Senior ForgeRock IAM Engineer
Join our team as a Senior ForgeRock IAM Engineer and lead innovation in security within a cutting-edge cloud infrastructure. Design resilient IAM solutions, safeguard critical assets, and drive security strategy to protect against evolving threats. Mentor peers, enhance processes, and shape the future of IAM technology.
Responsibilities:
- Support operational innovation and provide security direction to the business to elevate the company's security posture within a cloud computing infrastructure.
- Help deliver applications on a scale and with resiliency to support business initiatives.
- Deal with disparate applications and data systems to maintain the level of rigor required to adhere to business direction.
- Consistently assess the threat landscape and adapt quickly to protect the business from risk.
- Design and implement security architectures and strategies to safeguard information system resources and assets.
- Ensure integration of technology that upholds the Information Security policies and standards, as well as meets the firm's business objectives.
- Identify opportunities for security process improvement.
- Provide support for critical security infrastructure components to ensure system availability.
- Mentor fellow team members and other associates in security best practices.
- Maintain awareness of security technology direction, trends, and related issues.
- Develop a long-term strategy for supported security systems.
Requirements:
- 5+ years of experience with Endpoint Privileged Management.
- Expertise in Single Sign-On (SSO) technology – skills in deploying and supporting Single Sign-on (SSO) of applications within an organization.
- Expertise in Federated SSO - Security Assertion Markup Language (SAML) and/or OpenID Connect (OIDC) skills required to support both internal and vendor authentication.
- Proficiency in Scripting/programming – Ability to design, write, update, and troubleshoot code to resolve issues, create efficiencies, and/or integrate systems. Current specific needs are in Python, JavaScript, Bash, and PowerShell.
- Proficiency in HTTP debugging/troubleshooting, using debugging web proxies like Fiddler/SAML-Tracer (or others).
- General knowledge of Active Directory (AD) or other LDAP Directory Services, especially querying/updating through scripts/programs.
- Be self-driven with minimal daily oversight required.
Nice to have:
- Experience with SecureAuth IdP.
- Multi-Factor Authentication (MFA) technology – skills deploying and supporting MFA technology for internal and internet-facing application requirements.
- General knowledge of Virtual Directory Services, Certificates/Public Key Infrastructure (PKI), Identity Management concepts, Cloud Technology, and device authentication.
We offer:
- Medical, Dental and Vision Insurance (Subsidized)
- Health Savings Account
- Flexible Spending Accounts (Healthcare, Dependent Care, Commuter)
- Short-Term and Long-Term Disability (Company Provided)
- Life and AD&D Insurance (Company Provided)
- Employee Assistance Program
- Unlimited access to LinkedIn learning solutions
- Matched 401(k) Retirement Savings Plan
- Paid Time Off – the employee will be eligible to accrue 15-25 paid days, depending on specific level and tenure with EPAM
- Paid Holidays - nine (9) total per year
- Legal Plan and Identity Theft Protection
- Accident Insurance
- Employee Discounts
- Pet Insurance
- Employee Stock Purchase Program
- If otherwise eligible, participation in the discretionary annual bonus program
- If otherwise eligible and hired into a qualifying level, participation in the discretionary Long-Term Incentive (LTI) Program
This Remote Position Cannot be Performed in New York City. EPAM is a leading global provider of digital platform engineering and development services. We are committed to having a positive impact on our customers, our employees, and our communities. We embrace a dynamic and inclusive culture. Here you will collaborate with multi-national teams, contribute to a myriad of innovative projects that deliver the most creative and cutting-edge solutions, and have an opportunity to continuously learn and grow. No matter where you are located, you will join a dedicated, creative, and diverse community that will help you discover your fullest potential.
Salary range: $105,000 - $158,000. In addition, the details highlighted in this job posting above are a general description of all other expected benefits and compensation for the position. Applications will be accepted on a rolling basis. EPAM Systems, Inc. is an equal opportunity employer. We recognize the value of diversity and inclusion in creating success for our customers, business partners, shareholders, employees and communities. We are committed to recruiting, hiring, developing and promoting employees without discrimination.