(Senior) Iam Consultant - Forgerock / Ping Identity

iC Consult
Valladolid, Spain
1 day ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Microsoft Windows Amazon Web Services User Authentication Microsoft Azure Cloud Computing Cloud Computing Security System Configuration Continuous Integration Distributed Systems Electronic Signatures Identity and Access Management OAuth
+5 more
OpenID Ping (Networking Utility) Openid Connect Kubernetes Microservices

Job description

Leverage your Career within the greatest Identity Security Community We champion #IAMExcellence Join our team as a (Senior) IAM Consultant - ForgeRock / Ping Identity (m/f/d) - either on-site/hybrid at our locations in Barcelona or Madrid, or flexibly remote from within Spain.iC Consult is a global Identity Security consultancy and a true People Business: a close-knit community of Identity Security enthusiasts who combine agility, direct impact, and strong leadership with global delivery excellence - jointly optimizing people desirability, technology feasibility, and sustainable business viability.Within this environment, you will work in a local team setup that is part of our multimatrix organization - meaning your local team, your project team, and your reporting line may differ, giving you broad exposure, flexibility, and diverse collaboration opportunities.Your Responsibilities: Architect Modern Authentication: Design and implement robust authentication architectures for web, mobile, and native applications, ensuring seamless user journeys across distributed systems.Master Identity Standards: Architect and govern complex OAuth 2.0 and OpenID Connect (OIDC) flows, including the implementation of PKCE, secure token lifecycles, and rotation strategies.Drive Passwordless Innovation: Lead the strategy and design for Passkeys (WebAuthn) and passwordless authentication to eliminate credential-based risks.Platform Orchestration: Serve as the subject matter expert for the Ping Identity suite (formerly ForgeRock) , including PingAM, PingIDM, and PingDS , to build scalable identity solutions.Cloud & Microservices Integration: Integrate identity services into cloud-native environments (AWS/Azure/GCP) and microservices architectures, applying hardening and risk mitigation best practices.Your Experience: PingIdentity/ForgeRock Ecosystem: Hands-on experience configuring and deploying PingAM, PingIDM, and PingDS (formerly ForgeRock) in enterprise environments.IAM Background: Proven track record in IAM architecture with the ability to translate complex security requirements into scalable technical designs.Deep Protocol Knowledge: In-depth technical mastery of OAuth 2.0, OIDC 1.0, and modern authentication patterns in both web and native environments.Passkey Proficiency: Hands-on experience implementing Passkeys/WebAuthn and a clear understanding of the underlying security mechanics.Security & Infrastructure: Strong grasp of cloud security, Kubernetes (EKS), and the ability to apply security hardening within CI/CD pipelines.Bonus Points: Familiarity with European identity standards ( eIDAS 2.0 , LoA, and electronic signatures like AdES/QES).Experience with PSD2/SCA compliance , orchestrated MFA, and continuous authentication.Expertise in managing complex B2C/B2B identity lifecycles and device-binding strategies What we offer: 30 days of vacation (plus public holidays) as well as a flextime model and the option to work from your home office, promoting your life balance High-quality equipment of your choice including company mobile phone - whether Apple or Windows, you decide which top equipment you prefer to work with iC Consult University - our comprehensive onboarding program accompanies you on your individual induction path with training modules, mentoring programs and events and a 3-day onsite bootcamp for your new start with us, in which you will be trained around representing iC Consult and IAM Through our iC Consult Academy you have access to internal and external trainings tailored to your needs - 10 days a year are dedicated to your personal and professional development Further Benefit like a personal coach, language training platforms, food vouchers, health insurance and employee discounts on products and services from well-known suppliers Regular team and company events in a relaxed atmosphere to strengthen the corporate climate A workplace with flat hierarchies, short decision-making paths, and a high degree of personal responsibility, providing substantial decision-making freedom Central Office: iC Consult Spain S.L. Gran Via de Carles III, 94, planta 8 puerta 3, ***** Barcelona Spain Apply now and become part of our team!If you have any questions, we’re always here for you and look forward to getting in touch.Please send us your application documents (CV, certificates, salary expectations, and possible start date) via LinkedIn Easy Apply .matters to us.We welcome applications regardless of gender, age, origin, religion or belief, disability, sexual identity, or any other characteristic protected by law.All hiring decisions are based solely on qualifications and suitability.For more information, visit: The protection of your data is important to us.You can find all information on how we handle your data in our .

Requirements

IAM Background: Proven track record in IAM architecture with the ability to translate complex security requirements into scalable technical designs. Deep Protocol Knowledge: In-depth technical mastery of OAuth 2.0, OIDC 1.0, and modern authentication patterns in both web and native environments. Passkey Proficiency: Hands-on experience implementing Passkeys/WebAuthn and a clear understanding of the underlying security mechanics. Security & Infrastructure: Strong grasp of cloud security, Kubernetes (EKS), and the ability to apply security hardening within CI/CD pipelines. Bonus Points: Familiarity with European identity standards ( eIDAS 2.0 , LoA, and electronic signatures like AdES/QES). Experience with PSD2/SCA compliance , orchestrated MFA, and continuous authentication. Expertise in managing complex B2C/B2B identity lifecycles and device-binding strategies What we offer: 30 days of vacation (plus public holidays) as well as a flextime model and the option to work from your home office, promoting your life balance High-quality equipment of your choice including company mobile phone - whether Apple or Windows, you decide which top equipment you prefer to work with iC Consult University - our comprehensive onboarding program accompanies you on your individual induction path with training modules, mentoring programs and events and a 3-day onsite bootcamp for your new start with us, in which you will be trained around representing iC Consult and IAM Through our iC Consult Academy you have access to internal and external trainings tailored to your needs - 10 days a year are dedicated to your personal and professional development Further Benefit like a personal coach, language training platforms, food vouchers, health insurance and employee

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

Videos

See all

Related articles

See all