{"version":"0.1","company":{"name":"YubHub","url":"https://yubhub.co","jobsUrl":"https://yubhub.co/jobs/skill/scim-provisioning"},"x-facet":{"type":"skill","slug":"scim-provisioning","display":"Scim Provisioning","count":4},"x-feed-size-limit":100,"x-feed-sort":"enriched_at desc","x-feed-notice":"This feed contains at most 100 jobs (the most recently enriched). For the full corpus, use the paginated /stats/by-facet endpoint or /search.","x-generator":"yubhub-xml-generator","x-rights":"Free to redistribute with attribution: \"Data by YubHub (https://yubhub.co)\"","x-schema":"Each entry in `jobs` follows https://schema.org/JobPosting. YubHub-native raw fields carry `x-` prefix.","jobs":[{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_a0373d52-7fe"},"title":"Senior IAM Engineer","description":"<p>We are looking for a Senior IAM Engineer to join our team. As a Senior IAM Engineer, you will play a critical role in securing our systems and data. You will have the opportunity to work with cutting-edge IAM technologies, collaborate with cross-functional teams, and influence the development of our IAM strategy.</p>\n<p>Your primary focus will be on designing and implementing identity lifecycle management, integration and orchestration, access governance, security and compliance, custom tooling, and data and AI infrastructure support. You will also be responsible for collaborating with cross-functional teams, improving provisioning and deprovisioning processes, integrating and managing IdPs within the IAM system, handling and streamlining access requests, developing and implementing IAM policies and procedures, and responding to ad-hoc requests.</p>\n<p>To be successful in this role, you will need to have a strong understanding of identity lifecycle management, directory services, SSO, MFA, SCIM provisioning, and federation (SAML, OIDC, OAuth). You will also need to have experience partnering with HR, Finance, Compliance, and other cross-functional teams to design and implement IAM and enterprise solutions.</p>\n<p>Additional skills and experience we&#39;d prioritize include experience with Workato or similar integration orchestrator tools, experience with Okta Workflows, certifications such as Workato or Okta Certified Professional/Administrator/Consultant, experience integrating IAM with HR systems, knowledge of compliance requirements related to IAM, and background in cloud platforms (AWS, GCP, Azure) and IAM integrations.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_a0373d52-7fe","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Komodo Health","sameAs":"https://www.komodohealth.com/","logo":"https://logos.yubhub.co/komodohealth.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/komodohealth/jobs/8393728002","x-work-arrangement":"remote","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Scripting","Automation Mindset","APIs","Infrastructure as Code","Security Mindset","Identity and Access Management","Okta","Workday","Google Workspace","SCIM provisioning","Federation (SAML, OIDC, OAuth)","Directory services","SSO","MFA"],"x-skills-preferred":["Workato","Okta Workflows","Certifications (Workato or Okta Certified Professional/Administrator/Consultant)","Experience integrating IAM with HR systems","Knowledge of compliance requirements related to IAM","Background in cloud platforms (AWS, GCP, Azure) and IAM integrations"],"datePosted":"2026-04-18T15:57:17.076Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"India"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Healthcare","skills":"Scripting, Automation Mindset, APIs, Infrastructure as Code, Security Mindset, Identity and Access Management, Okta, Workday, Google Workspace, SCIM provisioning, Federation (SAML, OIDC, OAuth), Directory services, SSO, MFA, Workato, Okta Workflows, Certifications (Workato or Okta Certified Professional/Administrator/Consultant), Experience integrating IAM with HR systems, Knowledge of compliance requirements related to IAM, Background in cloud platforms (AWS, GCP, Azure) and IAM integrations"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_831cde09-cf4"},"title":"Sr. IT Systems/Automation Engineer","description":"<p>As a Sr. IT Systems/Automation Engineer, you will be a core technical contributor on the IT Digital Employee Experience team at Databricks, owning and driving automation platforms and endpoint security programs that reduce friction across the company.</p>\n<p>This role requires a strong automation mindset, deep technical breadth across IT systems, and the ability to deliver high-quality, scalable solutions in a fast-paced environment.</p>\n<p>The impact you will have includes:</p>\n<ul>\n<li>Owning and evolving our IT automation platform, serving as the subject matter expert and driving design, implementation, and improvement of automation workflows across IT and Security.</li>\n<li>Leading and maintaining the Mobile Security program, MDM configuration, and policy enforcement.</li>\n<li>Designing and delivering end-to-end automation solutions across onboarding/offboarding and security compliance workflows.</li>\n<li>Partnering with cross-functional stakeholders across IAM, Security, Infrastructure, and Engineering to deliver impactful projects with real business outcomes.</li>\n<li>Supporting M&amp;A technical integrations by applying your automation skills to accelerate onboarding.</li>\n<li>Documenting solutions, training, and mentoring junior engineers of the platforms you own.</li>\n</ul>\n<p>Core qualifications include:</p>\n<ul>\n<li>5+ years of experience in IT systems engineering and automation.</li>\n<li>Proven track record of delivering complex, multi-system automation projects with measurable business impact.</li>\n<li>Strong automation mindset: you don&#39;t just execute tasks, you architect scalable automated solutions.</li>\n<li>Ability to operate with minimal guidance, take ownership of ambiguous projects, and deliver consistently high-quality work under pressure.</li>\n</ul>\n<p>Automation &amp; Integration Expertise includes hands-on experience with enterprise IT automation platforms (Tines preferred), or equivalent, and experience building and troubleshooting integrations between identity, endpoint, ticketing, and security platforms.</p>\n<p>Endpoint &amp; Mobile Device Management includes expertise with Jamf MDM platforms for managing macOS, iOS, Windows, and Android devices at scale, and experience with zero-touch provisioning, device imaging, configuration management, and security policy enforcement.</p>\n<p>Identity &amp; Access Management includes working knowledge of IAM platforms (Okta preferred), including SSO, SCIM provisioning, group rules, and access lifecycle management.</p>\n<p>Collaboration &amp; Communication includes strong cross-functional collaboration skills, comfortable working with Security, Engineering, Infrastructure, and business stakeholders, and effective at coaching and training peers on new tools and processes.</p>\n<p>Nice to Have includes certifications in relevant platforms (e.g., Jamf, Tines, Okta, Google Workspace).</p>\n<p>Pay Range Transparency: Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles.</p>\n<p>Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location.</p>\n<p>Based on the factors above, Databricks anticipates utilizing the full width of the range.</p>\n<p>The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above.</p>\n<p>For more information regarding which range your location is in visit our page here.</p>\n<p>Zone 1 Pay Range $143,400-$197,100 USD</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_831cde09-cf4","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Databricks","sameAs":"https://databricks.com","logo":"https://logos.yubhub.co/databricks.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/databricks/jobs/8463169002","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["IT systems engineering","automation","enterprise IT automation platforms","integration between identity, endpoint, ticketing, and security platforms","Jamf MDM platforms","zero-touch provisioning","device imaging","configuration management","security policy enforcement","IAM platforms","SSO","SCIM provisioning","group rules","access lifecycle management"],"x-skills-preferred":["certifications in relevant platforms (e.g., Jamf, Tines, Okta, Google Workspace)"],"datePosted":"2026-04-18T15:56:30.393Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Mountain View, California"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"IT systems engineering, automation, enterprise IT automation platforms, integration between identity, endpoint, ticketing, and security platforms, Jamf MDM platforms, zero-touch provisioning, device imaging, configuration management, security policy enforcement, IAM platforms, SSO, SCIM provisioning, group rules, access lifecycle management, certifications in relevant platforms (e.g., Jamf, Tines, Okta, Google Workspace)"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_a585fcb5-07b"},"title":"Senior Security Engineer, Enterprise Security","description":"<p>As a Senior Security Engineer, Enterprise Security, you will design and ship the security controls that underpin CoreWeave&#39;s workforce and enterprise stack. You will lead initiatives across identity, access management, device and endpoint security, and SaaS security,partnering closely with IT Engineering, Endpoint, Network, and other security teams.</p>\n<p>Your day-to-day will blend hands-on engineering (writing code, building integrations, tuning controls) with architecture and program ownership (setting standards, defining patterns, and driving adoption across teams). You will be responsible for turning high-level objectives,like “implement zero trust for workforce access” or “deploy phishing-resistant MFA at scale”,into concrete designs, automation, and measurable risk reduction.</p>\n<p>In this role, you will:</p>\n<ul>\n<li>Engineer modern identity and access controls</li>\n<li>Design, implement, and operate workforce identity solutions (e.g., Okta/Entra and other IdPs) including SSO, MFA, conditional access, and lifecycle automation via SCIM.</li>\n<li>Develop and roll out phishing-resistant MFA for high-value accounts and critical access paths (e.g., FIDO2/WebAuthn, hardware keys, device-bound authenticators).</li>\n<li>Define and maintain RBAC/IAM patterns for enterprise applications (role models, groups, entitlements, JIT access, and approvals).</li>\n</ul>\n<ul>\n<li>Implement zero trust for workforce and enterprise access</li>\n<li>Design and deploy controls that combine user identity, device posture, network context, and application sensitivity to enforce least-privilege access.</li>\n<li>Partner with Network and Infrastructure teams to integrate mTLS, service identity, and policy-based access into internal services and admin interfaces.</li>\n<li>Help transition from legacy perimeter models to zero trust network access (ZTNA) patterns for employees, contractors, and third parties.</li>\n</ul>\n<ul>\n<li>Secure SaaS and collaboration platforms</li>\n<li>Evaluate, onboard, and harden SaaS applications (Google Workspace, Microsoft 365, Slack, HRIS, ticketing, and other business apps) to align with enterprise security policies.</li>\n<li>Implement and tune controls such as SCIM provisioning, data access policies, DLP, sharing controls, and audit logging across the SaaS estate.</li>\n<li>Partner with business and IT owners to ensure new SaaS applications meet baseline security standards before adoption.</li>\n</ul>\n<ul>\n<li>Harden endpoints and the extended workforce</li>\n<li>Collaborate with Endpoint/IT teams to define and enforce baseline configurations for laptops, workstations, and other managed devices via MDM and EDR.</li>\n<li>Design secure patterns for contractor and vendor access, including device requirements, identity separation, and time-bound access.</li>\n<li>Support investigations and incident response related to identity, endpoint, and SaaS domains.</li>\n</ul>\n<ul>\n<li>Automate and instrument everything you can</li>\n<li>Build automation and self-service experiences for access requests, approvals, access reviews, and break-glass workflows.</li>\n<li>Develop integrations between IdPs, HRIS, ticketing, and other systems to minimize manual toil and reduce identity-related error rates.</li>\n<li>Define and instrument metrics for enterprise security (e.g., MFA coverage, zero trust policy enforcement, joiner/mover/leaver SLA adherence, SaaS posture).</li>\n</ul>\n<ul>\n<li>Partner on detection, response, and governance</li>\n<li>Work with Security Operations and SIEM teams to ensure robust visibility into identity, device, and SaaS activity, and to build high-signal detections.</li>\n<li>Contribute to policies, standards, and reference architectures that encode enterprise security expectations.</li>\n<li>Author clear documentation and runbooks that make it easy for teams to consume and operate the controls you build.</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_a585fcb5-07b","directApply":true,"hiringOrganization":{"@type":"Organization","name":"CoreWeave","sameAs":"https://www.coreweave.com","logo":"https://logos.yubhub.co/coreweave.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/coreweave/jobs/4653764006","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Identity and Access Management","Security Engineering","Zero Trust Architecture","Phishing-Resistant MFA","RBAC/IAM Patterns","SCIM Provisioning","Data Access Policies","DLP","Sharing Controls","Audit Logging","Endpoint Security","MDM","EDR","Automation","Self-Service Experiences","Integrations","Metrics","Enterprise Security","Security Operations","SIEM","Policies","Standards","Reference Architectures"],"x-skills-preferred":["Cloud Computing","AI Applications","Containerization","Kubernetes","DevOps","CI/CD Pipelines","Agile Methodologies","Scrum","Kanban","Project Management","Leadership","Communication","Collaboration"],"datePosted":"2026-04-18T15:49:47.000Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"New York, NY / Sunnyvale, CA / Bellevue, WA"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Identity and Access Management, Security Engineering, Zero Trust Architecture, Phishing-Resistant MFA, RBAC/IAM Patterns, SCIM Provisioning, Data Access Policies, DLP, Sharing Controls, Audit Logging, Endpoint Security, MDM, EDR, Automation, Self-Service Experiences, Integrations, Metrics, Enterprise Security, Security Operations, SIEM, Policies, Standards, Reference Architectures, Cloud Computing, AI Applications, Containerization, Kubernetes, DevOps, CI/CD Pipelines, Agile Methodologies, Scrum, Kanban, Project Management, Leadership, Communication, Collaboration"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_1e9bd843-ca4"},"title":"Global Head of IT","description":"<p>About the Role</p>\n<p>KoBold&#39;s IT function supports a globally distributed team of ~280 geoscientists, data scientists, and engineers working across North America, Zambia, the DRC, and field exploration sites around the world. As we scale, our IT needs are evolving rapidly,from reactive, break/fix helpdesk support toward proactive, automated IT operations that work seamlessly across geographies, including remote field sites with limited connectivity.</p>\n<p>In this role, you will own the full operational scope of Global IT. That means endpoint management, software procurement and renewals, identity and access administration, license optimization, vendor management, employee onboarding and offboarding, hardware lifecycle management, and IT training. You’ll lead a team of IT support staff, set technical direction, manage the annual software budget, and be the person who makes sure nothing falls through the cracks,renewals don’t expire, new hires have everything they need on day one, and the fleet is healthy and compliant.</p>\n<p>Responsibilities</p>\n<p>Endpoint Management &amp; Fleet Operations</p>\n<ul>\n<li>Own the Global IT roadmap, setting technical direction for endpoint management, fleet automation, and IT operations across all KoBold offices and field sites in 10+ countries</li>\n<li>Design and implement zero-touch provisioning and automated reimaging workflows for macOS (Jamf) and Windows (Intune) endpoints</li>\n<li>Build endpoint monitoring, alerting, and fleet health dashboards to shift IT from reactive to proactive support</li>\n<li>Drive device lifecycle management including EoL/EoS tracking, hardware refresh planning, and inventory management across Jamf, Intune, CrowdStrike, and related tooling</li>\n<li>Create self-service application deployment and access workflows to reduce helpdesk volume and empower employees</li>\n<li>Apply DevOps principles to IT operations: configuration-as-code (e.g. managing Intune policies via Terraform), infrastructure automation, version-controlled policies, and repeatable processes</li>\n<li>Own internet reliability and network performance at all global remote KoBold sites</li>\n</ul>\n<p>Software Procurement, Licensing &amp; Vendor Management</p>\n<ul>\n<li>Manage the full software procurement lifecycle: new purchases, renewals, expansions, and cancellations, ensuring user access is never disrupted by lapsed licenses or last-minute renewals</li>\n<li>Own and drive execution of the annual software budget, including process improvements year-over-year and proactive renewal pipeline visibility for legal and finance</li>\n<li>Optimize license utilization across the SaaS portfolio,track usage, right-size seat counts, consolidate redundant tools, and negotiate pricing with vendors</li>\n<li>Coordinate with legal on contract review, working within the existing procurement process to move quickly on low-risk purchases while ensuring appropriate review for larger spend</li>\n<li>Onboard new SaaS applications with proper Okta integration (SSO, SCIM) before launch, and manage decommissioning of deprecated tools</li>\n</ul>\n<p>Identity, Access &amp; Employee Lifecycle</p>\n<ul>\n<li>Own Okta administration including SSO integrations, SCIM provisioning, group management, access request workflows, and lifecycle automation</li>\n<li>Manage Google Workspace administration, including license management, security settings, and break-glass super-admin governance</li>\n<li>Build automation for minimal-touch employee onboarding and offboarding,ensuring new hires are fully provisioned on day one and departing employees are cleanly deprovisioned</li>\n<li>Support AI tooling rollout (Claude Desktop, Claude Code, and related tools) across the endpoint fleet, including deployment, configuration, and employee training</li>\n</ul>\n<p>Team Leadership &amp; Training</p>\n<ul>\n<li>Supervise and mentor IT support staff, providing technical coaching, priority-setting, performance management, and career development</li>\n<li>Develop and maintain IT training programs for new hires and ongoing employee enablement, including documentation, video walkthroughs, and live onboarding sessions</li>\n<li>Provide helpdesk backup on high-volume days, modeling the standard of responsiveness and quality you expect from the team</li>\n</ul>\n<p>Cross-Functional Collaboration</p>\n<ul>\n<li>Learn about mineral exploration by working closely with exploration teams, including time in the field in remote operations</li>\n<li>Collaborate with infrastructure engineering and security teams on cross-cutting initiatives including observability, access controls, endpoint security posture, and incident response</li>\n<li>Partner across the company to contribute to specification, vendor selection, and change management on new software requests</li>\n<li>Partner with finance on budget tracking, invoice approvals, and AFE submissions for software spend</li>\n<li>Work with legal to streamline the contract review pipeline, maintain lead times on renewals, and advocate for tiered review processes that match risk to effort</li>\n<li>Coordinate digitization efforts across the globe, ensuring consistent standards and tooling for converting physical records to digital archives at field and office sites</li>\n</ul>\n<p>Qualifications</p>\n<ul>\n<li>5+ years of experience in IT engineering, IT management, or a similar role combining hands-on technical depth with operational ownership</li>\n<li>Strong experience with MDM platforms, particularly Jamf (macOS) and Microsoft Intune (Windows), including policy configuration, automated enrollment, compliance enforcement</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_1e9bd843-ca4","directApply":true,"hiringOrganization":{"@type":"Organization","name":"KoBold","sameAs":"https://www.kobold.com/","logo":"https://logos.yubhub.co/kobold.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/koboldmetals/jobs/4683079005","x-work-arrangement":"remote","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["endpoint management","software procurement","identity and access administration","license optimization","vendor management","employee onboarding and offboarding","hardware lifecycle management","IT training","MDM platforms","Jamf","Microsoft Intune","policy configuration","automated enrollment","compliance enforcement","Okta administration","SSO integrations","SCIM provisioning","group management","access request workflows","lifecycle automation","Google Workspace administration","license management","security settings","break-glass super-admin governance","DevOps principles","configuration-as-code","infrastructure automation","version-controlled policies","repeatable processes"],"x-skills-preferred":[],"datePosted":"2026-04-17T12:41:36.369Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote - US"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"IT","industry":"Technology","skills":"endpoint management, software procurement, identity and access administration, license optimization, vendor management, employee onboarding and offboarding, hardware lifecycle management, IT training, MDM platforms, Jamf, Microsoft Intune, policy configuration, automated enrollment, compliance enforcement, Okta administration, SSO integrations, SCIM provisioning, group management, access request workflows, lifecycle automation, Google Workspace administration, license management, security settings, break-glass super-admin governance, DevOps principles, configuration-as-code, infrastructure automation, version-controlled policies, repeatable processes"}]}