The IAM Senior Engineer will be responsible for the service design, build, and documentation of all key elements of Customer Identity and Access Management (CIAM) and Certificate Lifecycle Management supporting infrastructure and services. This role is a critical part of the overall authentication and authorization infrastructure.
The IAM Senior Engineer ensures uniformity of services, adherence to standards, and consistency of infrastructure delivery. They will work with external partners to deliver high-quality services to both internal and external customers. This role also covers daily support, maintenance, design, and implementation of CIAM infrastructure, including Directory Services, Access Policies, User Management, PKI, MFA, and SSO.
Key Responsibilities
- Follow deployment processes, including build and transition of new initiatives, and facilitate phase-gate reviews for key stakeholders.
- Maintain strong knowledge of current and emerging CIAM technologies, open system standards, and management tools.
- Take ownership of IAM infrastructure, project delivery, and security management.
- Provide leadership, mentorship, and technical support for IAM service design, implementation, and operations.
- Ensure effective availability and global consistency of infrastructure across regions and integrations.
- Gather project / application requirements from stakeholders and define support requirements.
- Develop, document, and support scripts to deliver identity synchronization solutions.
- Ensure third-party solutions align with organizational standards.
- Provide status updates and reporting to senior management and staff.
- Evaluate and implement emerging technologies through pilots to meet strategic goals.
- Adhere to established Change and Problem Management processes.
- Participate in a global 24 / 7 support model, including planning and execution of projects, tasks, and initiatives.
Qualifications & Skills
Experience : 6–8 years in CIAM design, implementation, and support of large-scale, global environments (20M+ users and diversified authentication requirements).Identity Platforms : Strong hands-on experience with Azure AD and Okta in B2B / B2C environments.Directory Services : Experience with LDAP and related support tools.Authentication & Access : Expertise in MFA, RBA, SSO, Conditional Access, OAuth, OpenID, SAML, REST, and role-based access.PKI : Experience implementing and supporting Public Key Infrastructure, including Certificate Lifecycle Management and external PKI providers.Security : Knowledge of audit, logging, monitoring policies, fraud prevention, and identity verification algorithms.Development : Strong scripting skills in Java.Methodology : Solid working experience in Agile practices.