ForgeRock IAM Engineer

Global Information Technologies LLC
Princeton, NJ, United States
3 months ago

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$93,600.0 - $110,240.0
Working hours
Regular working hours
Job source

Tech stack

Active Directory Federation Services User Authentication Multi-Factor Authentication Identity and Access Management Lightweight Directory Access Protocols (LDAP) OAuth OpenID Openid Connect Azure Active Directory RSA (Cryptosystem) Runbook Security Assertion Markup Language (SAML)
+4 more
Systems Integration Software Vulnerability Management Cloud Integration Legacy Systems

Job description

The ForgeRock IAM Engineer will design, configure, and support the ForgeRock Identity Platform within a complex workforce environment. This role is a critical technical anchor for the organization’s identity transformation, enabling seamless federation with Microsoft Entra ID and managing a phased migration of legacy and modern applications toward a unified cloud-entry point. Key Responsibilities

  • Engineering & Support: Provide hands-on engineering for the full ForgeRock stack (AM, IDM, DS), including enhancements, complex integrations, and high-level production support.
  • Modernization & Migration: Implement and support ForgeRock Microsoft Entra ID (Azure AD) federation. Define coexistence strategies for applications transitioning to Entra ID.
  • Advanced Auth Design: Design and maintain intricate Authentication Trees, access policies, and identity provisioning workflows tailored to business requirements.
  • Vulnerability Management: Own the remediation lifecycle for ForgeRock components-analyzing findings, applying security patches, and implementing hardened configurations.
  • Operational Excellence: Manage L2/L3 escalations (SSO failures, sync issues, performance bottlenecks), certificate/secret rotations, and platform upgrades with minimal business impact.
  • Cross-Functional Collaboration: Partner with Infrastructure, Security, and App teams to provide technical documentation, runbooks, and audit evidence., Job Title: Senior MFA (Multi-Factor Authentication) Engineer Multiple Locations: Princeton, NJ or Quincy, MA (100% onsite in any of these locations) Duration: 6 months (extendabl…
  • 1 day ago

Requirements

  • ForgeRock Suite: 8+ years of deep hands-on experience with ForgeRock AM (specifically Authentication Trees), IDM, and DS.
  • Protocols: Expert-level understanding of SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC).
  • Cloud Integration: Proven experience integrating ForgeRock with Microsoft Entra ID / Azure AD in a multi-IdP enterprise environment.
  • Legacy Systems: Familiarity with integrating or migrating from systems like RSA, ADFS, and traditional LDAP directories.

About the company

© 2026 Careerjet All rights reserved

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on careerjet.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:50 min

Introduction and the value of runbooks

Hila Fish · WWC 2023

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · WWC 2024

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

Videos

See all

Related articles

See all