Senior Engineer, Identity Access Management (IAM Engineer)

Kroll

Hyderabad

Hybrid

INR 1,800,000 - 2,800,000

Full time

45 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Kroll is seeking a Senior IAM Engineer to support and advance enterprise identity and access management across our organization. The role focuses on authentication services, lifecycle governance, and secure access across on-premises and cloud environments.

You will collaborate with Security, IT, and application teams to implement SSO, MFA, and policy-driven access while maintaining robust documentation and change-management practices. Hybrid work hours are expected, aligned with IST time.

Qualifications

  • 3–5+ years of experience supporting or engineering enterprise Identity & Access Management technologies.
  • Hands-on experience with Microsoft Entra ID and Active Directory.
  • Experience implementing or supporting SSO, MFA, and Conditional Access.
  • Experience integrating enterprise applications using SAML, OAuth 2.0, OpenID Connect, or similar authentication standards.
  • Experience troubleshooting complex authentication and access-related issues.

Responsibilities

  • Support the administration and engineering of enterprise IAM platforms and services.
  • Configure and maintain SSO, MFA, authentication policies, and Conditional Access controls.
  • Support Microsoft Entra ID and Active Directory identity services.
  • Support identity lifecycle processes including provisioning, modification, deprovisioning, and access changes.
  • Troubleshoot authentication, authorization, and access-related issues.
  • Support application onboarding and integration with identity platforms using SAML, OAuth, OpenID Connect.
  • Support identity federation and authentication integrations with SaaS and cloud apps.
  • Assist with Auth0 and other enterprise authentication platforms.
  • Support RBAC and group-based access management.
  • Partner with Information Security to implement identity security standards and controls.
  • Assist with access reviews, certifications, audits, and compliance activities.
  • Identify misuse or outdated access and remediate issues.
  • Assist with identity governance controls and separation-of-duties implementations.

Skills

Microsoft Entra ID
Active Directory
Single Sign-On (SSO)
Multi-Factor Authentication (MFA)
Conditional Access
SAML
OAuth 2.0
OpenID Connect
Authentication troubleshooting
Identity lifecycle management
RBAC / least privilege
Documentation
Cross-team collaboration

Job description

Senior Engineer, Identity Access Management

The Identity & Access Management (IAM) Engineer is responsible for supporting, administering, engineering, and continuously improving enterprise identity and access management services. This role works as part of the Digital Identity & Access team to deliver secure, reliable, and efficient identity services across the organization. The IAM Engineer will support identity lifecycle management, authentication, Single Sign-On (SSO), Multi-Factor Authentication (MFA), Conditional Access, application integrations, certificates, and related identity technologies. The successful candidate will combine strong technical capabilities with disciplined operational practices, documentation, change management, and collaboration across Technology and Information Security teams. This is a hybrid role and work hours are 2pm – 11pm IST.

Responsibilities
Identity & Access Management
  • Support the administration and engineering of enterprise identity and access management platforms and services.
  • Configure and maintain Single Sign-On (SSO), Multi-Factor Authentication (MFA), authentication policies, and Conditional Access controls.
  • Support Microsoft Entra ID and Active Directory identity services.
  • Support identity lifecycle processes including user provisioning, modification, deprovisioning, and access changes.
  • Troubleshoot complex authentication, authorization, and access-related issues.
  • Support application onboarding and integration with enterprise identity platforms using technologies and standards such as SAML, OAuth, OpenID Connect, and related authentication protocols.
  • Support identity federation and authentication integrations with SaaS, cloud, and internally developed applications.
  • Assist with the administration and support of Auth0 and other enterprise authentication platforms.
  • Support role-based access control and group-based access management.
Identity Security & Governance
  • Partner with Information Security to implement and maintain identity security standards and controls.
  • Support periodic access reviews, certifications, audit requests, and compliance activities.
  • Assist with the implementation and maintenance of appropriate separation-of-duties controls.
  • Identify excessive, inappropriate, or outdated access and work with appropriate stakeholders to remediate identified issues.
  • Support privileged identity and access management processes where applicable.
  • Assist with investigation and remediation of identity-related security events.
  • Ensure identity configurations and processes align with organizational security standards and established governance requirements.
PKI & Certificate Management
  • Support enterprise Public Key Infrastructure (PKI) and certificate-management processes.
  • Monitor certificate expiration and coordinate certificate renewals to prevent service disruption.
  • Assist application and technology teams with certificate requests, renewals, deployment, and troubleshooting.
  • Maintain accurate documentation and visibility into enterprise certificates and associated ownership.
Engineering & Automation
  • Identify opportunities to automate repetitive IAM activities and improve operational efficiency.
  • Develop and maintain scripts and automation supporting identity administration, reporting, provisioning, and operational processes.
  • Support integrations between IAM platforms, enterprise applications, HR systems, and other technology services.
  • Participate in identity-platform upgrades, enhancements, migrations, and modernization initiatives.
  • Contribute to the development and maintenance of IAM architecture, standards, technical documentation, and operational procedures.
Service Management & Operations
  • Manage IAM incidents, requests, problems, and changes in accordance with established service-management processes.
  • Develop implementation, testing, validation, rollback, and communication plans for production changes.
  • Ensure changes are appropriately documented, reviewed, approved, and communicated prior to implementation.
  • Maintain accurate and timely visibility into assigned work, projects, changes, risks, and commitments.
  • Develop and maintain technical documentation, standard operating procedures, knowledge articles, and support runbooks.
  • Participate in troubleshooting and resolution of major incidents involving identity or authentication services.
  • Identify recurring issues and contribute to root-cause analysis and permanent corrective actions.
Collaboration & Customer Experience
  • Partner with Digital Workplace, Information Security, Infrastructure, Application Development, Enterprise Systems, HR, Service Management, and other technology teams.
  • Provide technical guidance to application owners integrating applications with enterprise identity services.
  • Communicate technical issues, risks, dependencies, and recommendations clearly to both technical and non-technical stakeholders.
  • Balance security requirements with the need to provide reliable and intuitive authentication and access experiences for practitioners.
  • Demonstrate a collaborative, accountable, and service-oriented approach to delivering identity services.
Essential Traits
  • 3–5+ years of experience supporting or engineering enterprise Identity & Access Management technologies.
  • Hands-on experience with Microsoft Entra ID and Active Directory.
  • Experience implementing or supporting Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Conditional Access.
  • Experience integrating enterprise applications using SAML, OAuth 2.0, OpenID Connect, or similar authentication standards.
  • Experience troubleshooting complex authentication and access-related issues.
  • Understanding of identity lifecycle management, including provisioning, deprovisioning, access changes, and role/group management.
  • Working knowledge of identity security principles, least privilege, role-based access control, and separation of duties.
  • Experience working within formal change, incident, request, and problem-management processes.
  • Strong documentation and organizational skills.
  • Ability to work collaboratively across technical teams and communicate effectively with stakeholders.
About Kroll

In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our clients clarity—not just answering all areas of business. We value the diverse backgrounds and perspectives that enable us to think globally. As part of One team, One Kroll, you will contribute to a supportive and collaborative work environment that empowers you to excel.

Kroll is the premier global valuation and corporate finance advisor with expertise in complex valuation, disputes and investigations, M&A, restructuring, and compliance and regulatory consulting. Our professionals balance analytical skills, deep market insight and independence to help our clients make sound decisions. As an organization, we think globally—and encourage our people to do the same.

Kroll is committed to equal opportunity and diversity, and recruits people based on merit.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Engineer, Identity Access Management (IAM Engineer)
Senior Engineer, Identity Access Management (IAM Engineer)

Kroll • Maharashtra

Hybrid
INR 1,800,000 - 3,200,000
Senior Engineer Identity Access Management IAM Engineer
Senior Engineer Identity Access Management IAM Engineer

Kroll • Hyderabad

Hybrid
INR 2,000,000 - 4,000,000
Senior Engineer Identity Access Management IAM Engineer
Senior Engineer Identity Access Management IAM Engineer

Kroll • Mumbai

Hybrid
INR 1,200,000 - 2,100,000
Senior Engineer, Identity Access Management (IAM Engineer)
Senior Engineer, Identity Access Management (IAM Engineer)

Kroll • Mumbai

Hybrid
INR 1,200,000 - 2,500,000
Identity Access Management Operations And Engineering Manager
Identity Access Management Operations And Engineering Manager

StoneX Group Inc. • Bengaluru

On-site
INR 2,500,000 - 5,200,000
IAM Architect
IAM Architect

Gas Strategies • Bengaluru

On-site
INR 3,500,000 - 5,500,000
Senior IAM Engineer
Senior IAM Engineer

Ameriprise Financial Services, LLC • Dadri

Hybrid
INR 1,500,000 - 2,100,000
Restaurant of staff
Analyst - IAM SSO Engineer
Analyst - IAM SSO Engineer

PepsiCo Deutschland GmbH • Hyderabad

On-site
INR 1,500,000 - 2,300,000
Principal Software Engineer (IAM) Pune, India
Principal Software Engineer (IAM) Pune, India

Kaseya Limited • Pune District

On-site
INR 3,000,000 - 4,500,000
Senior IAM Developer
Senior IAM Developer

Weekday AI • Hyderabad

On-site
INR 2,000,000 - 2,500,000