Job title : Authentication & Access Management Sr. Engineer / Architect
Location : Fully Remote Eastern or Central time zone
of openings : 1
Start : ASAP
Interview process : 2 interviews
Must Haves :
7-10+ years of experience
IAM Experience
IAM product experience
LDAP & active directory integration experience
1.1 Authentication & Access Management Sr. Engineer / Architect
The identity & Access Management (IAM) team is looking for an Authentication & Access Management Sr. Engineer / Architect to implement the next-generation Identity solution for enterprise users.
General requirements :
1. The person must be able to work in a team and independently.
2. Able to understand the business requirements and convert them into technical artifacts.
3. Able to work based on US Eastern or Central time zone.
4. Remote work is acceptable.
Technical requirements :
1. Overall 10+ years of hands-on working experience in the Identity and Access Management area at the enterprise level.
2. The person must be able to understand and gather business requirements, translate them to technical requirements and design the solution to meet the tactical and strategic approaches.
3. The person must be able to produce architectural patterns and solution design documents.
4. A hands-on technical experience is required to conduct the POC and solution design in a development environment.
5. Must have the ability to lead the discussion with various folks including business, engineering, and operation teams.
6. The person must be an expert in Authentication & Access Management area and related technology.
6.1. Authentication space (7+ years) :
factor authentication (MFA) including password less MFA
ty knowledge of various technology & protocols - FIDO, PKI, Mobile MFA, OTP, FIDO key, Biometric authentication, behavior & risk-based authentication
entation experience with web, device (laptop, , infrastructure, and API authentication use cases.
security knowledge is a plus.
6.2. Access Management space (7+ years) :
ty Federation & Single Sign-On (SSO)
knowledge of implementing SAML, OpenID Connect (OIDC), and OAuth 2.0
ty knowledge about session management
ty gateway (proxy) and similar implementation knowledge
uous access control
ation with cloud and on-premises systems including Azure AD, GCP, Salesforce, etc.
7. Should have REST API and JSON working experience.
8. Must have LDAP and Active Directory integration experience.
9. Should have some development experience in building POC and prototypes.
10. Working knowledge of some of the IAM products is required.
10.1. PingIdentity, Okta, HYPR, Axiad, ForgeRock, SiteMinder, TransmitSecurity, Azure AD, etc.
10.2. Centrify / Delinea, BeyondTrust, CyberARK, etc.
11. Azure and GCP cloud experience are a plus.
12. Zero trust implementation experience is a big plus.
Preferred :
1. The expertise in Privileged Access Management area
a. Privileged Access Management for admin and privileged accounts
b. Just in time and time based access control
c. Access control solution for Linux, Windows servers, Kubernetes / docker, databases, Clouds and other PAM use cases.
2. CISSP certification
3. Development experience in any of the technologies, Java, Powershell, etc.