
Application Engineer - III-ES and F33-P
Ernst and Young4 days ago
Hyderābād, IndiaSenior
Responsibilities
- Contribute to Identity and Access Management consulting projects and execute engagement requirements.
- Administer and support enterprise Okta environments across production, non-production, and disaster recovery tenants.
- Design, test, and implement Okta policies, SSO, MFA, passwordless authentication, phishing-resistant authenticators, and risk-based access controls.
- Configure and troubleshoot SAML, OIDC/OAuth, SWA, WS-Federation, and SCIM application integrations, including provisioning and deprovisioning.
- Develop and maintain Okta Workflows and API-based automations for identity operations, policy administration, notifications, reporting, and bulk changes.
- Monitor Okta System Log and Splunk dashboards, investigate authentication anomalies and incidents, and perform root cause analysis.
- Plan and execute controlled IAM changes with impact analysis, risk assessments, testing, rollback plans, communications, and post-change validation.
- Maintain technical documentation, runbooks, implementation plans, architecture notes, knowledge articles, and support procedures.
- Create and manage Jira stories and sprint deliverables, track dependencies, and participate in Agile ceremonies.
- Collaborate with IAM engineering and operations, application owners, directory services, service desk, security operations, infrastructure, change management, and vendors.
- Develop client relationships, prepare client reports and schedules, participate in client-facing discussions, and support RFP responses.
- Review junior team members’ work, provide mentoring and feedback, support onboarding and knowledge transfer, and contribute to people initiatives.
- Manage performance management activities for direct reports and foster teamwork and continuous improvement.
Requirements
- B.Tech. or B.E. degree with strong technical skills.
- 5–9 years of professional experience in Identity and Access Management.
- Hands-on experience implementing or supporting SSO, MFA, directory integrations, federation, lifecycle management, and application onboarding.
- Strong hands-on Okta administration experience, including policies, rules, groups, profile mappings, authenticators, application assignments, directory integrations, lifecycle management, and role-based administration.
- Experience with Okta APIs, Okta Workflows, Okta Access Gateway, Okta Advanced Server Access, and SCIM.
- Knowledge of authentication and authorization concepts, RBAC, ABAC, least privilege, privileged access, break-glass access, identity governance, and security control design.
- Experience integrating Okta with Active Directory, LDAP, Azure AD, and Oracle AD.
- Working knowledge of SAML 2.0, OAuth 2.0, OpenID Connect, SWA, WS-Federation, SCIM, REST APIs, JSON, XML, and HTTP.
- Experience designing, testing, and troubleshooting provisioning, deprovisioning, group-based access, profile sourcing, attribute mappings, and downstream application behavior.
- Experience using Splunk and Okta System Log for monitoring, alert analysis, incident investigation, change validation, and audit evidence.
- Ability to perform risk assessments and threat modeling and translate business requirements into scalable technical designs.
- Hands-on Java or Python development and debugging experience.
- Experience with ServiceNow, Jira, Confluence, Bruno or Postman, Git-based version control, and enterprise change management processes.
- Experience with solution requirements specifications, traceability matrices, and application and directory integration design.
- Client-facing experience and ability to work across on-site and offshore delivery models.
- Strong written and verbal English, interpersonal, presentation, problem-solving, documentation, and collaboration skills.
- Preferred certifications include Okta Certified Professional, Administrator, Consultant, Developer, or Workflows Specialist, and security certifications such as CISSP, CISA, or equivalent IAM/security credentials.
Benefits
- Flexible work environment with globally connected teams.
- Health and wellness packages, rewards, and learning and professional development opportunities.
- Mentorship, continuous learning, and opportunities to build skills and take on leadership roles.
- Diverse, equitable, and inclusive workplace culture.
About Ernst and Young
Ernst & Young (EY) provides audit/assurance, tax, consulting, strategy and transactions services to enterprises, financial institutions, and public‑sector clients. Structured as a global network of partner‑owned member firms, it sells professional services on a fee basis, including a dedicated Financial Services Organization for banking, insurance, and capital markets. Headquartered in London, EY was formed in 1989 from the merger of Ernst & Whinney and Arthur Young, and operates in 150+ countries.