drjobs Senior IAM Engineer (Identity Services / SSO / PingFederate) || Full Time

Senior IAM Engineer (Identity Services / SSO / PingFederate) || Full Time

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Job Title: Senior Identity Services Engineer

Location: New York NY 10065 USA

Occasional on-site presence required

Job Type: Full Time

 

Position Summary:
Responsible for operating and maintaining the Information Security teams portfolio of Identity products. Involves application integration access control systems implementation data analytics incident remediation server administration and architectural planning for new technologies and policies.

Essential Job Duties

  • Design implement and support enterprise SSO solutions (PingFederate Azure AD Okta).

  • Maintain and enhance access management platforms and federation infrastructure.

  • Lead application integrations into existing SSO frameworks using SAML OAuth2 OIDC.

  • Implement and support Role-Based Access Control (RBAC) and modern authentication methods.

  • Support and improve authentication strategies across the organization.

  • Collaborate with security application owners and infrastructure teams to deliver secure identity solutions.

  • Troubleshoot complex authentication/federation issues across multiple environments.

  • Participate in IAM roadmap planning and architectural decision-making.

  • Provide mentorship and guidance to IAM engineers.

  • Support governance for authentication authorization and access control standards.

Required Qualifications

  • 5 years of IAM experience focused on SSO and federation.

  • Expertise in PingFederate Azure AD Okta ADFS.

  • Strong knowledge of SAML OIDC OAuth2.

  • Experience with LDAP Active Directory SCIM.

  • Proficiency in PowerShell Python Java scripting/development.

  • Experience working with REST APIs and tools like Postman.

  • Knowledge of OGNL expression language for PingFederate policy customization.

  • Front-end customization skills (HTML CSS JavaScript).

  • Basic Linux administration for IAM infrastructure.

  • Understanding of certificates & PKI (X.509 signing encryption).

  • Strong troubleshooting skills across application identity and network layers.

  • Understanding of Zero Trust adaptive authentication and conditional access concepts.

Preferred Qualifications

  • Hands-on experience with Ping Identity platform: PingFederate PingOne PingID PingDirectory.

  • MFA and Passwordless/FIDO2/WebAuthn authentication strategies.

  • Experience configuring enterprise SSO apps in Azure AD / Entra ID.

  • Exposure to IAM orchestration (PingOne DaVinci or similar).

  • Experience with cloud identity integrations (Azure AWS GCP).

  • Experience in hybrid (on-prem cloud) SSO environments.

  • Strong documentation communication and cross-team collaboration skills.

  • Ability to lead projects and mentor junior engineers.

Thanks & Kind Regards

 

Akash Goyal  US IT Technical Recruiter

 

ChabezTech LLC

4 Lemoyne Dr #102 Lemoyne PA 17043 USA

LinkedIn ID: 

GSA Multiple Award Schedule (MAS) E-Verify


Additional Information :

All your information will be kept confidential according to EEO guidelines.


Remote Work :

Yes


Employment Type :

Contract

Employment Type

Remote

Company Industry

Key Skills

  • Abinitio
  • Administration And Accounting
  • Android
  • Bid Management
  • Inventory Management
  • Embedded C

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.