Identity & Access Management Engineer
Listed on 2026-06-07
-
IT/Tech
Cybersecurity, Systems Engineer
Job Description
We are seeking a hands‑on engineer with strong expertise in Identity & Access Management (IAM), specializing in Ping Identity solutions, Site Minder‑to‑Ping migration, and Terraform‑based automation. The candidate should demonstrate strong analytical and problem‑solving skills and be capable of driving design, development, and migration initiatives.
In addition to engineering responsibilities, the role includes supporting ongoing operational activities and incident management to ensure platform availability for end users and applications. The individual will also be responsible for platform optimization, enhancing logging and auditing capabilities, and implementing new IAM solutions, along with driving automation initiatives across the environment.
Key ResponsibilitiesIAM Engineering & Migration
- Design and implement IAM solutions using Ping Identity suite (Ping Federate, Ping Access, Ping Directory, PingID)
- Participate in and support migration from CA Site Minder to Ping Identity, including policy and agent migration, application onboarding and SSO integration, authentication and authorization flow redesign
- Develop and manage Infrastructure as Code (IaC) using Terraform for IAM deployments
- Integrate applications using SAML, OAuth2, and OIDC protocols
- Work in rotational shifts; provide end‑to‑end L2/L3 production support for IAM platforms ensuring availability and stability
- Handle incidents, problem tickets, and service requests in line with SLAs
- Monitor IAM systems, perform health checks, and ensure proactive issue resolution
- Troubleshoot IAM issues, perform root cause analysis (RCA), and ensure timely remediation
- Support 24x7 operational model including rotational shifts
- Administer and maintain IAM components including Broadcom/CA Site Minder, Directory, Identity Manager, Advanced Authentication, API Gateway, Active Directory and Azure AD
- Enhance platform performance, logging, monitoring, and auditing capabilities
- Participate in certificate management, DR activities, and identity governance initiatives
- Identify opportunities and implement automation for operational tasks
- Analyze production issues and provide technical solutions
- Review IT artifacts and ensure adherence to security and IAM best practices
- Work closely with architects and stakeholders to translate business requirements into technical solutions
- Ensure compliance with enterprise security policies and audit requirements
- Contribute to documentation, runbooks, and process improvements
- Coordinate with infrastructure, application, and security teams for issue resolution
- Provide technical guidance to team members and support delivery execution
- Actively participate in change management, incident calls, and stakeholder communication
- Work in onsite‑offshore model and collaborate across distributed teams
- 4+ years of experience in Identity & Access Management (IAM)
- Hands‑on experience with Ping Identity tools (Ping Federate, Ping Access, Ping Directory, PingID) Broadcom/CA Site Minder and IAM product suite
- Strong experience in Site Minder to Ping migration (highly preferred)
- Solid understanding of SSO, Federation SAML, OAuth2, OpenID Connect (OIDC)
- Experience in IAM troubleshooting, production support, and flow analysis
- Knowledge of Active Directory and Azure AD (Entra )
- Scripting knowledge (Unix/Shell/Perl/Python)
- Experience with Terraform and automation frameworks
- Exposure to CI/CD tools:
Jenkins, Bitbucket, Ansible, Jira, Confluence - Experience with cloud platforms:
Azure / AWS - Knowledge of containers:
Kubernetes, Docker - Experience with monitoring tools such as Dynatrace, CA APM (Wily), Sumo Logic, Site Scope, Science Logic
- Understanding of web/app servers (Tomcat, IIS)
- Strong analytical and problem‑solving mindset
- Ability to work under pressure and handle production incidents
- Good communication and stakeholder management skills
- Ability to work independently and collaboratively
- Ownership & accountability
- Problem‑solving & troubleshooting
- Adaptability in dynamic environments
- Continuous…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).