Department: Identity & Access Management (IAM)
Mode Of Work: (Hybrid –3 days/week in office)
Experience Level : L2 (2–6 Years)
- • Administer and support the OneLogin IAM platform, including user provisioning/de-provisioning, application onboarding, and access assignments.
- • Configure and manage Single Sign-On (SSO) integrations (SAML, OIDC) between OneLogin and business applications.
- • Set up and maintain Multi-Factor Authentication (MFA) policies, adaptive authentication rules, and login policies within OneLogin.
- • Manage user lifecycle workflows through OneLogin, including integration with HR systems and directory sync (Active Directory / Azure AD).
- • Act as L2 escalation point for access-related incidents and service requests raised by the L1 support team, ensuring timely resolution within SLA.
- • Troubleshoot authentication failures, SSO errors, provisioning issues, and connector/agent problems across integrated applications.
- • Configure and manage OneLogin connectors, directories, roles, groups, and smart rules for automated access assignment.
- • Support access certification and periodic access review cycles, ensuring accuracy of role and entitlement data.
- • Monitor OneLogin platform health, audit logs, and security alerts; investigate anomalies and escalate as needed.
- • Document standard operating procedures (SOPs), runbooks, and knowledge base articles for common IAM issues.
- • Collaborate with application, infrastructure, and security teams for new application onboarding and access governance requirements.
- • Participate in on-call/rotational support as required to ensure platform availability.
- • 2–6 years of hands-on experience administering and supporting OneLogin (or similar IAM/IDaaS platforms).
- • Strong understanding of SSO protocols such as SAML 2.0 and OIDC, and experience troubleshooting SSO integration issues.
- • Experience configuring MFA, adaptive authentication, and conditional access policies.
- • Working knowledge of user lifecycle management (JML – Joiner, Mover, Leaver) processes and directory synchronization (AD/Azure AD/LDAP).
- • Familiarity with access provisioning/de-provisioning workflows and role-based access control (RBAC) concepts.
- • Ability to analyze logs and diagnose authentication, provisioning, and connector-related issues.
- • Good understanding of ITSM processes (incident, request, and change management) and ticketing tools (ServiceNow, JIRA, or similar).
- • Strong communication skills to interact with L1 teams, application owners, and end users.
- • Experience supporting other IAM/IGA tools (Okta, Azure AD, SailPoint, CyberArk) in addition to OneLogin.
- • Exposure to scripting (PowerShell/Python) for automating routine IAM tasks or reporting.
- • Understanding of compliance and audit requirements related to identity and access (SOX, ISO 27001, SOC 2).
- • Certifications related to Identity and Access Management or OneLogin platform training.
- • Bachelor's degree in Computer Science, Information Technology, or a related field.