Senior Identity & Access Management (Iam) Consultant - Forgerock/Ping Identity

iC Consult
Barcelona, Spain
8 days ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Amazon Web Services User Authentication Microsoft Azure Cloud Computing Cloud Computing Security Distributed Systems Electronic Signatures Identity and Access Management OAuth OpenID Ping (Networking Utility) Kubernetes
+1 more
Microservices

Job description

ph3Senior Identity Access Management (IAM) Consultant (m/f/d) - ForgeRock/Ping Identity /h3 pJoin our team as abSenior Identity Access Management (IAM) Consultant (m/f/d) - ForgeRock/Ping Identity /b-eitherbon-site at our locations in Madrid or Barcelona /borbflexibly remote from within Spain./b /p h3Your Responsibilities: /h3 ul libArchitect Modern Authentication: /b Design and implement robust authentication architectures for web, mobile, and native applications, ensuring seamless user journeys across distributed systems./li libMaster Identity Standards: /b Architect and govern complex bOAuth 2.0 /band bOpenID Connect (OIDC) /b flows, including the implementation of PKCE, secure token lifecycles, and rotation strategies./li libDrive Passwordless Innovation: /b Lead the strategy and design for bPasskeys (WebAuthn) /b and passwordless authentication to eliminate credential-based risks./li libPlatform Orchestration: /b Serve as the subject matter expert for the bPing Identity suite (formerly ForgeRock) /b, including bPingAM, PingIDM, and PingDS /b, to build scalable identity solutions./li libCloud Microservices Integration: /b Integrate identity services into cloud-native environments (AWS/Azure/GCP) and microservices architectures, applying hardening and risk mitigation best practices./li /ul h3Your Experience: /h3 ul libPingIdentity/ForgeRock Ecosystem: /b Hands-on experience configuring and deploying bPingAM, PingIDM, and PingDS (formerly ForgeRock) /bin enterprise environments./li libIAM Background: /b Proven track record in IAM architecture with the ability to translate complex security requirements into scalable technical designs./li libDeep Protocol Knowledge: /b In-depth technical mastery of OAuth 2.0, OIDC 1.0, and modern authentication patterns in both web and native environments./li libPasskey Proficiency: /b Hands-on experience implementing Passkeys/WebAuthn and a clear understanding of the underlying security mechanics./li libSecurity Infrastructure: /b Strong grasp of cloud security, Kubernetes (EKS), and the ability to apply security hardening within CI/CD pipelines./li libBonus Points: /b /li liFamiliarity with European identity standards (beIDAS 2.0 /b, LoA, and electronic signatures like AdES/QES)./li liExperience with bPSD2/SCA compliance /b, orchestrated MFA, and continuous authentication./li liExpertise in managing complex B2C/B2B identity lifecycles and device-binding strategies /li /ul h3What We Offer - Enjoy a Range of Benefits /h3 ul liHomebr/Office /li li30 Daysbr/Vacation /li liAdditionalbr/Healthbr/Insurance /li liPersonalbr/Coach /li li10 Days of Trainingbr/per Year /li liEmployeebr/Discounts /li liRestaurantbr/Ticket /li liCompany br/Team Events /li /ul pEmployee benefits are voluntary and may vary depending on location, work hours or other factors.They are not intended as a guarantee or commitment and may be changed or discontinued at any time./p h3Possible Locations for this Vacancy /h3 pCheck out the available locations for this position.You can select your preferred location in the application form ./p pbiC Consult - Remote /bbr/ /p pbiC Consult - Madrid /bbr/Spainbr/ /p pMore locations /p pbSpain /bbr/ /p pDiversity in all dimensions is very important to our teams.We therefore include this criterion in our hiring decisions./p /p #J-*****-Ljbffr

Requirements

li libIAM Background: /b Proven track record in IAM architecture with the ability to translate complex security requirements into scalable technical designs. /li libDeep Protocol Knowledge: /b In-depth technical mastery of OAuth 2.0, OIDC 1.0, and modern authentication patterns in both web and native environments. /li libPasskey Proficiency: /b Hands-on experience implementing Passkeys/WebAuthn and a clear understanding of the underlying security mechanics. /li libSecurity Infrastructure: /b Strong grasp of cloud security, Kubernetes (EKS), and the ability to apply security hardening within CI/CD pipelines. /li libBonus Points: /b /li liFamiliarity with European identity standards (beIDAS 2.0 /b, LoA, and electronic signatures like AdES/QES). /li liExperience with bPSD2/SCA compliance /b, orchestrated MFA, and continuous authentication. /li liExpertise in managing complex B2C/B2B identity lifecycles and device-binding strategies /li /ul h3What We Offer - Enjoy a Range of Benefits /h3 ul liHomebr/Office /li li30 Daysbr/Vacation /li liAdditionalbr/Healthbr/Insurance /li liPersonalbr/Coach /li li10 Days of Trainingbr/per Year /li liEmployeebr/Discounts /li liRestaurantbr/Ticket /li liCompany br/Team Events /li /ul pEmployee benefits are voluntary and may vary depending on location, work hours or other factors. They are not intended as a guarantee or commitment and may be changed or discontinued at any time.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

Videos

See all

Related articles

See all