<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>affa7659-e53</externalid>
      <Title>Senior AEM DevSecOps Engineer</Title>
      <Description><![CDATA[<p>Secure Every Identity, from AI to Human</p>
<p>Identity is the key to unlocking the potential of AI. As an AEM DevSecOps Engineer at Okta, you will oversee and automate our AEM infrastructure with a primary focus on security, reliability, and automated compliance.</p>
<p>Key Responsibilities:</p>
<ul>
<li>Identity &amp; Access Management: Configure and manage Auth0 integrations for AEM, including token validation, OIDC/SAML configurations, and custom login modules to ensure secure user authentication.</li>
</ul>
<ul>
<li>Headless Security: Oversee the security of AEM Headless deployments, including protecting GraphQL endpoints, managing CORS policies, and ensuring secure communication for decoupled front-end frameworks (React/Angular).</li>
</ul>
<ul>
<li>Edge &amp; CDN Protection: Manage and configure CDN (e.g., Cloudflare, Akamai, or Adobe-managed CDN) to optimize performance and implement DDoS mitigation strategies.</li>
</ul>
<ul>
<li>Traffic Filtering: Implement and maintain Traffic Filter Rules and Web Application Firewall (WAF) configurations at the CDN level to block malicious spikes and sophisticated application-layer attacks.</li>
</ul>
<ul>
<li>Automated Security Scanning: Integrate security tools (SAST/DAST) and secrets detection into CI/CD pipelines (Jenkins, GitLab) to identify vulnerabilities early in the development cycle.</li>
</ul>
<ul>
<li>Environment Hardening: Install and manage AEM author, publish, and dispatcher instances with a focus on Dispatcher security hardening, SSL certificate automation, and ModSecurity configurations.</li>
</ul>
<ul>
<li>Observability &amp; Incident Response: Monitor system performance and security logs using tools like Splunk or New Relic to proactively address threats and performance bottlenecks.</li>
</ul>
<ul>
<li>Compliance Auditing: Regularly audit the platform and its integrations (Adobe Analytics, Target) to ensure alignment with corporate security policies and industry standards.</li>
</ul>
<p>Required Skills &amp; Experience:</p>
<ul>
<li>Experience: 5+ years in administering and securing AEM environments.</li>
</ul>
<ul>
<li>Identity Services: Proven experience integrating Auth0 or similar Identity Providers (IdP) for enterprise-scale authentication.</li>
</ul>
<ul>
<li>Architectural Knowledge: Strong understanding of Headless CMS security best practices, including API key management and JWT authentication.</li>
</ul>
<ul>
<li>Network Security: Expertise in managing CDNs and implementing DDoS mitigation and WAF rules.</li>
</ul>
<ul>
<li>Technical Stack: Proficiency in Apache Sling, JCR, OSGi, and web servers like Nginx or Apache.</li>
</ul>
<ul>
<li>Automation: Hands-on experience with scripting (Python) and CI/CD tools (Jenkins, CircleCI) to automate security and deployment workflows.</li>
</ul>
<ul>
<li>Cloud Experience: Experience with cloud-based AEM implementations, such as AEM as a Cloud Service (AEMaaCS) or AWS/Azure.</li>
</ul>
<ul>
<li>Diagnostic Skills: Proficiency in analyzing log files, thread dumps, and heap dumps to resolve security incidents or performance outages.</li>
</ul>
<p>The Okta Experience</p>
<ul>
<li>Supporting Your Well-Being</li>
</ul>
<ul>
<li>Driving Social Impact</li>
</ul>
<ul>
<li>Developing Talent and Fostering Connection + Community</li>
</ul>
<p>We are intentional about connection. Our global community, spanning over 20 offices worldwide, is united by a drive to innovate. Your journey begins with an immersive, in-person onboarding experience designed to accelerate your impact and connect you to our mission and team from day one.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>remote</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Experience in administering and securing AEM environments, Identity Services: Proven experience integrating Auth0 or similar Identity Providers (IdP) for enterprise-scale authentication, Architectural Knowledge: Strong understanding of Headless CMS security best practices, including API key management and JWT authentication, Network Security: Expertise in managing CDNs and implementing DDoS mitigation and WAF rules, Technical Stack: Proficiency in Apache Sling, JCR, OSGi, and web servers like Nginx or Apache</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Okta</Employername>
      <Employerlogo>https://logos.yubhub.co/okta.com.png</Employerlogo>
      <Employerdescription>Okta is a technology company that provides identity and access management solutions.</Employerdescription>
      <Employerwebsite>https://www.okta.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/okta/jobs/7688701</Applyto>
      <Location>Poland</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
  </jobs>
</source>