Hiring.Camp

Senior IAM Engineer

Ameriprise Financial

·

Today

Location
11073 Ameriprise India - Noida - Embassy Oxygen Business Park
Workplace
Hybrid
Type
Full-time
Department
Engineering
Seniority
Senior
Experience
4+ years
Education
Master
Closing date
Today
Source
Workday

Description

About Our Company

Ameriprise India LLP has been providing client based financial solutions to help clients plan and achieve their financial objectives for 20 years. We are part of Ameriprise Financial Inc., a US financial planning company headquartered in Minneapolis with a global presence and diversified financial services leader with more than $1.5 trillion in assets under management, administration and advisement as of year-end 2024. The firm’s focus areas include Asset Management and Advice, Retirement Planning and Insurance Protection.

Be part of an inclusive, collaborative culture that rewards you for your contributions, and work with other talented individuals who share your passion for doing great work. You’ll also have plenty of opportunities to make your mark at the office and a difference in your community. So, if you're talented, driven and want to work for a strong, ethical company that cares, take the next step and create a career at Ameriprise India LLP.

Job Description

We are seeking a highly motivated Sr. Identity & Access Management Engineer to join the Workforce Identity (ACIAM) team. This role is responsible for designing, implementing, automating, and supporting enterprise identity platforms with a strong focus on Microsoft Entra ID (Azure AD), SSO, Federation, Conditional Access, Identity Governance, MFA, and cloud identity modernization. The candidate will work across engineering, development, automation, and operational support functions while participating in a 24x7 rotational support model.

Identity Engineering & Development

  • Design, develop, implement, and maintain enterprise IAM solutions leveraging Microsoft Entra ID (Azure AD).
  • Lead application onboarding and integration using SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), and SCIM.
  • Build and support authentication, authorization, SSO, MFA, and Conditional Access solutions.
  • Support Entra ID migration and modernization initiatives across workforce and application identities.
  • Develop automation solutions using PowerShell, Graph API, REST API, Python, or similar technologies.
  • Implement Infrastructure as Code (IaC) and DevOps practices for identity platforms.
  • Collaborate with application teams and architects to design secure authentication patterns and identity integrations.

Platform Administration & Support

  • Administer and support Microsoft Entra ID, Active Directory, ADFS, Azure MFA, and related IAM platforms.
  • Perform platform upgrades, health checks, maintenance, monitoring, and performance optimization.
  • Lead troubleshooting and root cause analysis (RCA) for production incidents and complex identity issues.
  • Participate in incident, problem, change, and release management activities.
  • Support disaster recovery testing and platform resiliency initiatives.
  • Monitor platform health using enterprise monitoring and observability tools.

Governance, Security & Compliance

  • Implement identity security best practices aligned with Zero Trust principles.
  • Manage Conditional Access policies, access reviews, privileged access controls, and identity governance processes.
  • Maintain audit-ready documentation, operational runbooks, and standard operating procedures.
  • Ensure compliance with security, risk, and regulatory requirements.

Operational Excellence

  • Participate in a 24x7 rotational support model, including off-hours and weekend coverage when required.
  • Meet SLA and operational targets for critical IAM services.
  • Identify opportunities to automate manual operational activities and improve service reliability.
  • Provide technical leadership and mentoring to junior engineers.

Required Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Engineering, or related field.
  • 4+ years of experience in Identity & Access Management.
  • Strong hands-on experience with: Microsoft Entra ID (Azure AD) Active Directory Azure MFA Conditional Access Federation Services (SAML, OAuth2, OIDC) Identity Lifecycle Management Application SSO Integration
  • Experience troubleshooting authentication and authorization issues across enterprise environments.
  • Strong scripting and automation experience using PowerShell, Python, REST APIs, or Microsoft Graph API.
  • Experience working in production support and engineering environments.
  • Understanding of Zero Trust Architecture and Identity Security concepts.
  • Strong analytical, problem-solving, and communication skills.
  • Willingness to participate in rotational shifts supporting a global environment.

Preferred Qualifications

  • Experience with Entra ID Governance, Access Reviews, Entitlement Management, and PIM.
  • Experience with CI/CD and DevOps tools such as Azure DevOps, GitHub, Jenkins, Bitbucket, Ansible, Jira, and Confluence.
  • Experience with monitoring tools such as Dynatrace, Sumo Logic, ScienceLogic, Splunk, or Azure Monitor.
  • Exposure to cloud platforms including Microsoft Azure and AWS.
  • Experience with container technologies such as Kubernetes and Docker.
  • Knowledge of web/application servers including IIS, Apache, and Tomcat.
  • Experience implementing identity automation and self-service solutions.

In-Office Collaboration

We are a client-centric, relationship-based business. Working together, in-person, is foundational to how we achieve results. By fostering a culture of face-to-face collaboration, idea sharing, productivity and personal connection, we deliver for our stakeholders — clients, advisors, employees and shareholders. Our employees work in the office at least three (3) days per week, with flexibility to work from home two (2) days per week. Some roles may require additional in-office time or different in-office expectations, and specific requirements will be discussed during the hiring process.

Full-Time/Part-Time

Full time

Timings

(4:45p-1:15a)

India Business Unit

AWMPO AWMP&S President's Office

Job Family Group

Technology

Ameriprise India LLP is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, genetic information, age, sexual orientation, gender identity, disability, military status, veteran status, marital status, pregnancy, family status or any other basis prohibited by law.

We are committed to fostering an inclusive and accessible recruitment process for individuals with disabilities. If you require a reasonable accommodation to participate in the application or interview process, speak to your recruiter to discuss how we can support you.

Skills

PythonAWSAzureDockerKubernetesAnsibleJenkinsCI/CDGitHubJiraConfluenceSplunkRESTOAuthDevOpsCompliance
Senior IAM Engineer at Ameriprise Financial | Hiring.Camp