Sr. Identity Access Management Engineer- Azure

Bengaluru, India

Roku

This is the jump-off point to learn about working at Roku, including our employees, the Roku culture, our office locations around the world, and student internship opportunities. Roku, jobs, careers, internship, streaming, TV, engineering

View all jobs at Roku

Apply now Apply later

Teamwork makes the stream work.

Roku is changing how the world watches TV

Roku is the #1 TV streaming platform in the U.S., Canada, and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our mission is to be the TV streaming platform that connects the entire TV ecosystem. We connect consumers to the content they love, enable content publishers to build and monetize large audiences, and provide advertisers unique capabilities to engage consumers.

From your first day at Roku, you'll make a valuable - and valued - contribution. We're a fast-growing public company where no one is a bystander. We offer you the opportunity to delight millions of TV streamers around the world while gaining meaningful experience across a variety of disciplines.

 

Roku is seeking a senior level Identity Engineer to help enhance its Zero Trust Architecture, drive standardization initiatives, and support a multi-cloud, geo-distributed workforce. The ideal candidate will have hands-on experience with identity and access management (IAM), securing cloud environments, particularly within the Microsoft ecosystem, and deep expertise in Azure Entra ID. A strong understanding of IT security best practices, regulatory compliance, and the ability to clearly communicate complex technical concepts are essential. 

 What you’ll be doing 

  • Lead enterprise-wide IAM standardization efforts, including identity lifecycle management, access governance, and policy enforcement across global regions.
  • Support enterprise applications onboarding into Azure Entra ID, including SSO, conditional access, and role-based access control (RBAC). 
  • Enhance privileged access management and implement scalable monitoring, alerting, and auditability solutions to support a secure, multi-cloud, geo-distributed workforce. 
  • Design, implement, and continuously improve Roku’s Zero Trust Architecture, aligning with NIST SP 800-207 and SP 1800-35 guidance. 
  • Collaborate with IT, Networking, and Security teams to troubleshoot identity-related issues and support global infrastructure initiatives. 
  • Identify and implement automation opportunities to streamline IAM operations and reduce manual overhead. 
  • Integrate security into DevOps workflows, partnering with engineering teams to embed IAM and application security best practices into CI/CD pipelines. 

We’re excited if you have 

  • Strong analytical skills and attention to detail, with the ability to troubleshoot complex infrastructure and identity-related issues. 
  • Excellent communication skills, with the ability to clearly explain technical concepts to both technical and non-technical stakeholders. 
  • 5+ years of hands-on experience with identity and access management and securing cloud technologies, particularly within the Microsoft ecosystem. 
  • Advanced knowledge of Azure Single Sign-On (SSO) login methods including OAuth2, OpenID Connect, and SAML, and their integration with enterprise applications 
  • Experience onboarding and managing enterprise applications in Azure Entra ID 
  • Deep experience with Microsoft Entra ID, including Conditional Access, Identity Governance, and Privileged Identity Management (PIM) 
  • Familiarity with Microsoft 365 infrastructure: Intune, Exchange Online, Defender, Purview, Sentinel and related services 
  • Strong understanding of multi-factor authentication (MFA), passwordless authentication, FIDO, and passkeys 
  • Automation and scripting skills using PowerShell, Azure CLI, Microsoft Graph API 
  • Working knowledge of Azure services (Function Apps, Logic Apps, Automation Accounts, Resource Groups, etc.) 
  • Experience with AWS; GCP is a plus 
  • Solid understanding of SaaS platforms and their identity integration 
  • Understanding of Zero Trust Architecture principles 
  • Familiarity with IT security frameworks and compliance standards (e.g., NIST, GDPR, SOC 2, PCI DSS, HIPAA) 
  • Awareness of logging, monitoring, and alerting practices related to identity and access events 
  • Basic understanding of email security and DNS 
  • Backup and recovery awareness for identity-related services 
  • Experience with Azure OpenAI 
  • Familiarity with Jira and Confluence 
  • B.S. in Computer Science, Information Technology, Engineering, or equivalent experience

Preferred Skills:

  • DevOps/IaC experience (Terraform, Bicep, ARM, CloudFormation) 
  • Practical Linux and networking skills 
  • Relevant certifications (Microsoft, AWS, GCP, CISSP, etc.) 


#LI-NK1

 

Benefits

Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Our employees can take time off work for vacation and other personal reasons to balance their evolving work and life needs. It's important to note that not every benefit is available in all locations or for every role. For details specific to your location, please consult with your recruiter.

 

The Roku Culture

Roku is a great place for people who want to work in a fast-paced environment where everyone is focused on the company's success rather than their own. We try to surround ourselves with people who are great at their jobs, who are easy to work with, and who keep their egos in check. We appreciate a sense of humor. We believe a fewer number of very talented folks can do more for less cost than a larger number of less talented teams. We're independent thinkers with big ideas who act boldly, move fast and accomplish extraordinary things through collaboration and trust. In short, at Roku you'll be part of a company that's changing how the world watches TV. 

We have a unique culture that we are proud of. We think of ourselves primarily as problem-solvers, which itself is a two-part idea. We come up with the solution, but the solution isn't real until it is built and delivered to the customer. That penchant for action gives us a pragmatic approach to innovation, one that has served us well since 2002. 

To learn more about Roku, our global footprint, and how we've grown, visit https://www.weareroku.com/factsheet.

By providing your information, you acknowledge that you have read our Applicant Privacy Notice and authorize Roku to process your data subject to those terms.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: APIs Application security Automation AWS Azure CI/CD CISSP Cloud Compliance Computer Science Confluence DevOps DNS GCP GDPR Governance HIPAA IAM Jira Linux Monitoring NIST OpenAI OpenID PCI DSS PowerShell Privacy SaaS SAML Scripting Sentinel SOC SOC 2 SSO Terraform Zero Trust

Perks/benefits: Health care Startup environment Team events Wellness

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.