Identity Access Management (IAM) Consultant
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+1 more
Job description
applications, ensuring seamless user journeys across distributed systems. /liliMaster Identity Standards: Architect and govern complex OAuth 2.0 and OpenID Connect (OIDC) flows, including the implementation of PKCE, secure token lifecycles, and rotation strategies. /liliDrive Passwordless Innovation: Lead the strategy and design for Passkeys (WebAuthn) and passwordless authentication to eliminate credential-based risks. /liliPlatform Orchestration: Serve as the subject-matter expert for the PingIdentity (formerly ForgeRock) suite, including PingAM, PingIDM, and PingDirectory, to build scalable identity solutions. /liliCloud Microservices Integration: Integrate identity services into cloud-native environments (AWS/Azure/GCP) and microservices architectures, applying hardening and risk mitigation best practices. /li /ulh3Your Experience /h3ulliExpert IAM Background: Proven track record in IAM architecture with the ability to translate complex security requirements into scalable technical
Requirements
designs. /liliDeep Protocol Knowledge: In-depth technical mastery of OAuth 2.0, OIDC 1.0, and modern authentication patterns in both web and native environments. /liliPasskey Proficiency: Hands-on experience implementing Passkeys/WebAuthn and a clear understanding of the underlying security mechanics. /liliPingIdentity/ForgeRock Ecosystem: Advanced experience configuring and deploying PingAM, PingIDM, and PingDS (formerly ForgeRock) in enterprise environments. /liliSecurity Infrastructure: Strong grasp of cloud security, Kubernetes (EKS), and the ability to apply security hardening within CI/CD pipelines. /li /ulh3Bonus Points /h3ulliFamiliarity with European identity standards (eIDAS 2.0, LoA, and electronic signatures like AdES/QES). /liliExperience with PSD2/SCA compliance, orchestrated MFA, and continuous authentication. /liliExpertise in managing complex B2C/B2B identity lifecycles and device-binding strategies. /li /ulh3What we offer /h3ulli30 days of vacation (plus public holidays)
Benefits & conditions
as well as a flextime model and the option to work from your home office, promoting work-life balance. /liliHigh-quality equipment of your choice, including company mobile phone - whether Apple or Windows. /liliiC Consult University - a comprehensive onboarding program with training modules, mentoring programs, events, and a 3-day onsite bootcamp for your new start with us. /liliAccess to internal and external training tailored to your needs - 10 days a year dedicated to your personal and professional development. /liliAdditional benefits: personal coach, language training platforms, food vouchers, health insurance, and employee discounts on products and services from well-known suppliers. /liliRegular team and company events in a relaxed atmosphere to strengthen the corporate climate. /liliA workplace with flat hierarchies, short decision-making paths, and a high degree of personal responsibility, providing substantial decision-making freedom. /li /ulpApply now and become part of
About the company
ppChampion Identity and Access Management. Join our team as a Senior Identity Access Management (IAM) Consultant (m/f/d) - Ping Identity - either on-site at our locations in Madrid or Barcelona or flexibly remote from within Spain. /ppiC Consult is a general Identity Security consultancy and a true People Business: a close-knit community of Identity Security enthusiasts who combine agility, direct impact, and strong leadership with global delivery excellence - jointly optimizing people desirability, technology feasibility, and sustainable business viability. /ppWithin this environment, you will work in a local team set-up that is part of our multimatrix organization - meaning your local team, your project team, and your reporting line may differ, giving you broad exposure, flexibility, and diverse collaboration opportunities. /ph3Your Responsibilities /h3ulliArchitect Modern Authentication: Design and implement robust authentication architectures for web, mobile, and native
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 138 - Are you secure about this?
Dev Digest 132 - Binging WADFlix?
Dev Digest 120 - Apple and peers
WeAreDevelopers Dev Digest Issue 116 - The new search wars…