Scope of Work: Senior Security Analyst CIAM
ServicePoint is supporting a client seeking a Senior Security Analyst Customer Identity & Access Management (CIAM) for a 3-month contract-to-hire opportunity. This role is 100% onsite in Arlington, TX, working standard business hours, Monday through Friday.
This is a senior-level cybersecurity position responsible for securing, administering, and enhancing customer-facing identity, authentication, and access management platforms. The individual will serve as a subject matter expert (SME) for CIAM technologies supporting external users, applications, and digital services, while also contributing to broader security functions such as vulnerability management, network security, email security, and Privileged Access Management (PAM).
The ideal candidate will bring deep technical expertise in enterprise identity systems, demonstrate strong ownership, and have the ability to independently lead complex security initiatives and investigations. This role partners closely with Application Development, IT Operations, Infrastructure, Network, and Risk teams to deliver secure, scalable, and compliant identity solutions. Participation in an on-call rotation is required.
Key Responsibilities Customer Identity & Access Management (Primary Focus)
Design, implement, and manage CIAM solutions supporting external users and digital platforms
Administer and support Ping Identity technologies, including:
Manage authentication services including SSO, federation, OAuth/OIDC integrations
Implement and support enterprise Multi-Factor Authentication (MFA) solutions
Secure the full customer identity lifecycle (registration through de-provisioning)
Investigate and remediate identity-related security incidents, including fraud and anomalous access
Active Directory & Directory Services
Provide security-focused administration of Microsoft Active Directory
Manage authentication mechanisms, group-based access, and privileged accounts
Support account lifecycle management, access reviews, and identity security controls
Partner with infrastructure teams on AD hardening and best practices
Assist in investigations involving credential compromise or misuse
Privileged Access Management (PAM)
Oversee privileged access across identity platforms and administrative roles
Enforce least-privilege and role-based access controls
Monitor privileged activity and support incident response and forensic analysis
Provide audit reporting and access control documentation
Vulnerability Management
Network & Email Security
Support identity-related integrations for VPNs and secure access solutions
Assist in investigations related to phishing, credential abuse, and account compromise
Collaborate with Network and Messaging teams to strengthen access controls
Security Operations & Leadership
Act as a senior escalation point for complex identity and access issues
Lead CIAM and identity security initiatives
Mentor junior analysts and provide technical guidance
Maintain documentation, standards, and procedures
Participate in a rotating on-call schedule
Qualifications Required
7+ years of experience in IT and Cybersecurity, with a focus on Identity & Access Management
Bachelor s degree in IT, Computer Science, Cybersecurity, or equivalent experience
Hands-on experience with:
Strong knowledge of PAM principles and controls
Familiarity with vulnerability management, network security, and email security
Deep understanding of authentication protocols (LDAP, Kerberos, SAML, OAuth, OpenID Connect)
Proven ability to troubleshoot and lead security investigations
Strong communication skills
Preferred
Certifications such as CISSP, CISM, or Microsoft security certifications
Ping Identity certifications (highly preferred)
Experience supporting large-scale, external-facing authentication platforms
Experience in hybrid cloud and enterprise environments
Professional Expectations
Demonstrates professionalism, integrity, and a security-first mindset
Takes ownership and accountability for deliverables
Serves as a trusted CIAM subject matter expert and mentor within the organization