ForgeRock IAM Developer / Engineer

OPTIME TECH
Jersey City, NJ, United States
9 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Active Directory Application Programming Interfaces (APIs) Amazon Elastic Compute Cloud Configuration Management Continuous Integration Github Identity and Access Management Lightweight Directory Access Protocols (LDAP) Nginx OAuth OpenID
+24 more
OpenShift Performance Tuning Role-Based Access Control Openid Connect JSON Web Token Security Assertion Markup Language (SAML) Session Management Data Logging Scripting Transport Layer Security System Availability Software Security Software Troubleshooting Apigee Gitlab-ci Kubernetes Infrastructure Automation Frameworks Deployment Automation Cloudwatch Api Gateway Restful APIs Terraform Docker Jenkins

Job description

We are seeking an experienced ForgeRock IAM Developer / Engineer with strong Identity and Access Management fundamentals and a solid Java development background. The ideal candidate will have hands-on experience designing, developing, implementing, and supporting enterprise identity and access solutions across the ForgeRock Identity Platform, including AM, IDM, DS, and IG., * Design, implement, and support enterprise solutions across the ForgeRock Identity Platform.

  • Configure and develop solutions using ForgeRock Access Management (AM), including authentication trees/journeys, MFA, SSO, federation, sessions, policies, and agents.
  • Work with ForgeRock Identity Management (IDM) for provisioning, workflows, connectors, reconciliation, managed objects, and REST integrations.
  • Support ForgeRock Directory Services (DS), including LDAP schema, replication, indexes, access controls, performance tuning, and troubleshooting.
  • Work with ForgeRock Identity Gateway (IG) for routing, filtering, authorization enforcement, policy integration, and protection of applications/APIs.
  • Build custom ForgeRock extensions and integrations using Java, scripting, and REST APIs.
  • Implement authentication, federation, and API security solutions using OAuth 2.0, OpenID Connect (OIDC), SAML 2.0, JWT, and TLS/mTLS.
  • Support identity lifecycle, provisioning, authorization, access policies, token management, and session management.
  • Support CI/CD, environment promotion, configuration management, and deployment automation.
  • Troubleshoot complex IAM issues across applications, gateways, directories, and federation partners.
  • Support enterprise production environments, including logging, monitoring, high availability, performance troubleshooting, and incident resolution.

Requirements

  • Strong hands-on experience with the ForgeRock Identity Platform / ForgeRock Suite.
  • Experience with ForgeRock AM, IDM, DS, and IG is preferred; candidates with strong ForgeRock AM expertise and exposure to the other components will also be considered.
  • Strong IAM knowledge including SSO, federation, MFA, RBAC/ABAC, identity lifecycle management, provisioning, access policies, authorization, and session/token management.
  • Strong Java development experience, including Core Java and the ability to build or customize ForgeRock components and integrations.
  • Hands-on experience with OAuth 2.0, OIDC, SAML 2.0, JWT, and TLS/mTLS.
  • Strong experience with LDAP and Active Directory, including schema, attributes, groups, replication, access controls, performance, and troubleshooting.
  • Experience supporting ForgeRock in enterprise production environments.
  • Strong troubleshooting and problem-solving skills.
  • Must be willing to work on our company payroll., * AWS: EC2, EKS, ALB/NLB, CloudWatch, Secrets Manager, KMS, networking/security.
  • Terraform for infrastructure provisioning and environment automation.
  • Docker, Kubernetes, or OpenShift.
  • CI/CD tools such as Jenkins, GitHub Actions, or GitLab CI.
  • API gateways/reverse proxies such as NGINX, Apigee, or Kong.
  • Experience with SCIM.
  • Experience with ForgeRock Identity Cloud or Autonomous Identity., The ideal candidate is a hands-on IAM engineer who can work across ForgeRock development, integration, configuration, security, and production support, with the ability to use Java to build and customize enterprise IAM solutions.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

7:28 min

Constructing a new Docker layer from scratch

Oliver Seitz Oliver Seitz · World Congress 2026 Europe

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

5:02 min

Manual port forwarding configuration using network address translation

Oliver Seitz Oliver Seitz · World Congress 2025

Videos

See all

Related articles

See all