Ping Directory SME
Rolling Meadows, Cook County, Illinois, 60008, USA
Listed on 2026-05-18
-
IT/Tech
Cybersecurity, Systems Engineer
Job Title
Senior Engineer – CIAM Directory (Ping Directory SME)
DivisionGlobal Cyber & Information Security (GCIS) – Customer Identity and Access Management (CIAM)
Position SummaryThe Senior Engineer serves as the subject matter expert for the directory services layer of Gallagher’s global Customer Identity and Access Management (CIAM) platform. This role is responsible for the architecture, engineering, and operational stability of Ping Directory and related directory components that support customer-facing authentication, authorization, and identity lifecycle services. The role partners closely with CIAM architecture, API development, Ping Federate, Ping Access, Dev Ops, QA, and integration teams to deliver a secure, scalable, and highly available directory platform.
This position also provides advanced operational support and technical leadership for complex incidents, integrations, and platform enhancements across global environments.
Please note additional position details below:
- This is a Temp-To-Hire, W-2 position. We are not able to do 1099 or C2C.
- It is a fully remote role that will need to be based in the U.S.
- You must meet our U.S. Eligibility requirements for work Authorization.
- Act as the primary subject matter expert for Ping Directory and Ping Data Proxy within the CIAM service.
- Design, implement, and maintain highly available, scalable directory architectures across multiple regions and environments.
- Own directory schema design, indexing strategies, access control instructions (ACIs), and performance tuning.
- Ensure directory configurations support CIAM non-functional requirements including availability, resiliency, performance, and security.
- Partner with Ping Federate, Ping Access, API, and integration teams to support authentication, authorization, JIT provisioning, and profile management use cases.
- Provide technical guidance to application teams on directory integration patterns and identity data modeling.
- Support migrations, modernization efforts, and M&A integrations involving directory services.
- Provide L3/L4 operational support for Ping Directory and related components, including participation in major incident response.
- Troubleshoot complex directory issues involving replication, synchronization, access controls, and data integrity.
- Develop and maintain operational runbooks, monitoring standards, backup and recovery procedures, and disaster recovery documentation.
- Ensure directory implementations align with security, privacy, and regulatory requirements.
- Operate within established SDLC and ITSM processes, including change management and access governance.
- Collaborate with security architecture and governance teams to review and defend directory design decisions.
- Mentor CIAM engineers and operations staff on directory best practices and troubleshooting techniques.
- Contribute to CIAM roadmap planning by identifying risks, technical debt, and opportunities for optimization and automation.
Required Qualifications
- 5–10 years of experience designing and supporting enterprise directory services.
- Deep hands‑on expertise with Ping Directory, including schema management, replication, ACIs, and performance tuning.
- Strong knowledge of LDAP-based directory services and identity data lifecycle management.
- Experience integrating directory platforms with Ping Federate, Ping Access, and API-driven CIAM solutions.
- Strong understanding of Active Directory and Azure Active Directory integration and synchronization concepts.
- Experience with data synchronization tools and scripting languages such as Power Shell, Python, or Bash.
- Proven ability to troubleshoot complex production issues in high-availability environments.
- Strong written and verbal communication skills, with the ability to explain complex technical concepts to diverse stakeholders.
- Experience supporting large-scale, customer-facing CIAM platforms.
- Familiarity with Ping Data Proxy, certificate management, PKI, and TLS.
- Experience operating global 24x7 production platforms…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).