We are seeking a Senior IAM Expert to architect, implement, and maintain enterprise authentication and authorization platforms across both commercial and FedRAMP environments. This role will be responsible for ensuring secure, compliant, and scalable identity solutions, driving parity and seamless transitions between environments while collaborating closely with engineering, security, and operations teams.
Responsibilities :
- Architect, configure, and manage PingFederate and Okta-based authentication and authorization (AuthN / AuthZ) solutions for commercial and FedRAMP environments.
- Lead the migration of AuthN / AuthZ flows from ID-Core and Okta to PingFederate, including PAT and SSA integrations.
- Manage multi-realm IDP configurations (e.g., INT vs. Prod), claims mapping, and secure credential storage in vaults.
- Ensure alignment with compliance requirements including FedRAMP controls (FIPS encryption, audit logging) and SOC2 standards.
- Collaborate with automation and SRE teams to integrate identity services within CI / CD pipelines and enable automated smoke tests.
- Develop comprehensive test suites covering authentication, authorization, MFA, and token lifecycle scenarios.
- Produce detailed runbooks, architecture diagrams, and onboarding documentation for developers and operations teams.
Requirements :
Minimum 5 years of experience in identity management, IAM engineering, or security engineering roles.Deep hands-on expertise with PingFederate, Okta, or equivalent enterprise IDP platforms.Strong understanding of OAuth2, OIDC, SAML, and other token-based authentication protocols.Experience working with compliance frameworks such as FedRAMP, SOC2, or PCI-DSS.Proficiency in scripting languages such as Python or Bash for automation and integration testing.Excellent communication, documentation, and stakeholder management skills.Skills Required
Oauth2, fedramp , SOC2