ICAM Identity Provider (IdP) Engineer – Enterprise Authentication Services

Remotedxb

Dubai

On-site

AED 320,000 - 520,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Remotedxb in Dubai seeks a senior IAM/IDP engineer to design, implement, and maintain enterprise IdP services, focusing on ADFS, SAML, OAuth, OIDC, and MFA. You will manage federation with internal and external providers, implement trust relationships, and help onboard major applications into a secure authentication framework.

The role requires strong hands-on experience with Windows/Linux servers, PKI, and modern identity services, plus collaboration with cybersecurity and cloud teams in a

Qualifications

  • 8+ years IAM/ICAM experience
  • Strong ADFS design and support experience
  • Experience with SAML 2.0, OAuth 2.0, OIDC, WS-Federation, JWT
  • Experience with PKI, MFA
  • Experience with LDAP/AD
  • Experience with Windows and/or Linux servers
  • Excellent written and verbal communication skills

Responsibilities

  • Design, develop, configure, and maintain enterprise Identity Provider (IdP) services.
  • Engineer, administer, and sustain ADFS infrastructure.
  • Configure federation trust relationships with IdPs, SPs, and partners.
  • Implement and troubleshoot authentication using SAML 2.0, OAuth 2.0, OIDC, WS-Federation, JWT.
  • Support onboarding of enterprise applications into the federation ecosystem.
  • Develop authentication policies, claims rules, and attribute mappings.
  • Support SSO, MFA, and Conditional Access.
  • Collaborate with cybersecurity, cloud, and infrastructure teams.
  • Support Zero Trust Architecture implementations.
  • Monitor and resolve complex identity issues.
  • Develop architecture diagrams, integration guides, and SOPs.
  • Participate in Agile development.

Skills

IAM/ICAM
ADFS design
SAML 2.0
OIDC/OAuth
MFA/PKI
LDAP/AD
Windows/Linux
Communication skills

Education

Bachelor's Degree in a related technical discipline
DoD 8570/8140 IAT Level II certification

Tools

PingFederate
Okta
Keycloak
Azure AD
PingDirectory

Job description

Responsibilities
  • Design, develop, configure, and maintain enterprise Identity Provider (IdP) services supporting over 4 million enterprise identities
  • Engineer, administer, and sustain Microsoft Active Directory Federation Services (ADFS) infrastructure
  • Configure and maintain federation trust relationships with internal and external Identity Providers (IdPs), Service Providers (SPs), and mission partners
  • Implement and troubleshoot authentication solutions utilizing SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), WS-Federation, and certificate-based authentication
  • Support onboarding and integration of enterprise applications into the authentication and federation ecosystem
  • Develop authentication policies, claims rules, attribute mappings, and authorization workflows
  • Support enterprise Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Conditional Access
  • Collaborate with cybersecurity, Active Directory, cloud, and infrastructure teams to implement secure authentication services
  • Support implementation of Zero Trust Architecture
  • Monitor, troubleshoot, and resolve complex authentication, federation, trust, and identity assertion issues
  • Develop technical documentation including architecture diagrams, integration guides, and SOPs
  • Participate in Agile development activities
Requirements
  • Active Secret Clearance at minimum (Interim Secret Clearances are not allowed)
  • Bachelor's Degree in a related technical discipline, or equivalent combination of education, technical certifications, or work experience
  • DoD 8570/8140 IAT Level II certification (Security+ CE or higher)
  • Minimum of 8 years of experience supporting Identity and Access Management (IAM), Authentication, Federation, or ICAM solutions
  • Strong experience designing, implementing, and supporting Microsoft Active Directory Federation Services (ADFS)
  • Extensive experience implementing enterprise Identity Provider (IdP) services supporting large user populations
  • Experience implementing and troubleshooting SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), WS-Federation, and JWT technologies
  • Experience supporting PKI, certificate-based authentication, and MFA solutions
  • Experience with Active Directory, LDAP directories, and enterprise identity repositories
  • Experience supporting Linux and/or Windows Server environments
  • Strong written and verbal communication skills
Preferred Qualifications
  • Experience designing and supporting highly available ADFS farms with Web Application Proxy (WAP)
  • Experience with Microsoft Entra ID (Azure AD), PingFederate, PingAccess, PingDirectory, Okta, or Keycloak
  • Experience supporting DoD Enterprise ICAM or mission partner federation initiatives
  • Experience implementing federation solutions for coalition or cross-organizational environments
  • Experience supporting NIST 800-63 Identity Assurance Levels (IAL)
  • Experience implementing phishing-resistant authentication and passwordless solutions
  • Familiarity with PowerShe
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

ICAM Identity Provider (IdP) Engineer
ICAM Identity Provider (IdP) Engineer

Remotedxb • Dubai

On-site
AED 300,000 - 520,000
Medical Insurance
401(k) Plan
Paid Time Off
+1
Senior ICAM Identity Provider Engineer - SSO & MFA Expert
Senior ICAM Identity Provider Engineer - SSO & MFA Expert

Remotedxb • Dubai

On-site
AED 320,000 - 520,000
Oracle Identity Management Engineer
Oracle Identity Management Engineer

Remotedxb • Dubai

On-site
AED 40,000 - 70,000
401K with company match
Comprehensive health packages
Paid vacation & holidays
+2
IdP & IAM Engineer — SSO, MFA, Zero Trust
IdP & IAM Engineer — SSO, MFA, Zero Trust

Remotedxb • Dubai

On-site
AED 300,000 - 520,000
Medical Insurance
401(k) Plan
Paid Time Off
+1
IAM consultant
IAM consultant

Digital X - Owned By Digital Dewa Single Owner Com • Dubai

On-site
AED 250,000 - 300,000
Security Architect – Digital Identity Job Opening in Dubai, United Arab Emirates
Security Architect – Digital Identity Job Opening in Dubai, United Arab Emirates

Uae Job Alert • Dubai

On-site
AED 440,000 - 551,000
IAM Developer – Ping Identity (ForgeRock AM)
IAM Developer – Ping Identity (ForgeRock AM)

IDM Technologies • Dubai

On-site
AED 80,000 - 100,000
SailPoint Administrator
SailPoint Administrator

CyberGate Defense • Abu Dhabi

On-site
AED 240,000 - 420,000
AD & Identity Security Engineer
AD & Identity Security Engineer

Epergne Solutions • Abu Dhabi

On-site
AD & Identity Security Engineer
AD & Identity Security Engineer

Epergne Solutions • Dubai

On-site
AED 80,000 - 110,000