Staff Security Analyst, Customer Assurance
Job Description
Okta’s Customer Assurance Security Trust function connects customer due-diligence needs with internal engineering and security teams.
Responsibilities
- Act as the main bridge between customers and internal Engineering/Product Security teams by unpacking security concerns, leading technical discussions, and translating Okta’s security architecture into customer-ready answers for high-stakes inquiries.
- Function as a technical translator by converting engineering specifications and vulnerability findings into clear, risk-based narratives that address customer questions while protecting Okta’s intellectual property.
- Serve as the primary security advocate for Field Account Teams by providing technical clarity on Okta’s security posture, roadmap, and incident response protocols.
- Partner with Product and Engineering to pre-digest upcoming features and security improvements so Field teams have accurate technical talking points before customers ask.
- Own end-to-end responses to complex security questionnaires and due-diligence requests, coordinating with internal subject matter experts (including specialized Federal/FedRAMP teams) to deliver accurate, timely, high-quality responses for regulated customers.
- Identify and implement AI and automation opportunities to streamline Customer Assurance workflows, scale globally, and reduce response times.
- Train and enable regional Go-To-Market and Sales teams on standard engagement protocols, leveraging Customer Assurance resources to support faster deal cycles.
- Collaborate with the Security Trust & Culture team and Regional CSOs to develop, publish, and maintain forward-facing security collateral, FAQs, and field communications.
- Work in a global environment, participating or leading handoffs between American timezones and European/Asian teams when needed for major security or industry events.
Requirements
- Bachelor’s degree in Computer Science or Management Information Systems (or equivalent work experience in technology or information security).
- Minimum 3 years experience in information security, project management, or related fields.
- Strong foundational understanding of core security principles, architectures, and operations.
- Knowledge of IT and cloud methodologies, information security, privacy, identity management, risk assessments, and IT regulation/compliance standards.
- Strong oral, written, and presentation skills with the ability to distill complex technical topics into clear, concise responses for both technical customers and internal executive stakeholders.
- Ability to run whiteboard-level discussions with customer CISOs and architects, specifically around cloud infrastructure, API security, and encryption standards.
- Demonstrated experience balancing technical limitations with customer expectations, using compensating controls to help meet security requirements.
- Ability to shift from a “checker” mindset to a “consultant” mindset by explaining the why behind Okta security controls.
Helpful Certifications / Skills
- Okta Certified Professional/Administrator
- Certificate of Cloud Security Knowledge (CCSK) and/or Certificate of Cloud Auditing Knowledge (CCAK)
- Certified Information Security Auditor (CISA)
- Experience with generative AI tools or process automation platforms (strong plus)
- Familiarity with Federal or highly regulated compliance frameworks (e.g., FedRAMP, StateRAMP, NIST 800-53, DoD IL4/IL5/IL6)
Location: Bellevue, WA (hybrid)
Compensation: USD 148,000 - 203,500 per year