flows while contributing to full-stack feature development and managing identity provider configurations.
Cloud InfrastructureSoftwareUX Design
Responsibilities
Implement OIDC/OAuth2 (PKCE, MFA) across React SPAs and Node/Java services, including refresh/rotation and robust logout
Design and enforce RBAC/ABAC by mapping claims to roles/permissions
Harden sessions with Secure/HttpOnly/SameSite flags , CSRF tokens, CSP, and anti-clickjacking
Build automated UI/API auth test suites (Playwright/Cypress, Postman/Newman), covering expiry/refresh edge cases
Instrument auth telemetry (OpenTelemetry/New Relic); analyze error codes, drop-offs, and step-up events
Manage IdP configuration as code : approvals, rollbacks, key rotations, downstream impact validation
Run auth cutovers/backouts ; prepare L2 scripts, user comms, and support documentation
Audit third-party auth patterns; review entitlements; tighten scopes to prevent drift
Contribute as a full-stack engineer: non-auth feature delivery, PR reviews, and on-call participation
Qualification
Required
Meets core full-stack baseline (React + Node.js and/or Java)
2+ years of production experience with Okta/OIDC (JWT, JWE, JWS)
Hands-on knowledge of OAuth2, PKCE, MFA, and session security
Strong understanding of web app security (CSRF, XSS, CSP, least-privilege)
Confidential security clearance
Preferred
Okta Certified (Admin, Consultant, or Architect)
CompTIA Security+
Azure SC-300 or AWS Security Specialty
Federal experience (1 year preferred)
Company
Arch
Arch is a market provider of SAP usability software and delivering solutions to enhance the SAP user experience.
Funding
Current Stage
Early StageCompany data provided by crunchbase