Lead CIAM (Customer Identity and Access Management) Engineer
What You Will Do:
Direct responsibilities on the operational team for developing and maintaining integrated strategies and solutions, with a focus on Web Access Management services for the Global Aegon environment. Web Access Management services include the following core technologies: Okta, Ping, IBM ISAM, and Federation Services.
Identify opportunities for using Web Access Management to leverage single sign on security with an emphasis on cost containment/reduction strategies.
Provide effective project management and feasibility analysis on potential future projects.
Support and provide guidance on Web Access Management Systems applications and Integrations.
Provide documentation highlighting integration, design and SSO features of solutions.
Provide technical leadership, guidance, and architectural planning for internal/external customer engagements. Assist in automation and building repeatable patterns for consumption.
Perform day to day operations to maintain SLAs and business functions
Runs small to large enterprise infrastructure projects from requirements gathering to post-implementation.
Optimizes the performance and availability of the Web Services environment through monitoring, patching, software tools, and process improvements
Complies with information security policies
Solid knowledge of project management methodologies; able to manage project phases or less complex projects
Provide documentation highlighting integration, design, and features of solutions
What You Will Need:
Qualifications
Knowledge and experience in working with IBM Security Access Manager and Okta Auth0
Experience at delivering technology solutions at an enterprise level.
Excellent diagnostic and troubleshooting skills, and the ability to excel under pressure
Developed written and verbal skills, assignment and priority flexibility, and time management skills
Understanding of DNS, TCP/IP addressing and networking (Internet, routers, switches)
Knowledge of Web Services, Web and Application Services, Java and .NET technologies, and cloud services.
Background in scripting, code development such as PowerShell, Ansible, Java and Terraform.
Ability to work in teams on small to large projects.
Excellent understanding of cloud and on-prem based infrastructure solutions and their Access Management needs.
Ability to quickly learn and apply new concepts.
Ability to drive and achieve consensus/support from large diverse groups.
Strong written and verbal communication skills enabling effective articulation of strategy.
Able to understand how concepts apply to design or architectural efforts
Enterprise network security technologies including firewalls, IDS, IPS, NAC, WAF, and Web Proxies
Working knowledge of Certificate/CA/PKI infrastructure
Possesses and applies broad knowledge of concepts and principles or exhibits technical expertise related to server infrastructure and web-based application support.
A four-year computer science or related technical degree or minimum of 5 (five) years of solid related work experience.
Breadth of knowledge across many technology disciplines; including various access management solutions
8+ years of progressive related IT experience.
Preferred
Heavy experience in federation using SAML 2.0, Open ID connect, REST, oAuth standards
Firm understanding of SDS and experience with managing HA replicas
Managing environments 500K-1MM external users
Understanding of SAML and SSO federated identities
Experience with installing, upgrading, and configuring ISAM/Security Access Manager/WebSEAL version 7.x, ISAM 9-10 and Okta Auth0
Access Management: Web security, Authentication, Authorization, Kerberos, Session Management, Web Proxy, Risk-Based Access
Understanding of microservices-based architecture, API based system integration and Amazon Web Services cloud Identity & Access
Understanding of working in a hybrid cloud environment and working knowledge of AWS Cloud Principles.
Knowledge in scripting, code development such as PowerShell, Ansible, Java, .NET, etc. and automating developments by code
Ability to work in teams on small to Large projects.
Excellent understanding of cloud and on-prem based infrastructure solutions and their Access Management needs.
Understanding of microservices-based architecture, API based system integration and Amazon Web Services cloud Identity & Access
A four-year computer science or related technical degree or equivalent experience
Hands on experience mentoring small to medium teams
Ability to convert complex information into simple, explainable solutions.
Possesses a planning orientation with integrative and strategic thinking skills.
Demonstrated project management and client relationship skills.
Good understanding of a zero trust network environment.
Working Conditions
Non-traditional work hours may be required
On-call rotation for 24/7/365 coverage required.
May require work during non-standard work hours due to global projects and support.
**Please note that the compensation information that follows is a good faith estimate for this position only and is provided pursuant to applicable pay transparency and compensation posting laws. It is estimated based on what a successful candidate might be paid in certain Company locations.**
Compensation:
The US salary for this position generally ranges between $118,400-$150,000 annually. This range is an estimate, based on potential employee qualifications and operational needs. Salary may vary above and below the stated amounts, as permitted by applicable law.
Additionally in the US, this position is typically eligible for an Annual Bonus based on the Company Bonus Plan/Individual Performance and is at the Company’s discretion.
What we offer:
A Comprehensive Wealth + Health package.
Wealth Benefits; Competitive Pay, Bonus, and Benefits Package
Health and Work/Life Balance Benefits
Our commitment to inclusion & diversity means that we value differences. We encourage the unique perspectives of persons and are dedicated to creating a respectful and inclusive work environment.