Responsibility
- Architect and manage PingFederate and Okta-based AuthN/AuthZ solutions for both commercial and FedRAMP accounts.
- Lead the migration of AuthN/AuthZ flows from ID-Core and Okta to PingFederate, including PAT and SSA integrations.
- Configure and maintain multi-realm IDP instances (e.g., INT vs. Prod), manage claim mappings, and secure secrets in vaults.
- Ensure compliance with FedRAMP controls (FIPS encryption, audit logging) and SOC2 requirements.
- Collaborate with automation and SRE teams to integrate identity flows into CI/CD pipelines and smoke-tests.
- Develop end-to-end test suites for authentication, authorization, MFA, and token lifecycle scenarios.
- Create and maintain detailed runbooks, architecture diagrams, and developer onboarding guides.
- Requirements
- 5+ years in identity management, IAM engineering, or security engineering roles.
- Deep expertise with PingFederate, Okta, or equivalent enterprise IDP platforms.
- Strong understanding of OAuth2/OIDC protocols, SAML, and token-based authentication.
- Experience with compliance frameworks (FedRAMP, SOC2, PCI-DSS).
- Proficiency in scripting (Python, Bash) for automation and integration tests.
- Excellent communication, design-documentation, and stakeholder-management skills.
- Benefits
- Make a real impact on the companys success by shaping a positive and engaging work culture.
- Work with a talented and cooperative team.
- Be part of a company that is passionate about making a difference through technology.
- Preferred
- Familiarity with AWS Cognito, Azure AD B2C, or similar cloud identity services.
- Prior experience with serverless identity integrations and Lambda-based extensions.
- Knowledge of directory services and federation protocols.
- Hands-on experience with disaster-recovery planning for identity systems.
- Education
- B.E./B.Tech or M.E./M.Tech in Computer Science, Software Engineering, or a related field.
📌 Senior IAM Expert (Pune)
🏢 CCTech
📍 Pune