Ping Identity / LDAP Administrator

CloudIngest

Miami (FL)

On-site

USD 68,191 - 97,120

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

CloudIngest is looking for a Ping Identity / LDAP Administrator in Miami, FL. This role involves designing and maintaining the Enterprise Identity and Access Management infrastructure on AWS.

You will handle LDAP operations, access management, and security compliance while working closely with Cloud Architects and DevOps teams.

The ideal candidate will possess deep LDAP knowledge, expertise in IAM tools like PingFederate, and scripting capabilities.

Qualifications

  • 3+ years of experience in Identity and Access Management focusing on LDAP and Ping products.
  • Strong analytical skills to diagnose federation and replication issues.
  • Ability to collaborate with Cloud Architects and DevOps Engineers.

Responsibilities

  • Configure, maintain and optimize LDAP infrastructure on AWS.
  • Administer PingFederate and PingAccess policies and integrations.
  • Implement AWS security best practices for directory data protection.

Skills

LDAP expertise
PingFederate experience
Knowledge of SAML, OAuth, OIDC
Proficiency in Python, PowerShell, Bash
Experience with Linux/Unix and Windows Server

Tools

PingAccess
AWS
Docker
Kubernetes
Terraform
Ansible

Job description

Job Title: Ping Identity / LDAP Administrator
Location: Miami, FL (On-Site)
Rate: $60/hr on W2 (No C2C)
Job Summary

The Ping Identity / LDAP Administrator is responsible for the design, implementation, maintenance, and support of the Enterprise Identity and Access Management (EIAM, IAM and PAM) infrastructure running on Amazon Web Services (AWS).

Key Responsibilities
  • Directory Operations: Configure, tune, and maintain LDAP infrastructure (e.g., PingDirectory) hosted on Amazon EC2 or containers, optimizing for replication performance across AWS regions.
  • Access Management: Administer PingFederate and PingAccess policies, custom adapters, and federation setups (SAML, OAuth, OIDC) hosted in the Cloud.
  • Policy Management: Design and maintain access control policies, authentication schemes, and authorization rules.
  • Data Synchronization: Oversee data replication, synchronization, and integrity across multiple directory instances and environments.
  • Migration: Lead or support lift-and-shift or refactoring initiatives to migrate legacy LDAP and Ping architectures to AWS.
2. Integration & Support
  • SSO Federation: Configure and troubleshoot Single Sign-On (SSO) integrations using protocols such as SAML 2.0, OAuth 2.0, OIDC (OpenID Connect), and WS-Federation.
  • Application Onboarding: Partner with internal application teams to integrate custom and third-party SaaS applications into the identity platform.
  • API Security: Implement and secure API gateways using PingAccess or similar tools.
  • Troubleshooting: Provide technical support for complex identity, authentication, and directory service issues.
3. Security & Compliance
  • Cloud Security: Implement AWS security best practices utilizing AWS IAM, Security Groups, VPC ACLs, and AWS Secrets Manager to protect directory data and API keys.
  • Audit & Logging: Monitor system logs and audit trails to detect potential security breaches or operational anomalies.
  • Certificates: Manage the lifecycle of SSL/TLS and signing certificates used within the IAM infrastructure.
Required Skills & Qualifications
Technical Skills
  • Directory Expertise: Deep understanding of LDAP schemas, object classes, attributes, tree structures, and ACIs (Access Control Instructions).
  • IAM Tools: Proven hands‑on experience with PingFederate, PingDirectory, and PingAccess.
  • Protocols: Strong knowledge of federation protocols (SAML, OAuth, OIDC) and network protocols (TCP/IP, DHCP, DNS).
  • Scripting: Proficiency in scripting languages (e.g., Python, PowerShell, Bash, or Shell) for automating administrative tasks.
  • Operating Systems: Comfortable navigating and administering both Linux/Unix and Windows Server environments.
Soft Skills & Experience
  • Experience: 3+ years of dedicated experience in Identity and Access Management with a focus on LDAP and Ping products on Cloud env.
  • Problem‑Solving: Strong analytical skills to diagnose complex federation and replication issues across disparate networks.
  • Collaboration: Ability to work closely with Cloud Architects, DevOps Engineers, and Security teams to enforce enterprise‑wide IAM policies.
Preferred Qualifications
  • Certifications: Ping Certifications: Ping Identity Certified Professional or Expert.
  • Cloud Experience: Experience migrating legacy on‑premises LDAP/Ping infrastructures to cloud environments (AWS, Azure, GCP).
  • DevOps/CI‑CD: Familiarity with containerization (Docker, Kubernetes) and infrastructure as code (Terraform, Ansible) for deploying IAM solutions.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Ping Identity Architect
Ping Identity Architect

Securdi LLP. • United States

Hybrid
USD 120,000 - 160,000
Senior Identity and Access Management (IAM) Engineer
Senior Identity and Access Management (IAM) Engineer

Datum Technologies Group • Alpharetta (GA)

On-site
USD 100,000 - 130,000
IAM Architect: PingIdentity LDAP & Cloud Federation
IAM Architect: PingIdentity LDAP & Cloud Federation

CloudIngest • Miami (FL)

On-site
Senior IAM Engineer: Ping Identity & Cloud SSO Lead
Senior IAM Engineer: Ping Identity & Cloud SSO Lead

Veriipro • McLean (VA)

On-site
Ping Identity Consultant
Ping Identity Consultant

Intellibee Inc • Plano (TX)

On-site
USD 110,000 - 150,000
Long-Term Stability
Comprehensive Health Coverage
Future Planning
+1
Senior Identity Engineer (Ping)
Senior Identity Engineer (Ping)

Veriipro • McLean (VA)

On-site
USD 100,000 - 130,000
Senior IAM Architect
Senior IAM Architect

Pingidentity • United States

On-site
USD 137,000 - 180,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+2
Ping Engineer
Ping Engineer

Largeton Group • Richmond (VA)

On-site
USD 85,000 - 115,000
Ping Identity / ForgeRock IAM
Ping Identity / ForgeRock IAM

Veriipro • Fort Mill (SC)

On-site
USD 100,000 - 140,000
Ping Identity SME - Active TS/SCI With CI Poly
Ping Identity SME - Active TS/SCI With CI Poly

ENS Solutions, LLC • Reston (VA)

On-site
USD 100,000 - 130,000
Free Platinum-Level Medical/Dental/Vision coverage
401(k) contribution from Day 1
PTO + 11 paid federal holidays
+4