Roku Logo

Roku

Senior Identity Access Management Engineer

Reposted 25 Days Ago
Be an Early Applicant
In-Office
Boston, MA
140K-155K Annually
Senior level
In-Office
Boston, MA
140K-155K Annually
Senior level
Lead IAM standardization, drive automation, support Azure applications onboarding, enhance privileged access management, and collaborate across IT teams.
The summary above was generated by AI
Teamwork makes the stream work.
Roku is changing how the world watches TV

Roku is the #1 TV streaming platform in the U.S., Canada, and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our mission is to be the TV streaming platform that connects the entire TV ecosystem. We connect consumers to the content they love, enable content publishers to build and monetize large audiences, and provide advertisers unique capabilities to engage consumers.

From your first day at Roku, you'll make a valuable - and valued - contribution. We're a fast-growing public company where no one is a bystander. We offer you the opportunity to delight millions of TV streamers around the world while gaining meaningful experience across a variety of disciplines.


About the role

Roku is seeking a senior-level Identity Engineer to enhance its Zero-Trust architecture, drive standardization initiatives, and optimize its Microsoft‑centric identity platform for a geographically distributed workforce. The ideal candidate has hands-on experience in identity and access management (IAM) and securing cloud environments within the Microsoft ecosystem, with deep expertise in Azure Entra ID. Equally important is a strong automation mindset—designing, scripting, and building repeatable workflows. The role also requires the ability to communicate complex technical concepts clearly to both technical and non‑technical audiences. 

For Massachusetts Only - The estimated annual salary for this position is between $140,000 - $212,000 annually. Compensation packages are based on factors unique to each candidate, including but not limited to skill set, certifications, and specific geographical location. This role is eligible for health insurance, equity awards, life insurance, disability benefits, parental leave, wellness benefits, and paid time off.


What you'll be doing
  • Lead enterprise-wide IAM standardization, including identity lifecycle, access governance, and policy enforcement across global regions. 
  • Drive automation across IAM to streamline administration and deliver a smoother user experience. 
  • Support enterprise applications onboarding into Azure Entra ID, including SSO, Conditional Access, and role-based access control (RBAC). 
  • Enhance privileged access management and implement scalable monitoring, alerting, and auditability solutions to support a secure, geographically distributed workforce. 
  • Collaborate with IT, Networking, and Security teams to troubleshoot identity-related issues and support global infrastructure initiatives. 

We’re excited if you have 
  • 8+ years of hands-on experience with identity and access management and automating cloud technologies, particularly within the Microsoft ecosystem. 
  • Strong analytical skills and attention to detail, with the ability to troubleshoot complex infrastructure and identity-related issues. 
  • Excellent communication skills, with the ability to clearly explain technical concepts to both technical and non-technical stakeholders. 
  • Deep experience with Microsoft Entra ID, including Conditional Access, Identity Governance, and Privileged Identity Management. 
  • Familiarity with Microsoft 365 services: Exchange Online, Defender, Purview, Sentinel, Intune, and related platforms. 
  • Automation and scripting skills using PowerShell, Azure CLI, and Microsoft Graph API; working knowledge of Azure services such as Function Apps and Logic Apps. 
  • Experience in onboarding and managing enterprise applications in Azure Entra ID. 
  • Advanced knowledge of Azure Single Sign-On (SSO) login methods, including OAuth2, OpenID Connect, and SAML, and their integration with enterprise applications. 
  • Strong understanding of multi-factor authentication and FIDO2. 
  • Familiarity with IT security frameworks and compliance standards. 
  • Knowledge of logging, monitoring, and alerting practices for identity and access events. 
  • Basic understanding of email security and DNS. 
  • Experience with backup and recovery strategies for identity-related services. 
  • Understanding of Zero Trust Architecture principles. 
  • Familiarity with Jira and Confluence. 
  • B.S. in Computer Science, Information Technology, Engineering, or equivalent experience. 
#LI-SR2

Our Hybrid Work Approach

Roku fosters an inclusive and collaborative environment where teams work in the office Monday through Thursday. Fridays are flexible for remote work except for employees whose roles are required to be in the office five days a week or employees who are in offices with a five day in office policy.


Benefits

Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Our employees can take time off work for vacation and other personal reasons to balance their evolving work and life needs. It's important to note that not every benefit is available in all locations or for every role. For details specific to your location, please consult with your recruiter.


Accommodations

Roku welcomes applicants of all backgrounds and provides reasonable accommodations and adjustments in accordance with applicable law. If you require reasonable accommodation at any point in the hiring process, please direct your inquiries to [email protected].


The Roku Culture

Roku is a great place for people who want to work in a fast-paced environment where everyone is focused on the company's success rather than their own. We try to surround ourselves with people who are great at their jobs, who are easy to work with, and who keep their egos in check. We appreciate a sense of humor. We believe a fewer number of very talented folks can do more for less cost than a larger number of less talented teams. We're independent thinkers with big ideas who act boldly, move fast and accomplish extraordinary things through collaboration and trust. In short, at Roku you'll be part of a company that's changing how the world watches TV. 

We have a unique culture that we are proud of. We think of ourselves primarily as problem-solvers, which itself is a two-part idea. We come up with the solution, but the solution isn't real until it is built and delivered to the customer. That penchant for action gives us a pragmatic approach to innovation, one that has served us well since 2002. 

To learn more about Roku, our global footprint, and how we've grown, visit https://www.weareroku.com/factsheet.

By providing your information, you acknowledge that you want Roku to contact you about job roles, that you have read Roku's Applicant Privacy Notice, and understand that Roku will use your information as described in that notice. If you do not wish to receive any communications from Roku regarding this role or similar roles in the future, you may unsubscribe at any time by emailing [email protected].

Top Skills

Azure Cli
Azure Entra Id
Identity Governance
Microsoft 365
Microsoft Graph Api
Oauth2
Openid Connect
Powershell
Privileged Identity Management
SAML

Similar Jobs

11 Days Ago
In-Office
Boston, MA, USA
112K-163K Annually
Senior level
112K-163K Annually
Senior level
Edtech
The Senior IAM Engineer designs and manages the identity management framework, ensuring security and regulatory compliance while supporting systems like SSO and RBAC.
Top Skills: BashEntraGithub ActionsGrouperJenkinsMicrosoft Active DirectoryOauthOpenid ConnectPowershellSAMLSavyintShibbolethSQL
16 Hours Ago
Hybrid
Framingham, MA, USA
88K-107K Annually
Mid level
88K-107K Annually
Mid level
Cloud • HR Tech • Information Technology • Software
The Project Manager will lead cross-functional teams in executing go-to-market initiatives, ensuring effective communication and project success from concept to launch.
Top Skills: 6SenseAsanaGoogle AnalyticsSalesforceSeismic
19 Hours Ago
Hybrid
Boston, MA, USA
90K-175K Annually
Senior level
90K-175K Annually
Senior level
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
The Senior Account Executive will drive sales of hybrid multi-cloud and professional services, acquire new customers, manage accounts, and achieve revenue growth by utilizing strong sales skills in a consultative environment.
Top Skills: AWSGCPMicrosoftSalesforce

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account