We are looking for a seasoned Ping Identity IAM Consultant with 5 to 8 years of hands-on experience in Identity and Access Management within enterprise environments. The ideal candidate will have strong expertise in implementing, configuring, integrating, and supporting IAM solutions using the Ping Identity platform. This includes practical knowledge of PingFederate, PingAccess, PingID/PingOne, and a solid understanding of modern authentication and federation protocols. The role involves delivering secure, scalable, and reliable identity and access solutions across various enterprise applications and environments.
Key Responsibilities
- Implement, configure, administer, and support enterprise IAM solutions using the Ping Identity platform.
- Configure and manage PingFederate for enterprise federation, Single Sign-On (SSO), and application integrations.
- Configure and support PingAccess to secure enterprise applications and APIs through appropriate access policies.
- Implement and manage PingID/PingOne for Multi-Factor Authentication (MFA) and secure user authentication.
- Integrate enterprise applications using SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC) standards.
- Integrate Ping Identity solutions with LDAP, Active Directory, enterprise applications, APIs, and other identity sources.
- Manage identity lifecycle processes, including user onboarding, role changes, access provisioning, and de-provisioning.
- Configure and maintain access controls based on Role-Based Access Control (RBAC), least-privilege principles, and organizational security policies.
- Troubleshoot complex issues related to SSO, authentication, authorization, federation, tokens, certificates, and application integrations.
- Monitor IAM services and authentication activities, collaborating with security, application, infrastructure, and DevOps teams to maintain secure and reliable IAM environments.
Required Qualifications
- 5 to 8 years of hands-on experience in Identity and Access Management within enterprise settings.
- Strong practical experience with the Ping Identity platform for implementing and supporting IAM solutions.
- Proven ability to configure and administer PingFederate for federation, authentication, and Single Sign-On.
- Hands-on experience with PingAccess for securing enterprise applications, APIs, and managing access policies.
- Experience implementing and managing PingID and/or PingOne for Multi-Factor Authentication.
- Solid knowledge of SSO and federation protocols, with hands-on implementation experience using SAML 2.0.
- Strong working experience with OAuth 2.0 and OpenID Connect (OIDC) for application and API authentication and authorization.
- Experience implementing and troubleshooting MFA and enterprise authentication flows.
- Expertise integrating IAM solutions with LDAP and Active Directory, including identity attributes and user directory integrations.
- Good understanding of RBAC, least-privilege access, and Identity Lifecycle Management, including provisioning and de-provisioning.
Preferred Qualifications and Additional Skills
- Experience with PingDirectory as an enterprise identity data store and directory service.
- Hands-on exposure to PingOne DaVinci for identity orchestration and workflow automation.
- Knowledge of passwordless authentication and modern authentication approaches.
- Understanding of adaptive and risk-based authentication using contextual and risk signals.
- Familiarity with Attribute-Based Access Control (ABAC) and advanced authorization models.
- Experience with API security and protecting APIs using modern identity and access standards.
- Understanding of Zero Trust Architecture and its application within enterprise IAM environments.
- Experience integrating IAM solutions with cloud platforms such as Azure, AWS, or GCP.
- Exposure to DevOps, CI/CD, scripting, and IAM automation for deployment and operational efficiency.
- Relevant certifications in Ping Identity, IAM, cloud, or security are advantageous.
Education
Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Software Engineering, or a related discipline is required.