Nagpur, Maharashtra
Job Summary
The ISAM Engineer will be responsible for engineering-focused activities under fixed capacity scope, primarily involving: • Application onboarding into ISAM-based SSO/MFA platforms • Design and implementation of authentication solutions • Policy configuration and identity integrations This role is NOT operational/BAU, and focuses only on non-standard, project-based engineering work.
Key Responsibilities
✅ 1. Application Onboarding (Primary Responsibility) • Design, develop, test, and implement onboarding of: o B2E (Employee applications) o B2B / B2C / B2B2C applications • Integrate applications into ISAM SSO/MFA platforms • Configure federations using: o SAML 2.0 o OpenID Connect (OIDC) • Perform end-to-end onboarding lifecycle including design, build, testing, and go-live ________________________________________ ✅ 2. ISAM / SSO Solution Engineering • Engineer and configure ISAM SSO authentication solutions • Support: o Federation setup with multiple Identity Providers and service providers o Integration with enterprise and external applications • Develop secure authentication flows for applications • Ensure compatibility with enterprise identity architecture ________________________________________ ✅ 3. MFA Engineering & Authentication Design • Design and implement multi-factor authentication (MFA) solutions using ISAM: o OTP-based authentication o Token-based authentication o Certificate-based authentication o Adaptive/Risk-based authentication and device registration • Implement authentication across: o Web applications o VPN / remote access o Internal and external access channels ________________________________________ ✅ 4. Authentication Policy Engineering • Create and configure: o MFA policies o Conditional access policies • Enhance authentication security posture by: o Aligning policies to enterprise standards o Enforcing access controls for applications • Implement policy updates as part of onboarding or new integrations ________________________________________ ✅ 5. Azure AD / Identity Platform Integration (ISAM Context Only) • Perform engineering work related to: o Application onboarding into Azure AD (as part of SSO ecosystem) o MFA enforcement policies o Conditional access configuration • Configure AAD integrations with ISAM-based authentication flows ________________________________________ ✅ 6. Identity Platform Capacity & Enhancement Work • Support capacity-related engineering activities: o Identity platform scaling o Authentication system capacity improvements • Perform design-level enhancements as part of onboarding or transformation initiatives ________________________________________ ✅ 7. Testing & Implementation • Conduct: o Integration testing o Functional/authentication testing o Validation of dependent use cases • Ensure all onboarding implementations meet: o Security requirements o Authentication and Authorization standards before release ________________________________________ Explicit Activities Covered Under Fixed Capacity The role must include the following activities: • Application onboarding to SSO/MFA identity platform • Designing and implementing authentication integrations • MFA policy creation • Conditional access policy configuration • Support for Azure AD onboarding and identity integration • Identity platform engineering improvements ________________________________________ What is NOT Part of This Role (Strict Exclusion) This JD explicitly excludes: • Ticket handling / ServiceNow operations • User provisioning/deprovisioning • Incident management (routine) • Audit reporting (BAU) • Day-to-day L1/L2 operational support
Skill Requirements
Technical Skills: • IBM Security Access Manager (ISAM) – Mandatory • SSO technologies: SAML, OAuth, OpenID Connect • MFA implementations and authentication frameworks • Identity federation and IdP integration • Azure AD / Entra ID (integration level) • Understanding of authentication flows and security architecture Engineering Skills: • Application onboarding design and execution • Identity solution architecture exposure • Troubleshooting complex integration issues (L3-level engineering) • Ability to design secure authentication workflows
Other Requirements
NA
#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-