Overview:
The Identity and Access Management (IAM) Engineer will be a mid-level technical resource responsible for implementing, integrating, and supporting authentication solutions across on-premises and cloud environments. This role requires strong hands-on experience with SSO, MFA, application integrations, infrastructure components, cloud platforms, and scripting to support secure and reliable authentication services.
The ideal candidate is hands-on, technically strong, and able to troubleshoot complex authentication, integration, and infrastructure issues with limited guidance.
This role is based out of Hyderabad, India and requires coming into the office.
Responsibilities:
-
Implement and support authentication solutions across SSO, MFA, and identity federation use cases.
-
Ensure seamless user authentication experiences across applications and platforms.
-
Configure and integrate applications with IAM platforms such as Okta, Auth0, PingFederate, or similar access management tools.
-
Support authentication capabilities such as user registration, self-service, authentication, authorization, administration, audit, and reporting.
-
Integrate applications using modern protocols such as SAML, OAuth 2.0, OIDC, and header-based authentication.
-
Support IAM platform improvements that align with security, infrastructure, and business requirements.
-
Identify opportunities for improving the SSO/Okta environment and implement enhancements.
-
Work with application, infrastructure, cloud, security, and development teams to gather requirements and implement effective authentication solutions.
-
Configure access policies, sign-on policies, MFA rules, and risk-based authentication controls based on business and security requirements.
-
Collaborate with stakeholders to define and maintain authentication standards.
-
Conduct regular system audits to ensure performance and compliance with security standards.
-
Knowledge of regulatory compliance standards and experience with audit support activities.
-
Partner with Cybersecurity, API, application, and infrastructure teams to document authentication patterns, integration standards, and troubleshooting steps.
-
Stay current with emerging security threats, technologies, and industry trends to continuously improve the security posture.
-
Assesses current applications and architecture to ensure current implementations align with industry guidelines, best practices and management approved standards.
-
Develop and maintain scripts or automation to simplify IAM operations, reporting, monitoring, and integration support activities.
-
Provide advanced production support to diagnose and resolve authentication, SSO, MFA, integration, agent, network, and infrastructure-related issues.
-
Participate in incident response and security incident investigations related to IAM systems.
-
Develop and deliver applicable documentation, training, and knowledge transfer to both internal and external stakeholders.
-
Evaluate and hands on implement automation capabilities to simplify processes and deliver value/cost savings to the business.
-
Foster the Agile DevOps culture through the latest toolset to improve customer satisfaction through rapid, continuous delivery.
Qualifications:
Minimum Qualifications:
-
6+ years of overall IT experience
-
4+ years of hands-on experience supporting authentication, SSO, MFA, or access management solutions
-
4+ years of hands-on experience with Okta, Auth0, PingFederate, Azure AD/Entra ID, or comparable access management tools
-
3+ years of scripting or automation experience using PowerShell, Python, JavaScript, REST APIs, or similar technologies
-
Working knowledge of infrastructure, networking, cloud, and DevOps concepts used to support authentication platforms
-
Okta Certified Administrator or equivalent IAM certification preferred
-
BS/BA degree or equivalent experience
-
Security, cloud, or CIAM certifications are a plus
-
Experience with CIC/Auth0 platform is a plus.
Preferred Qualifications:
-
Proven track record in implementing IAM solutions in a large, complex environment.
-
Strong understanding of federated authentication, SSO, and SAML along with the ability to make recommendations, scope, and execute on opportunities for automation or improvement in identity system architecture.
-
Hands-on experience implementing authentication services in enterprise environments.
-
Experience supporting IAM or CIAM implementation activities, including requirements review, configuration, testing, and deployment.
-
Proven track record of understanding B2B and B2C customer needs and delivering solutions that enhance user experience while maintaining security and compliance standards.
-
Thorough understanding of security best practices, privacy regulations (such as GDPR, CCPA), and compliance requirements related to customer data protection.
-
Broader IAM domain experience with focus on information security
-
Deep technical expertise in solutioning and integrating B2B, B2C applications with CIAM.
-
Strong working knowledge of IAM platforms such as Okta, PingFederate, Auth0, Azure AD/Entra ID, or similar tools used to enable SSO for cloud and on-premises applications.
-
Hands-on experience building SSO integrations using SAML, OAuth 2.0, OIDC, header-based authentication, and federation patterns.
-
Experience in designing Consumer identity and access management solutions
-
Strong understanding of the latest security principles like zero trust and passwordless authentication to implement new standards in the authentication model.
-
Must have working knowledge of Okta Lifecycle Management and Administrative APIs
-
Experience with solutions like CyberArk, Beyond Trust, RSA or comparable products.
-
Excellent understanding of REST integration concepts
-
Experience in directory services like Oracle LDAP, and AD
-
Experience supporting authentication services in cloud environments such as AWS, Azure, or hybrid infrastructure.
-
Hands-on scripting or development experience using JavaScript, Python, PowerShell, Java, Node.js, REST APIs, or similar technologies.
-
Hands on experience with JavaScript, Python, Ruby, PowerShell, or other scripting languages preferred.
-
Exposure to CI/CD pipelines and deployment automation in Azure or AWS.
-
Experience with automation tools such as Ansible, Terraform, or similar infrastructure-as-code tools is preferred.
-
Experience in Monitoring tools like Splunk, ELK, Prometheus, or similar tools
-
Experience with container technologies Docker, Kubernetes
-
Experience with Linux and Windows platforms, middleware, web servers, load balancers, agents, certificates, and network troubleshooting.
-
Experience developing workflows, custom connectors, and troubleshooting complex issues.
- Experience with Agile and DevOps tools and methodologies
-
Minimum Okta Certified Administrator: Okta Certified Consultant and/or Okta Certified Developer preferred.
-
CISSP / CIAM Certification is a plus.
-
Experience in Auth0 and SiteMinder is preferred.
Non-Technical skills:
-
Exceptional communication and interpersonal skills with the ability to influence and collaborate with diverse stakeholders.
-
Deliver outcomes with a little supervision, must be a self-starter and self-motivator.
-
Strong analytical, problem-solving, and decision-making skills, with the ability to manage complex and competing priorities.
-
Strong project management and organizational skills, with the ability to deliver high-quality results.
-
Ability to think strategically and suggest creative solutions.
-
Ability to synthesize complex requirements into simple business practices.
-
Flexible and able to adapt to changing priorities.