ABOUT THE ROLE:
You will be joining our Hospital/Healthcare System's dynamic cybersecurity team as the Sr. Identity Management Engineer. In this role you'll take ownership over the Information Security Team's portfolio
of Identity Products. You'll lead application integration and implementation of all access control systems, as well as manage data analytics, report generation, take part in incident investigations and
remediations, server administration. You'll also play a strategic role in architecture and planning activities for new technologies and policy deployments as they related to Identity and Access Control
and management.
WHAT YOU'LL BE DOING:
- Design, Implement & Support enterprise SSO solutions (PingFederate, Azure AD, Okta, etc)
- Maintain and enhance Access Management Platforms and Federation Infrastructure
- Lead Application Integrations into existing SSO Frameworks using SAML, OAuth2 and OIDC.
- Implement and support Role-Based Access Control (RBAC) and modern Authentication methods
- Support and improve authentication strategies across the whole organization
- Collaborate with Information Security , Application Owners, Infrastructure teams, etc to deliver security identity solutions
Troubleshoot complex authentication and federation issues
Participate in IAM roadmapping and architecture decisions
Mentor and guide IAM Engineers
Support Governance related to Authentication, Authorization and Access Control.
Occasionally you'll need to be on-site
ABOUT YOU / THE REQUIRED STUFF:
5+ years of Identity Access Management (IAM) experience
Strong focus on SSO and Federation
Deep Technical Knowledge in the following:
PingFederate, Azure AD, OKTA, ADFS
Federation Protocols (SAML, OIDC, OAuth2 LDAP, Active Directory, SCIM
Solid Scripting and development with PowerShell, Python and Java
Exp with REST APIs for IAM services
Familiar with Postman or similar
Familiar with OGNL Expression language for customizing PingFederate Policies
Front-end UX design and customization skills using HTML, CSS and Javascript
Basic Linux Admin skills for managing IAM infrastructure
Working knowledge of Certificates And PKI (x.509, certificate chains, signing, encryption, keystore management)
Strong troubleshooting across apps, identity and network layers