Job Summary:
We are seeking a Senior Security Engineer with expertise in PingIdentity solutions to design, implement, and optimize authentication and security frameworks across our enterprise. The ideal candidate will have deep hands-on experience with PingFederate, PingOne MFA, DaVinci, Ping Risk, and automation in Java. You will collaborate with cross-functional teams to enhance security posture, integrate identity solutions, and drive automation initiatives for improved efficiency and risk management.
Key Responsibilities:
• Design, deploy, and maintain PingFederate, PingOne MFA, DaVinci, and Ping Risk solutions.
• Develop and integrate secure authentication and authorization workflows using PingIdentity products.
• Automate security processes and IAM workflows using Java, APIs, and scripting.
• Configure and optimize Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Risk-Based Authentication.
• Implement and maintain federation protocols (OIDC, SAML, OAuth) for seamless identity integrations.
• Collaborate with application teams to integrate authentication mechanisms across cloud and on-prem environments.
• Monitor and fine-tune security policies to mitigate threats using Ping Risk and adaptive authentication.
• Troubleshoot and resolve authentication, identity federation, and security-related issues.
• Develop security automation scripts to streamline IAM operations and enhance access management efficiency.
• Stay updated with industry security trends, compliance requirements, and IAM best practices.
Required Qualifications:
• 5+ years of experience in Identity & Access Management (IAM) and security engineering.
• Expertise in PingIdentity suite including PingFederate, PingOne MFA, DaVinci, and Ping Risk.
• Proficiency in Java programming for automation, API integrations, and security enhancements.
• Strong understanding of OIDC, OAuth 2.0, SAML, and SCIM for identity federation.
• Hands-on experience with IAM automation using scripting languages like Python, PowerShell, or Groovy.
• Experience integrating PingIdentity solutions with cloud (AWS, Azure, GCP) and on-prem applications.
• Strong troubleshooting skills with IAM logs, network traces, and API debugging.
• Understanding of Zero Trust Architecture, Adaptive Authentication, and Risk-Based Authentication.
• Knowledge of security frameworks and compliance standards such as NIST, ISO 27001, SOX, HIPAA.
• Excellent communication and collaboration skills to work across security, engineering, and business teams.
Preferred Qualifications:
• Experience with PingDirectory and API security (JWT, mTLS, OAuth scopes/claims).
• Familiarity with CI/CD pipelines, DevOps, and Infrastructure as Code (Terraform, Ansible).
• Security certifications such as CISSP, GIAC, or PingIdentity certifications.
• Knowledge of threat detection, SOC integration, and SIEM solutions.