Senior IAM Engineer

Rivago infotech inc

Mountain View (CA)

Hybrid

USD 150,000 - 190,000

Full time

7 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Rivago infotech inc. is seeking a Senior IAM Engineer with deep expertise in Ping Identity solutions to design, deploy and support large-scale IAM environments.

You will lead SSO implementations, federation, and onboarding of enterprise applications, collaborating with customers, security stakeholders and engineering teams. The role emphasizes hands-on experience with PingFederate, PingAccess, and related IAM technologies, in a hybrid Mountain View/San Diego, CA setting.

Qualifications

  • 8+ years hands-on IAM experience.
  • Bachelor’s or Master’s in Computer Science or related field.
  • Certifications in Ping Identity products.
  • AWS Certification preferred.
  • Agile/Scrum experience.

Responsibilities

  • Design and deploy Ping Identity solutions across environments.
  • Implement PingFederate and PingAccess in HA configurations.
  • Configure SSO using multiple schemes (form-, cert-based, etc.).
  • Onboard applications to SSO and manage certificates.
  • Collaborate with customers and cross-functional teams to deliver IAM solutions.
  • Migrate data and policies from legacy IAM systems to Ping Identity platforms.
  • Provide progress updates and publish weekly summaries.

Skills

Ping Identity
SSO
Federation
LDAP
Unix/Linux
Python
Java
DevOps

Education

Bachelor's or Master's in CS
Ping Identity certifications

Tools

PingFederate
PingAccess
LDAP
Kubernetes
Git
CI/CD

Job description

Role : Senior IAM Engineer


Location : Mountain View or San Diego, CA (Hybrid)


About the Role

We are seeking a highly skilled Senior IAM Engineer with deep expertise in Ping Identity solutions and enterprise authentication technologies. The ideal candidate will have hands‑on experience designing, implementing, and supporting large‑scale Identity and Access Management (IAM) environments, with a strong focus on Single Sign‑On (SSO), federation, authentication services, and application onboarding.


This role requires close collaboration with customers, application teams, security stakeholders, and engineering teams to deliver secure, scalable, and reliable IAM solutions across enterprise environments.


Key Responsibilities


  • Participate and lead the design and deployment of Ping Identity solutions across multiple environments.

  • Implement PingFederate and PingAccess in clustered and high‑availability configurations.

  • Configure SSO using various authentication schemes (form‑based, certificate‑based, etc.).

  • SSO Onboarding and Certificate Renewal: Work with customers to help them onboard their applications to SSO (single sign‑on).

  • Includes:

    • Consultation: Work with the customer and application vendor to analyze and determine if the application supports industry standard authentication mechanisms such as SAML. Determine the appropriate solution path and elevate non‑standard integrations.

    • Submit proper request document: Follow on with customer to submit the onboarding request for SSO and implement.

    • Troubleshoot and QA: work at the detailed technical level to resolve issues



  • Implement changes to existing SSO integrations: Work with customers to analyze and update existing SSO integrations as the customer applications evolve or are upgraded. This could involve after hours work to minimize end‑customer impact for production integrations.

  • Define and enforce PingFederate policies and configurations for SP and IdP roles.

  • Integrate Ping products with SAML, WS‑Federation, OAuth, OpenID Connect, and WS‑Trust protocols.

  • Migrate data and policies from legacy IAM systems to Ping Identity platforms.

  • Perform performance tuning for high‑volume transaction environments.

  • Integrate IAM systems with Windows and Unix/Linux platforms.

  • Collaborate with cross‑functional teams to ensure seamless IAM integration.

  • Work with other IAM technologies such as CA SiteMinder.

  • Manage the consolidation of applications/services between services, including data migration from applications.

  • Oversee the decommissioning of applications/services replaced by client specific solutions.

  • Establish and execute validation principles to ensure successful migrations.

  • Provide daily updates to the core team on progress, roadblocks and items on roadmap.

  • Create JIRA stories for consultation for candidate application - Publish weekly summary of progress.


Technical Skills:


  • Candidate MUST be able to work well with internal and external customers to gather requirements, help them understand what we’ll need in order to onboard, and work with Product Management and Scrum Master on status updates and creation of user stories in Jira backlog.

  • Work with customers to resolve service requests and support tickets.

  • Assist with test, rollout and support of new Authentication features.

  • Strongly desired: experience in Ping Access Manager, PingFederate, LDAP, and Unix.

  • DevOps / GitOps

    • AWS compute, storage, networking, scaling, HA, performance, cost optimization

    • Scripting and automation -- such as CI/CD, Python, CloudWatch, Bash, Splunk, Jenkins, GIT

    • Containerization -- Kubernetes, docker

    • Monitoring, alerting, health checks.



  • Support

  • Comprehensive understanding of Identity and Access Management (IAM) principles and best practices.

  • Deep proficiency in Ping’s Identity Engine platform (features, functionality, integration). PingFederate, PingAccess, PingDirectory, PingOne, PingID

  • Strong expertise in IDP protocols: SSO, SAML, OIDC, JIT, OAuth, SCIM (understanding appropriate use cases).

  • Ability to interpret technical specifications and communicate effectively with technical and non‑technical audiences.

  • Development -- Python, Java, back end or full stack, database, Spring Boot.

  • Okta Knowledge is nice to have.


Qualifications

Bachelor’s/Master’s degree in Computer Science, IT, or related field


8 years of hands‑on experience in IAM, Ping Identity products


Relevant certifications in Ping Identity products


AWS Certification preferred


Agile/Scrum exposure


Strong analytical and investigative mindset


Strong attention to detail in requirements gathering and solution validation.


Ability to convert technical findings into executive‑friendly insights


Excellent communication skills --- interpersonal, oral, written, and documentation --- with strong customer‑facing presence for stakeholder presentations and discussions


Additional Attributes

Strong organizational skills, including the ability to adapt to shifting priorities and meet frequent deadlines


Highly resourceful, collaborative team player with a process‑driven approach to security delivery --- able to work independently with initiative and a sense of urgency


Exemplifies a customer‑focused, action‑oriented, results‑driven culture


Proactive, forward‑looking problem‑solver with strong judgment and decision‑making capability, a desire for continuous learning, and the initiative to propose solutions


Ability to act with discretion and maintain complete confidentiality


Dedicated to our client’s values of non‑negotiable integrity, valuing our people, exceeding client expectations, and embracing intellectual curiosity and rigor

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior IAM Engineer
Senior IAM Engineer

Rivago Infotech Inc • California (MO)

Hybrid
USD 140,000 - 190,000
Staff Software Engineer, IDM Engineering
Staff Software Engineer, IDM Engineering

Ping Identity • United States

Remote
USD 132,000 - 165,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3
Senior Staff Software Engineer, IDM Engineering
Senior Staff Software Engineer, IDM Engineering

Ping Identity • United States

Remote
USD 151,000 - 185,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3
Ping engineer
Ping engineer

Tata Consultancy Services • Chicago (IL)

On-site
USD 120,000 - 125,000
Discretionary Annual Incentive
Comprehensive Medical Coverage
Family Leave
+6
Senior Technical Account Manager
Senior Technical Account Manager

Ping Identity • United States

On-site
USD 155,000 - 180,000
Generous PTO
Parental Leave
Healthcare options
+3
Senior Sales Engineer
Senior Sales Engineer

Ping Identity Corporation • United States

On-site
USD 135,000 - 155,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3
Senior Staff Software Engineer, IDM Engineering
Senior Staff Software Engineer, IDM Engineering

Ping Identity Corporation • United States

On-site
USD 151,000 - 185,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3
Senior Manager, Software Engineering
Senior Manager, Software Engineering

Ping Identity • Austin (TX)

On-site
USD 157,000 - 224,000
Generous PTO
Healthcare options
Retirement programs
+3
Senior Staff Software Engineer - Identity for AI
Senior Staff Software Engineer - Identity for AI

Ping Identity Corporation • Austin (TX)

On-site
USD 151,000 - 185,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3
Senior Technical Support Engineer
Senior Technical Support Engineer

Ping Identity • United States

Remote
USD 70,000 - 87,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3