PING IDENTITY&LDAP ADMINISTRATOR

Decision Six Inc.
Miami, FL, United States
14 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Amazon Elastic Compute Cloud User Authentication Microsoft Azure Bash Shell Software as a Service Cloud Computing Cloud Computing Security Data Synchronization Dynamic Host Configuration Protocol Linux
+24 more
DevOps Domain Name System (DNS) Identity and Access Management Python (Programming Language) Lightweight Directory Access Protocols (LDAP) Windows Servers Network Protocols OAuth OpenID Ping (Networking Utility) Windows PowerShell Openid Connect Security Assertion Markup Language (SAML) Single Sign-On TCP/IP Data Logging Scripting Google Cloud Cloud Platform System Software Security Amazon Virtual Private Cloud (VPC) Ws-federation Pingfederate Database Replication

Job description

The Ping Identity / LDAP Administrator is responsible for the design, implementation, maintenance, and support of the organization s Identity and Access Management (IAM) infrastructure running on Amazon Web Services (AWS)., 1. Architecture & Administration

  • Directory Operations: Configure, tune, and maintain LDAP infrastructure (e.g., PingDirectory) hosted on Amazon EC2 or containers, optimizing for replication performance across AWS regions.

  • Access Management: Administer PingFederate and PingAccess policies, custom adapters, and federation setups ($SAML$, $OAuth$, $OIDC$) hosted in the Cloud.

  • Policy Management: Design and maintain access control policies, authentication schemes, and authorization rules.

  • Data Synchronization: Oversee data replication, synchronization, and integrity across multiple directory instances and environments.

  • Migration: Lead or support lift-and-shift or refactoring initiatives to migrate legacy LDAP and Ping architectures to AWS.

  1. Integration & Support
  • SSO Federation: Configure and troubleshoot Single Sign-On (SSO) integrations using protocols such as SAML 2.0, OAuth 2.0, OIDC (OpenID Connect), and WS-Federation.

  • Application Onboarding: Partner with internal application teams to integrate custom and third-party SaaS applications into the identity platform.

  • API Security: Implement and secure API gateways using PingAccess or similar tools.

  • Troubleshooting: Provide technical support for complex identity, authentication, and directory service issues.

  1. Security & Compliance
  • Cloud Security: Implement AWS security best practices utilizing AWS IAM, Security Groups, VPC ACLs, and AWS Secrets Manager to protect directory data and API keys.

  • Audit & Logging: Monitor system logs and audit trails to detect potential security breaches or operational anomalies.

  • Certificates: Manage the lifecycle of SSL/TLS and signing certificates used within the IAM infrastructure.

Requirements

Technical Skills:

  • Directory Expertise: Deep understanding of LDAP schemas, object classes, attributes, tree structures, and ACIs (Access Control Instructions).

  • IAM Tools: Proven hands-on experience with PingFederate, PingDirectory, and PingAccess.

  • Protocols: Strong knowledge of federation protocols (SAML, OAuth, OIDC) and network protocols (TCP/IP, DHCP, DNS).

  • Scripting: Proficiency in scripting languages (e.g., Python, PowerShell, Bash, or Shell) for automating administrative tasks.

  • Operating Systems: Comfortable navigating and administering both Linux/Unix and Windows Server environments.

Soft Skills & Experience:

  • Experience: 3+ years of dedicated experience in Identity and Access Management with a focus on LDAP and Ping products on Cloud env.

  • Problem-Solving: Strong analytical skills to diagnose complex federation and replication issues across disparate networks.

  • Collaboration: Ability to work closely with Cloud Architects, DevOps Engineers, and Security teams to enforce enterprise-wide IAM policies.

PREFERRED QUALIFICATIONS:

  • Certifications: Ping Certifications: Ping Identity Certified Professional or Expert.

  • Cloud Experience: Experience migrating legacy on-premises LDAP/Ping infrastructures to cloud environments (AWS, Azure, Google Cloud Platform).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

Videos

See all

Related articles

See all