21 days ago
Conshohocken, PA, USAMid Level
Responsibilities
- Configure, administer, and maintain enterprise CIAM platforms for secure, reliable, and scalable customer authentication and authorization.
- Support customer registration, account recovery, profile management, consent management, and identity lifecycle processes.
- Implement SSO, MFA, adaptive authentication, passwordless authentication, and federated identity services.
- Develop and support identity integrations using OAuth 2.0, OpenID Connect, SAML 2.0, and SCIM.
- Troubleshoot authentication, federation, access, telemetry, security-event, and platform-performance issues.
- Design and maintain API integrations between customer-facing applications and centralized identity services.
- Create technical documentation, operational procedures, architecture diagrams, and support runbooks.
- Collaborate with application development, product, security, and architecture teams on customer identity solutions.
- Participate in platform upgrades, patching, configuration changes, release validation, security assessments, vulnerability remediation, audits, and compliance activities.
- Contribute to automation, provisioning, monitoring, platform reliability, and evaluation of emerging CIAM technologies.
Requirements
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Software Engineering, or a related discipline, or an equivalent combination of education and experience.
- At least 2 years of experience in IAM, CIAM, platform engineering, software development, cloud engineering, or related technical disciplines.
- Experience supporting Okta Customer Identity, Auth0, Ping Identity, ForgeRock, Microsoft Entra External ID, or equivalent CIAM platforms.
- Knowledge of OAuth 2.0, OpenID Connect, SAML, JWT, and RESTful APIs.
- Experience troubleshooting authentication, federation, and user-access issues in cloud and hybrid environments.
- Familiarity with JavaScript or other scripting and automation technologies.
- Understanding of Zero Trust, authentication, authorization, identity governance, session management, and customer data protection.
- Preferred certifications include CIAM, CISSP, Security+, Microsoft Identity and Access Administrator, Okta Certified Professional, Ping Identity Certification, or equivalent.
- Preferred experience includes Microsoft Azure, AWS, Google Cloud, enterprise-scale customer identity solutions, privacy regulations such as GDPR, CCPA, or HIPAA, and Agile, DevOps, or SRE environments.
- Preferred scripting experience includes PowerShell, Python, or similar languages.
Benefits
- Full-time position with medical, dental, and vision benefits.
- Wellness and family-support programs may include backup dependent care, adoption assistance, infertility coverage, family-building support, behavioral health solutions, paid parental leave, and paid caregiver leave.
- Training, professional development, mentorship programs, employee resource groups, and volunteer opportunities are available.
