Senior Engineer, IAM Platform Engineering

Cencora
Carrollton, TX, United States
15 days ago
Apply on diversityjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

JavaScript (Programming Language) Application Programming Interfaces (APIs) Amazon Web Services User Authentication Microsoft Azure Software as a Service Cloud Computing Cloud Engineering Cyber Security Customer Data Management Multi-Factor Authentication Fraud Prevention and Detection
+21 more
Identity and Access Management Python (Programming Language) OAuth OpenID Ping (Networking Utility) Windows PowerShell Openid Connect Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) SAP (Applications) Single Sign-On Software Engineering Scripting Google Cloud Okta Customer Identity Access Management Information Technology Restful APIs Api Management Serverless Computing

Job description

The CIAM Platform Engineer III is a senior-level engineer responsible for designing, implementing, and optimizing Customer Identity and Access Management (CIAM) solutions that deliver secure, scalable, and seamless digital experiences for customers, patients, partners, and other external users. This role serves as a technical lead for customer identity initiatives, driving platform engineering, authentication services, API integrations, automation, and security improvements across customer-facing applications.

The CIAM Platform Engineer III partners with software engineering, product, cybersecurity, architecture, and business teams to deliver modern identity capabilities including registration, authentication, authorization, consent management, customer profile management, Single Sign-On (SSO), Multi-Factor Authentication (MFA), social login, and identity federation. This role plays a key part in advancing customer identity strategy through automation, cloud-native architectures, and industry-leading security practices., * Designs, implements, and supports enterprise CIAM platforms that provide secure, scalable, and highly available customer authentication and authorization services.

  • Engineers customer identity solutions supporting registration, profile management, account recovery, consent management, customer lifecycle management, and secure access to digital applications.
  • Develops and maintains integrations between CIAM platforms and customer-facing applications using OAuth 2.0, OpenID Connect (OIDC), SAML, SCIM, REST APIs, and modern identity standards.
  • Leads the implementation of authentication capabilities including Single Sign-On (SSO), Multi-Factor Authentication (MFA), adaptive authentication, social identity providers, federation services, and passwordless authentication.
  • Designs and maintains automation solutions that streamline customer onboarding, application onboarding, identity orchestration, access management, and operational support processes.
  • Analyzes authentication telemetry, platform performance metrics, customer login trends, and security events to proactively identify and resolve service issues, fraud risks, and user experience challenges.
  • Troubleshoots complex customer authentication, federation, authorization, and integration issues across cloud and hybrid environments.
  • Creates and maintains architecture documentation, integration standards, technical specifications, operational procedures, and platform runbooks.
  • Participates in platform upgrades, migrations, patching activities, and release validation efforts to ensure platform stability, resilience, and security.
  • Collaborates with application development teams to integrate customer identity services into web, mobile, API, and SaaS applications.
  • Partners with security and privacy teams to implement Zero Trust principles, customer identity protection controls, and compliance requirements.
  • Provides technical guidance and mentorship to junior engineers while promoting CIAM engineering best practices and operational excellence.
  • Evaluates emerging identity technologies, authentication methods, and customer security capabilities to drive continuous improvement across the CIAM platform.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Software Engineering, or a related field, or equivalent experience.
  • 5+ years of experience in Customer Identity and Access Management (CIAM), Identity and Access Management (IAM), software engineering, platform engineering, or related technical disciplines.
  • Hands-on experience implementing or supporting CIAM platforms such as Auth0, Okta Customer Identity, ForgeRock, Ping Identity, Microsoft Entra External ID, SAP Customer Data Cloud, or similar technologies.
  • Strong understanding of authentication and authorization protocols including OAuth 2.0, OpenID Connect (OIDC), SAML, SCIM, JWT, and federation services.
  • Experience integrating customer-facing applications with identity platforms through APIs, SDKs, and cloud-native services.
  • Experience troubleshooting complex authentication, registration, federation, and customer access issues.
  • Knowledge of customer identity security, identity lifecycle management, fraud prevention, and Zero Trust security principles.
  • Experience developing automation solutions using scripting languages such as PowerShell, Python, JavaScript, or similar technologies., * Experience supporting high-volume customer authentication environments serving external users across web, mobile, and API channels.
  • Experience with customer profile management, consent management, social login, and customer lifecycle management capabilities.
  • Familiarity with privacy regulations and compliance frameworks including GDPR, CCPA, HIPAA, or similar standards.
  • Experience with public cloud platforms including Microsoft Azure, AWS, or Google Cloud.
  • Certifications such as Okta Certified Professional, ForgeRock Certification, Microsoft Identity and Access Administrator, Security+, CISSP, or equivalent.

Benefits & conditions

We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members’ ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora Full time Equal Employment Opportunity

Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.

The company’s continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.

About the company

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all