Role: IAM Engineer (Okta / ForgeRock / Ping Identity)
Work Mode: Remote (Hybrid preferred for CA candidates)
Client: Gainwell
Work Location & Model
Hybrid: Candidates located in the Sacramento / Roseville, CA area must work onsite 2 3 days per week
Remote: Candidates outside commutable distance within CA or based elsewhere in the US may work 100% remotely
Role Overview
We are seeking an experienced IAM Engineer with strong expertise in Okta, ForgeRock, and Ping Identity. The ideal candidate will design, implement, and support enterprise-grade Identity and Access Management (IAM) solutions across cloud and hybrid environments, ensuring secure authentication, authorization, and compliance.
Key Responsibilities & Technical Skills
Core IAM Expertise
Hands-on experience with:
Okta: SSO, MFA, Lifecycle Management, Workflows
ForgeRock: OpenAM, OpenIDM, OpenDJ, OpenIG
Ping Identity: PingFederate, PingAccess, PingDirectory
Strong understanding of authentication and authorization protocols:
OAuth 2.0, SAML 2.0, OpenID Connect, Kerberos
Development & Integration
Programming and scripting experience with Java, Python, JavaScript, Groovy, and PowerShell
Proven experience integrating IAM platforms with:
AWS cloud environments
On-prem systems and SaaS applications
Strong knowledge of RESTful APIs and identity federation concepts
Security & Compliance
Solid understanding of SSL/TLS, PKI, and encryption standards
Familiarity with compliance frameworks such as GDPR, HIPAA, and SOC 2
Cloud & DevOps
Experience managing identities in hybrid and cloud-based IAM architectures
Working knowledge of DevOps and automation tools:
Jenkins, Docker, Kubernetes, Terraform
Soft Skills
Strong analytical and troubleshooting capabilities
Ability to collaborate across cross-functional teams
Clear communication skills with both technical and non-technical stakeholders
Preferred Certifications
Okta Certified Professional
ForgeRock Identity Management Specialist
Ping Identity Certified Professional
Additional Expectations
Flexibility to work extended or adjusted hours based on business needs
Willingness to travel as required
Video camera usage is mandatory during all interviews and throughout the first week of orientation