- Location
- Hyderabad, TS, IN
- Type
- Full-time
- Department
- IT
- Education
- Master
- Closing date
- Today
- Source
- iCIMS
Description
Overview
The Identity and Access Management (IAM) Engineer will be a mid-level technical resource responsible for implementing, integrating, and supporting authentication solutions across on-premises and cloud environments. This role requires strong hands-on experience with SSO, MFA, application integrations, infrastructure components, cloud platforms, and scripting to support secure and reliable authentication services.
The ideal candidate is hands-on, technically strong, and able to troubleshoot complex authentication, integration, and infrastructure issues with limited guidance.
This role is based out of Hyderabad, India and requires coming into the office.
Responsibilities
- Implement and support authentication solutions across SSO, MFA, and identity federation use cases.
- Ensure seamless user authentication experiences across applications and platforms.
- Configure and integrate applications with IAM platforms such as Okta, Auth0, PingFederate, or similar access management tools.
- Support authentication capabilities such as user registration, self-service, authentication, authorization, administration, audit, and reporting.
- Integrate applications using modern protocols such as SAML, OAuth 2.0, OIDC, and header-based authentication.
- Support IAM platform improvements that align with security, infrastructure, and business requirements.
- Identify opportunities for improving the SSO/Okta environment and implement enhancements.
- Work with application, infrastructure, cloud, security, and development teams to gather requirements and implement effective authentication solutions.
- Configure access policies, sign-on policies, MFA rules, and risk-based authentication controls based on business and security requirements.
- Collaborate with stakeholders to define and maintain authentication standards.
- Conduct regular system audits to ensure performance and compliance with security standards.
- Knowledge of regulatory compliance standards and experience with audit support activities.
- Partner with Cybersecurity, API, application, and infrastructure teams to document authentication patterns, integration standards, and troubleshooting steps.
- Stay current with emerging security threats, technologies, and industry trends to continuously improve the security posture.
- Assesses current applications and architecture to ensure current implementations align with industry guidelines, best practices and management approved standards.
- Develop and maintain scripts or automation to simplify IAM operations, reporting, monitoring, and integration support activities.
- Provide advanced production support to diagnose and resolve authentication, SSO, MFA, integration, agent, network, and infrastructure-related issues.
- Participate in incident response and security incident investigations related to IAM systems.
- Develop and deliver applicable documentation, training, and knowledge transfer to both internal and external stakeholders.
- Evaluate and hands on implement automation capabilities to simplify processes and deliver value/cost savings to the business.
- Foster the Agile DevOps culture through the latest toolset to improve customer satisfaction through rapid, continuous delivery.
Qualifications
Minimum Qualifications:
- 6+ years of overall IT experience
- 4+ years of hands-on experience supporting authentication, SSO, MFA, or access management solutions
- 4+ years of hands-on experience with Okta, Auth0, PingFederate, Azure AD/Entra ID, or comparable access management tools
- 3+ years of scripting or automation experience using PowerShell, Python, JavaScript, REST APIs, or similar technologies
- Working knowledge of infrastructure, networking, cloud, and DevOps concepts used to support authentication platforms
- Okta Certified Administrator or equivalent IAM certification preferred
- BS/BA degree or equivalent experience
- Security, cloud, or CIAM certifications are a plus
- Experience with CIC/Auth0 platform is a plus.
Preferred Qualifications:
- Proven track record in implementing IAM solutions in a large, complex environment.
- Strong understanding of federated authentication, SSO, and SAML along with the ability to make recommendations, scope, and execute on opportunities for automation or improvement in identity system architecture.
- Hands-on experience implementing authentication services in enterprise environments.
- Experience supporting IAM or CIAM implementation activities, including requirements review, configuration, testing, and deployment.
- Proven track record of understanding B2B and B2C customer needs and delivering solutions that enhance user experience while maintaining security and compliance standards.
- Thorough understanding of security best practices, privacy regulations (such as GDPR, CCPA), and compliance requirements related to customer data protection.
- Broader IAM domain experience with focus on information security
- Deep technical expertise in solutioning and integrating B2B, B2C applications with CIAM.
- Strong working knowledge of IAM platforms such as Okta, PingFederate, Auth0, Azure AD/Entra ID, or similar tools used to enable SSO for cloud and on-premises applications.
- Hands-on experience building SSO integrations using SAML, OAuth 2.0, OIDC, header-based authentication, and federation patterns.
- Experience in designing Consumer identity and access management solutions
- Strong understanding of the latest security principles like zero trust and passwordless authentication to implement new standards in the authentication model.
- Must have working knowledge of Okta Lifecycle Management and Administrative APIs
- Experience with solutions like CyberArk, Beyond Trust, RSA or comparable products.
- Excellent understanding of REST integration concepts
- Experience in directory services like Oracle LDAP, and AD
- Experience supporting authentication services in cloud environments such as AWS, Azure, or hybrid infrastructure.
- Hands-on scripting or development experience using JavaScript, Python, PowerShell, Java, Node.js, REST APIs, or similar technologies.
- Hands on experience with JavaScript, Python, Ruby, PowerShell, or other scripting languages preferred.
- Exposure to CI/CD pipelines and deployment automation in Azure or AWS.
- Experience with automation tools such as Ansible, Terraform, or similar infrastructure-as-code tools is preferred.
- Experience in Monitoring tools like Splunk, ELK, Prometheus, or similar tools
- Experience with container technologies Docker, Kubernetes
- Experience with Linux and Windows platforms, middleware, web servers, load balancers, agents, certificates, and network troubleshooting.
- Experience developing workflows, custom connectors, and troubleshooting complex issues.
- Experience with Agile and DevOps tools and methodologies
- Minimum Okta Certified Administrator: Okta Certified Consultant and/or Okta Certified Developer preferred.
- CISSP / CIAM Certification is a plus.
- Experience in Auth0 and SiteMinder is preferred.
Non-Technical skills:
- Exceptional communication and interpersonal skills with the ability to influence and collaborate with diverse stakeholders.
- Deliver outcomes with a little supervision, must be a self-starter and self-motivator.
- Strong analytical, problem-solving, and decision-making skills, with the ability to manage complex and competing priorities.
- Strong project management and organizational skills, with the ability to deliver high-quality results.
- Ability to think strategically and suggest creative solutions.
- Ability to synthesize complex requirements into simple business practices.
- Flexible and able to adapt to changing priorities.