![]()
Job Title: IAM Engineer
Location: Sacramento/Roseville, CA or Remote (USA)
Duration: Travel - 3 months
Pay Range: $50/hr $55/hr (W2)
Job ID: 371556
About BCforward
BCforward is a leading global IT consulting and workforce solutions firm providing services and support to Fortune 500 and government clients. Founded in 1998, BCforward has grown with our customers needs into a full-service business solutions provider. With delivery centers and offices across North America and India, we take pride in building long-term relationships and delivering excellence through innovation, collaboration, and integrity.
Job Description
We are seeking an IAM Engineer to join our dynamic team. The ideal candidate will have strong experience in identity and access management platforms and protocols and a proven ability to design, integrate, and secure enterprise authentication and authorization services.
Responsibilities:
- Design, implement, and manage IAM solutions across Okta, ForgeRock, and Ping Identity.
- Develop secure authentication and authorization flows using OAuth, SAML, OpenID Connect, and Kerberos.
- Build and automate integrations with AWS, on premises systems, and SaaS applications using RESTful APIs.
- Engineer workflows, custom policies, and extensions using Java, Python, JavaScript, Groovy, and PowerShell.
- Apply security best practices across SSL/TLS, PKI, and encryption standards.
- Ensure compliance with GDPR, HIPAA, and SOC 2 requirements for IAM platforms.
- Support DevOps-driven deployments using Jenkins, Kubernetes, Docker, and Terraform.
- Collaborate with cross-functional teams and communicate solutions to technical and non-technical stakeholders.
Required Skills & Qualifications:
- Platform expertise in Okta (SSO, MFA, Workflows), ForgeRock (OpenAM, OpenIDM, OpenDJ, OpenIG), and Ping Identity (PingFederate, PingAccess, PingDirectory).
- Strong knowledge of OAuth, SAML, OpenID Connect, and Kerberos.
- Proficiency with Java, Python, JavaScript, Groovy, and PowerShell.
- Hands-on integration experience with AWS, on premises systems, and SaaS apps using RESTful APIs.
- Understanding of identity federation concepts and patterns.
- Expertise in SSL/TLS, PKI, and encryption practices.
- Knowledge of GDPR, HIPAA, and SOC 2 controls as applied to IAM.
- Familiarity with cloud IAM in hybrid environments and DevOps tools including Jenkins, Kubernetes, Docker, and Terraform.
- Strong analytical and troubleshooting skills with clear communication and teamwork abilities.
- Experience Level: 5+ years in IAM engineering, design, or related roles.
Preferred Skills:
- Certifications such as Okta Certified Professional, ForgeRock Identity Management Specialist, or Ping Identity Certified Professional.
- Experience with Agile and Scrum delivery practices.
Work Arrangement & Additional Information:
- Hybrid role for Sacramento/Roseville, CA. In-office 2-3 days per week. Remote 100% for non-commutable or out-of-state candidates in the USA.
- Business Casual dress code.
- Client interface required.
- Overtime not required.
- Willingness to work a flexible schedule and travel as required.
- Video cameras used during all interviews and during the first week of orientation.
Why BCforward?
At BCforward, we believe in advancing lives and careers. When you join our team, you gain access to:
- Competitive compensation and benefits.
- Opportunities for growth with global clients.
- A supportive, inclusive culture that values innovation and people.
- Exposure to cutting-edge technologies and projects.
About Our Commitment
BCforward is an equal opportunity employer. We value diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, or veteran status.
Interested? Apply Now!
If this sounds like the right opportunity for you, please apply with your most recent resume or contact:
Name: Rathnakar M
Email:
Phone: