About The Position
Chevron invites applications for the role of Digital Identity Engineer within our Identity Product Teams in India. The team is responsible for packaging the identity technology solutions into a cohesive offering for applications and managing the migration to on and off premise cloud. The team is also responsible for integrating the multiple Cloud strategies and initiatives at Chevron, deploying the mandated security expectations to the application teams, and influencing the Cloud migration planning to leverage the key technologies.
Key Responsibilities
- Maintains Azure Active Directory (Azure AD) operations, encompassing user and group administration, directory synchronization, and identity protection mechanisms
- front-end portal web development initiatives
- Architect and develop APIs to facilitate seamless service-to-service interoperation and automation
- Architect and enforce role-based access control (RBAC / ABAC) and conditional access policies to guarantee secure and compliant resource access
- Engineer and deploy multi-factor authentication (MFA) and single sign-on (SSO) solutions to bolster security and enhance user experience
- Configure and manage advanced security protocols such as OAuth, SAML, and OpenID Connect to ensure robust authentication and authorization
- Develop and maintain sophisticated automation scripts using PowerShell or other scripting languages to optimize IAM processes and minimize manual intervention
- Ensure adherence to regulatory requirements and internal policies pertaining to identity and access management
- Serve as the engineering point of contact for operational team escalations, resolving IAM-related incidents and issues through comprehensive troubleshooting and root cause analysis
- Demonstrate a profound understanding and capability in implementing Public Key Infrastructure (PKI) and encryption solutions
Required Qualifications
Must have bachelor's degree in computer science engineering or related field0-5 years experienceOver all 5 years' experience with minimum 3 years with identity and access management or a related fieldMust have Microsoft AZ-900 CertificationMicrosoft SC-300 Certification & SC-900 CertificationProficient in interpreting requirements and delivering solutions that adhere to target architecture frameworksExtensive knowledge and hands-on experience with identity resiliency and cybersecurity measures, including Entra ID Protection and DefenderSkilled in utilizing Ansible for pipeline automationAdvanced proficiency in Azure Active Directory and Entra IDIn-depth understanding and practical experience with Privileged Access Management (PAM) solutionsCompetent in scripting languages such as Python and PowerShellThorough understanding of Zero Trust principles and identity protection strategiesExperienced in implementing hybrid identity solutions and integrating on-premises with cloud-based systemsCapable of developing automated processes for user access provisioning and de-provisioningWell-versed in security standards and regulatory requirements pertinent to identity and access managementExceptional analytical and problem-solving abilities to diagnose and resolve identity and access-related issuesChevron ENGINE supports global operations, supporting business requirements across the world. Accordingly, the work hours for employees will be aligned to support business requirements. The standard work week will be Monday to Friday. Working hours are 8 : 00am to 5 : 00pm or 1.30pm to 10.30pm.
Skills Required
Oauth, Powershell, Single Sign-On, Saml, Identity And Access Management, public key infrastructure , Azure Active Directory, Privileged Access Management, Ansible, Python