C2C - Sr IAM SSO Engineer (SAML/OIDC/OAUTH, Ping Identity, Federate and Access) - Remote

Minnesota, Edenprairie, 55344 Edenprairie USA
Description: Title? Sr IAM SSO Engineer Where is the work to be performed? We will give preference to candidates local to one of the following offices. They would be required to come in the office under a hybrid model. If we are unable to find candidates in this location, we would consider remote. MN102 Hybrid CA134 Hybrid Can you please provide a summary of the project/initiative which describes what's being done? Security enhancement and hardening of IAM Single Sign On and PingFederate services Please describe the team the candidate will be working with how many members and what is the break-down of the team's skill sets (ex: 1 PM, 4 Developers, etc.)? 10 Team members including 8 Identity professionals, 1 Architect and 1 Project Manager. What does the ideal candidate background look like (ex: healthcare specific background, etc.)? Identity Engineer or IT Security professional with experience administrating and securing Ping Identity, Single Sign On, SAML Federation, along with certificate management (PKI / Cryptography) or Hardware Security Management (HSM) skills. What are the top 5-10 responsibilities for this position? (Please be detailed as to what the candidate is expected to do or complete on a daily basis) Evaluates and applies security enhancements and performance management on IAM SSO systems Integrates Applications on PingFederate and SSO services, and manages SAML and Certificate life cycle Deploys SAML partnership configuration and establish certificates renewal processes Gather and analyze data to aide in informed decision-making while providing detailed, realistic estimates. Interact skillfully with business stakeholders and third-party technical organizations. Solve problems and provide deep technical troubleshooting skills. Configures logging, alerting, monitoring, and reporting for IAM solutions Develops Identity, Authentication and Federation services, and Deploys highly-scalable applications, applying standard SSO patterns enabling security and privacy at scale. Define and implement technical solutions to meet business needs through Agile process. Foster high-performance, collaborative technical work resulting in high-quality output. Train and develop operations and engineering staff to maintain and support Identity and security services. What skills/attributes are required (Please be detailed as to number of years of experience)? 7 years Experience in IAM, SAML/OIDC/OAUTH Federation protocols and Single Sign On implementations 3 years experience on Ping Identity and Knowledge of PingFederate and PingAccess. What skills/attributes are preferred (will set a candidate apart)? Expert level knowledge of common IAM SSO and Federation solutions and patterns Knowledge of Public Key Infrastructure (PKI), and Digital Certificate lifecycle management functions Understanding of cryptographic protocols and network security protocols (e.g. TCP/IP, TLS, SSL, encryption, OpenSSL, X.509 Certificates) Experience with Thales Luna or similar HSM and Venafi Experience with Multi Factor Authentication (MFA) solutions Experience preparing detailed design and angineering documents Experience with DevOps, Continuous Integration and Continuous Delivery Experience working in an Agile environment Expertise with modern programming languages, systems, and architectures Expertise in performance and scalability optimization What are the work hours? (ex. 9am-5pm, day/night shifts, rotating shifts, etc) 9am-5pm What does the interview process look like? o How many rounds? 2 o Video, phone, or in person? Video/Phone o How technical will the interviews be? Very Technical Job Posting Number of Positions 1

