Identity Provider Engineer
Core
Design and implement identity-based access control policies aligned with Zero Trust principles, leading deployment of PingFederate and PingAccess for seamless SSO and attribute-based access control.
Role type
Senior IC Identity Provider Engineer
Builds
Production identity and access management systems (PingFederate, PingAccess) for enterprise/government environments
Domain
Cybersecurity / Identity and Access Management (ICAM)
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
PingFederate, PingAccess, OIDC, SAML, OAuth, Active Directory, LDAP, Azure AD, Zero Trust Architecture, MFA, risk-based authentication, directory integration, security monitoring integration
Preferred skills
CompTIA Security+ or IAT Level II certification
Technologies
PingFederate, PingAccess, Active Directory, Azure AD, LDAP, OAuth, SAML, OIDC
Responsibilities
Design and implement identity-based access control policies aligned with Zero Trust principles; Lead deployment, configuration, and tuning of PingFederate and PingAccess; Manage the full ICAM lifecycle including automated provisioning and complex directory integrations; Partner with SOC and network teams to incorporate identity signals into security monitoring; Serve as subject matter expert for integrating PingFederate with third-party Zero Trust ecosystem tools; Create and maintain authentication policies including MFA and risk-based authentication; Troubleshoot complex authentication handshakes and maintain a security-first approach