Sorry, this listing is no longer accepting applications. Don’t worry, we have more awesome opportunities and internships for you.

Senior IAM Engineer

The Maven Group, LLC

Senior IAM Engineer

New York, NY
Full Time
Paid
  • Responsibilities

    NOTE: THIS ROLE IS ONLY OPEN TO CANDIDATES LIVING IN NY, NJ, PA, OR CT

    NO C2C OR THIRD PARTY CANDIDATE WILL BE REVIEWED AND IMMEDIATELY REJECTED

    Our well established, New York City healthcare client is expanding its IT team and is looking for a talented Senior Identity Services Engineer.

    This is a direct-hire role with our client and includes a very competitive compensation package along with a benefit program that focuses on the employee well-being. Voted as one of the Best Places to work in IT, these is where you want to be.

    The Identity Services Engineer will join a team of committed engineers handling our client's portfolio of access management and federation products. You will be asked to design, implement and support Single Sign-On (SSO) solutions for our client's enterprise. Past experience with the Ping Identity platform is a hugeneed. Product experience with PingFederate, PingOne, PingID and PingDirectory will put you ahead of other candidates.

    To be considered you should have as many of the following as possible..

    • 5+ years of Identity & Access Management experience with a strong focus on SSO and federation
    • Deep technical knowledge of:
      • PingFederate, Azure AD, Okta, ADFS
      • Federation protocols including SAML, OIDC, and OAuth2
      • LDAP, Active Directory, SCIM
    • Proficiency in scripting and development with PowerShell, Python, and Java
    • Experience working with REST APIs for IAM services; familiarity with Postman or similar tools
    • Familiarity with OGNL expression language for customizing PingFederate policies
    • Front-end UX design and customization using HTML, CSS, and JavaScript
    • Basic Linux administration skills for maintaining and managing IAM infrastructure
    • Working knowledge of certificates and PKI (X.509, certificate chains, signing, encryption, keystore management)
    • Understanding of modern identity concepts such as Zero Trust, adaptive authentication (risk-based, device/user signals), and conditional access

    To get a special look you will have...

    • Hands-on experience with the Ping Identity platform, particularly: PingFederate, PingOne, PingID, PingDirectory
    • Experience with MFA and Passwordless/FIDO2/WebAuthn authentication strategies
    • Experience building and configuring enterprise SSO applications in Azure AD / Entra ID
    • Exposure to IAM orchestration platforms such as PingOne DaVinci or similar tools
    • Experience supporting cloud identity integrations (Azure, AWS, GCP)
    • Familiarity with enterprise SSO in hybrid environments (on-prem and cloud-based apps)
    • Ability to lead projects and mentor junior engineers