Search by job, company or skills

Ameriprise Financial Services, LLC

Identity & Access Management Lead

Save
  • Posted 11 hours ago
  • Be among the first 10 applicants
Early Applicant

Job Description

About Our Company

Ameriprise India LLP has been providing client based financial solutions to help clients plan and achieve their financial objectives for 20 years. We are part of Ameriprise Financial Inc., a US financial planning company headquartered in Minneapolis with a global presence and diversified financial services leader with more than $1.5 trillion in assets under management, administration and advisement as of year-end 2024. The firm's focus areas include Asset Management and Advice, Retirement Planning and Insurance Protection.

Be part of an inclusive, collaborative culture that rewards you for your contributions, and work with other talented individuals who share your passion for doing great work. You'll also have plenty of opportunities to make your mark at the office and a difference in your community. So, if you're talented, driven and want to work for a strong, ethical company that cares, take the next step and create a career at Ameriprise India LLP.

Job Description

IAM Tech Lead with 7+ years of experience in Identity & Access Management, specializing in Ping Identity solutions, SiteMinder-to-Ping migration, and Terraform-based automation. The role requires strong analytical and solutioning capabilities, with the ability to lead design, development, and migration initiatives while ensuring secure, scalable, and high-performance IAM solutions.

The ideal candidate will be responsible for driving end-to-end IAM architecture, leading engineering and migration efforts, and ensuring seamless integration and operational excellence across enterprise IAM platforms.

Lead IAM solution design and architecture using Ping Identity suite (PingFederate, PingAccess, PingDirectory, PingID)

Provide technical direction and oversight across IAM development and integration activities

Review solution design, code quality, and ensure alignment with enterprise security standards

Migration & TransformationLead end-to-end migration from CA SiteMinder to Ping Identity

Drive application onboarding, SSO integrations, and policy migration

Redesign authentication and authorization flows using modern protocols (SAML, OAuth, OIDC)

Enable transition from legacy agent-based integrations to token-based architectures

Engineering & AutomationDevelop infrastructure using Terraform (IaC) for IAM platform deployment and management

Drive automation initiatives across provisioning, onboarding, and operational workflows

Enable API-based integrations and modern authentication patterns

IAM Operations & StabilityOversee L2/L3 production support ensuring 24x7 availability of IAM platforms

Drive incident management, root cause analysis (RCA), and service improvements

Ensure SLA adherence, system monitoring, and proactive issue resolution

Lead DR readiness, certificate lifecycle management, and platform resiliency

Stakeholder & Team ManagementCollaborate with architecture, security, infrastructure, and application teams

Act as technical SME for IAM discussions and decision-making forums

Mentor and guide junior engineers and support team delivery

Drive stakeholder communication, change management, and governance alignment

Required Skills7+ years of experience in IAM domain

Strong hands-on experience in: Ping Identity (PingFederate, PingAccess, PingDirectory, PingID) Broadcom/CA SiteMinder

Proven experience in SiteMinder → Ping migration (mandatory)

Strong expertise in SSO, Federation, and IAM architecture

Deep knowledge of SAML, OAuth2, OpenID Connect (OIDC)

Experience with Terraform and automation frameworks

Strong troubleshooting and IAM flow analysis skills

Preferred SkillsExperience with Azure AD (Entra ID), Active Directory, AWS IAM

Exposure to CI/CD tools (Jenkins, Ansible, Bitbucket)

Experience with containers (Docker, Kubernetes)

Knowledge of monitoring tools (Dynatrace, Sumo Logic, CA APM, etc.)

Understanding of Zero Trust, Identity Governance, and Risk-based authentication

Soft SkillsStrong analytical and problem-solving mindset

Leadership and ownership-driven approach

Ability to manage high-pressure production scenarios

Excellent communication and stakeholder management skills

EducationBachelor's degree in Computer Science / IT / Engineering or equivalent

Work Model24x7 support environment (escalation ownership)

Rotational shifts / on-call support when required

Onsite–offshore collaboration model

In-Office Collaboration

We are a client-centric, relationship-based business. Working together, in-person, is foundational to how we achieve results. By fostering a culture of face-to-face collaboration, idea sharing, productivity and personal connection, we deliver for our stakeholders — clients, advisors, employees and shareholders. Our employees work in the office at least three (3) days per week, with flexibility to work from home two (2) days per week. Some roles may require additional in-office time or different in-office expectations, and specific requirements will be discussed during the hiring process.

Full-Time/Part-Time

Full time

Timings

(2:00p-10:30p)

India Business Unit

AWMPO AWMP&S President's Office

Job Family Group

Technology

Ameriprise India LLP is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, genetic information, age, sexual orientation, gender identity, disability, military status, veteran status, marital status, pregnancy, family status or any other basis prohibited by law.

We are committed to fostering an inclusive and accessible recruitment process for individuals with disabilities. If you require a reasonable accommodation to participate in the application or interview process, speak to your recruiter to discuss how we can support you.

More Info

Job Type:
Industry:
Function:
Employment Type:

Job ID: 149067285

Similar Jobs

Noida, India

Skills:

JavaTomcatApplication ArchitectureWebserverSoapWebservicesJ2EEJiraJenkinsBit BucketConfluenceIisAzure AdDockerWeb Application DevelopmentAnsibleRESTfulAzureKubernetesAWSAzure MFAApp servers