Ernst and Young

Application Engineer - III-ES and F33-P

Ernst and Young
Apply
4 days ago
Hyderābād, IndiaSenior

Responsibilities

  • Contribute to Identity and Access Management consulting projects and execute engagement requirements.
  • Administer and support enterprise Okta environments across production, non-production, and disaster recovery tenants.
  • Design, test, and implement Okta policies, SSO, MFA, passwordless authentication, phishing-resistant authenticators, and risk-based access controls.
  • Configure and troubleshoot SAML, OIDC/OAuth, SWA, WS-Federation, and SCIM application integrations, including provisioning and deprovisioning.
  • Develop and maintain Okta Workflows and API-based automations for identity operations, policy administration, notifications, reporting, and bulk changes.
  • Monitor Okta System Log and Splunk dashboards, investigate authentication anomalies and incidents, and perform root cause analysis.
  • Plan and execute controlled IAM changes with impact analysis, risk assessments, testing, rollback plans, communications, and post-change validation.
  • Maintain technical documentation, runbooks, implementation plans, architecture notes, knowledge articles, and support procedures.
  • Create and manage Jira stories and sprint deliverables, track dependencies, and participate in Agile ceremonies.
  • Collaborate with IAM engineering and operations, application owners, directory services, service desk, security operations, infrastructure, change management, and vendors.
  • Develop client relationships, prepare client reports and schedules, participate in client-facing discussions, and support RFP responses.
  • Review junior team members’ work, provide mentoring and feedback, support onboarding and knowledge transfer, and contribute to people initiatives.
  • Manage performance management activities for direct reports and foster teamwork and continuous improvement.

Requirements

  • B.Tech. or B.E. degree with strong technical skills.
  • 5–9 years of professional experience in Identity and Access Management.
  • Hands-on experience implementing or supporting SSO, MFA, directory integrations, federation, lifecycle management, and application onboarding.
  • Strong hands-on Okta administration experience, including policies, rules, groups, profile mappings, authenticators, application assignments, directory integrations, lifecycle management, and role-based administration.
  • Experience with Okta APIs, Okta Workflows, Okta Access Gateway, Okta Advanced Server Access, and SCIM.
  • Knowledge of authentication and authorization concepts, RBAC, ABAC, least privilege, privileged access, break-glass access, identity governance, and security control design.
  • Experience integrating Okta with Active Directory, LDAP, Azure AD, and Oracle AD.
  • Working knowledge of SAML 2.0, OAuth 2.0, OpenID Connect, SWA, WS-Federation, SCIM, REST APIs, JSON, XML, and HTTP.
  • Experience designing, testing, and troubleshooting provisioning, deprovisioning, group-based access, profile sourcing, attribute mappings, and downstream application behavior.
  • Experience using Splunk and Okta System Log for monitoring, alert analysis, incident investigation, change validation, and audit evidence.
  • Ability to perform risk assessments and threat modeling and translate business requirements into scalable technical designs.
  • Hands-on Java or Python development and debugging experience.
  • Experience with ServiceNow, Jira, Confluence, Bruno or Postman, Git-based version control, and enterprise change management processes.
  • Experience with solution requirements specifications, traceability matrices, and application and directory integration design.
  • Client-facing experience and ability to work across on-site and offshore delivery models.
  • Strong written and verbal English, interpersonal, presentation, problem-solving, documentation, and collaboration skills.
  • Preferred certifications include Okta Certified Professional, Administrator, Consultant, Developer, or Workflows Specialist, and security certifications such as CISSP, CISA, or equivalent IAM/security credentials.

Benefits

  • Flexible work environment with globally connected teams.
  • Health and wellness packages, rewards, and learning and professional development opportunities.
  • Mentorship, continuous learning, and opportunities to build skills and take on leadership roles.
  • Diverse, equitable, and inclusive workplace culture.

Tech Stack

CSSGitHTMLJavaPostmanPythonSplunk

Categories

Ernst and Young

About Ernst and Young

10,000+ employees

Ernst & Young (EY) provides audit/assurance, tax, consulting, strategy and transactions services to enterprises, financial institutions, and public‑sector clients. Structured as a global network of partner‑owned member firms, it sells professional services on a fee basis, including a dedicated Financial Services Organization for banking, insurance, and capital markets. Headquartered in London, EY was formed in 1989 from the merger of Ernst & Whinney and Arthur Young, and operates in 150+ countries.

Contact me