Senior IAM Engineer (Ping Identity/CIAM)

Deloitte T.T.L.
McLean, VA, United States
2 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) JavaScript (Programming Language) Server Applications Application Services Java Platform Enterprise Edition (J2EE) Groovy Identity and Access Management Mobile Application Software Lightweight Directory Access Protocols (LDAP) Network Architecture OAuth OpenID
+11 more
Ping (Networking Utility) Openid Connect Azure Active Directory Security Assertion Markup Language (SAML) Systems Integration Scripting Customer Identity Access Management Containerization Kubernetes Software Coding Docker

Requirements

Do you possess the following?:

  • Minimum 5 years’ experience with leading CIAM vendors preferably Azure Entra Id and Ping Identity Platform.
  • Minimum 2 years’ hands-on Java development experience (Java/J2EE); familiarity with Groovy and/or JavaScript.
  • Proven experience customizing PingAM UI, writing scripts, and developing code to retrieve/assert values from multiple data sources.
  • Experience building, testing (functional and robustness), and promoting custom Java components using the PingAM and PingIDM SDK to production (for example: modules, trees, STS, policies, connectors, scripts).
  • Hands-on experience installing and configuring Identity and Access Management (IAM/CIAM) products.
  • Working knowledge of authentication standards and frameworks: SAML, OAuth 2.0, and OpenID Connect (OIDC).
  • Willingness to participate in a rotating 24x7x365 on-call schedule.
  • Advanced knowledge of LDAP and directory services, application servers, and network infrastructure.
  • Experience integrating and deploying IAM solutions for web and mobile applications to support authentication and authorization, including SSO integrations with internal and third-party applications.
  • Experience with container technologies: Docker installation and configuration, and orchestration using Kubernetes.
  • Limited immigration sponsorship may be available. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.

About the company

Deloitte Global is the engine of the Deloitte network. Our professionals reach across disciplines and borders to develop and lead global initiatives. We deliver strategic programs and services that unite our organization.

Work you’ll do

In this interesting and diverse role, you’ll be engaging in the development, implementation and support of systems that manage digital identities, access controls and authentication processes. This position collaborates with team members to:

    • ensure secure and efficient access to Deloitte applications while upholding cyber security best practices
  • define the future vision of how identities and assigned access is managed, enforced and reported upon across all functional business units
  • On call 24x7 responsibilities

The team

Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in “what is” but rather “what can be” to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

Videos

See all

Related articles

See all