Identity Access Management (IAM) Consultant

Ppic Consult
Madrid, Spain
about 1 month ago
Apply on es.trabajo.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security System Configuration Distributed Systems Electronic Signatures Identity and Access Management OAuth OpenID Openid Connect Kubernetes
+1 more
Microservices

Job description

applications, ensuring seamless user journeys across distributed systems. /liliMaster Identity Standards: Architect and govern complex OAuth 2.0 and OpenID Connect (OIDC) flows, including the implementation of PKCE, secure token lifecycles, and rotation strategies. /liliDrive Passwordless Innovation: Lead the strategy and design for Passkeys (WebAuthn) and passwordless authentication to eliminate credential-based risks. /liliPlatform Orchestration: Serve as the subject-matter expert for the PingIdentity (formerly ForgeRock) suite, including PingAM, PingIDM, and PingDirectory, to build scalable identity solutions. /liliCloud Microservices Integration: Integrate identity services into cloud-native environments (AWS/Azure/GCP) and microservices architectures, applying hardening and risk mitigation best practices. /li /ulh3Your Experience /h3ulliExpert IAM Background: Proven track record in IAM architecture with the ability to translate complex security requirements into scalable technical

Requirements

designs. /liliDeep Protocol Knowledge: In-depth technical mastery of OAuth 2.0, OIDC 1.0, and modern authentication patterns in both web and native environments. /liliPasskey Proficiency: Hands-on experience implementing Passkeys/WebAuthn and a clear understanding of the underlying security mechanics. /liliPingIdentity/ForgeRock Ecosystem: Advanced experience configuring and deploying PingAM, PingIDM, and PingDS (formerly ForgeRock) in enterprise environments. /liliSecurity Infrastructure: Strong grasp of cloud security, Kubernetes (EKS), and the ability to apply security hardening within CI/CD pipelines. /li /ulh3Bonus Points /h3ulliFamiliarity with European identity standards (eIDAS 2.0, LoA, and electronic signatures like AdES/QES). /liliExperience with PSD2/SCA compliance, orchestrated MFA, and continuous authentication. /liliExpertise in managing complex B2C/B2B identity lifecycles and device-binding strategies. /li /ulh3What we offer /h3ulli30 days of vacation (plus public holidays)

Benefits & conditions

as well as a flextime model and the option to work from your home office, promoting work-life balance. /liliHigh-quality equipment of your choice, including company mobile phone - whether Apple or Windows. /liliiC Consult University - a comprehensive onboarding program with training modules, mentoring programs, events, and a 3-day onsite bootcamp for your new start with us. /liliAccess to internal and external training tailored to your needs - 10 days a year dedicated to your personal and professional development. /liliAdditional benefits: personal coach, language training platforms, food vouchers, health insurance, and employee discounts on products and services from well-known suppliers. /liliRegular team and company events in a relaxed atmosphere to strengthen the corporate climate. /liliA workplace with flat hierarchies, short decision-making paths, and a high degree of personal responsibility, providing substantial decision-making freedom. /li /ulpApply now and become part of

About the company

ppChampion Identity and Access Management. Join our team as a Senior Identity Access Management (IAM) Consultant (m/f/d) - Ping Identity - either on-site at our locations in Madrid or Barcelona or flexibly remote from within Spain. /ppiC Consult is a general Identity Security consultancy and a true People Business: a close-knit community of Identity Security enthusiasts who combine agility, direct impact, and strong leadership with global delivery excellence - jointly optimizing people desirability, technology feasibility, and sustainable business viability. /ppWithin this environment, you will work in a local team set-up that is part of our multimatrix organization - meaning your local team, your project team, and your reporting line may differ, giving you broad exposure, flexibility, and diverse collaboration opportunities. /ph3Your Responsibilities /h3ulliArchitect Modern Authentication: Design and implement robust authentication architectures for web, mobile, and native

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on es.trabajo.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

Videos

See all

Related articles

See all