Search by job, company or skills

Senior IAM Consultant

Senior IAM Consultant

MRP group
Fresher
Not Disclosed
  • Posted 14 hours ago
  • Be among the first 10 applicants

Job Description

We are looking for a PingAuthorize Engineer to design, implement, and support fine-grained, policy-based authorization solutions across enterprise applications, APIs, and microservices.

The role will focus on PingAuthorize, dynamic authorization, ABAC/PBAC, and PEP/PDP/PIP architecture, working closely with IAM, security, and application teams.

Key Responsibilities

  • Design and implement fine-grained authorization policies using PingAuthorize.
  • Configure and manage ABAC, PBAC and RBAC authorization models.
  • Develop and maintain Policy Decision Points (PDP) and Policy Enforcement Points (PEP).
  • Integrate Policy Information Points (PIP) with identity, entitlement, and business data sources.
  • Implement dynamic authorization based on user, resource, business, and contextual attributes.
  • Integrate PingAuthorize with REST APIs, applications, microservices, and enterprise platforms.
  • Troubleshoot authorization decisions, policy conflicts, and integration issues.
  • Support authorization policy testing, deployment, promotion, monitoring, and auditing.
  • Work with OAuth 2.0, OIDC and SAML alongside PingFederate where required.
  • Develop reusable authorization patterns and support security, audit, and governance requirements.

Required Skills

  • Strong hands-on experience with PingAuthorize / PingAuthorization.
  • Strong understanding of ABAC, PBAC, RBAC and fine-grained authorization.
  • Good knowledge of PEP, PDP and PIP architecture.
  • Experience with REST APIs, JSON and API security.
  • Knowledge of OAuth 2.0 and OpenID Connect (OIDC).
  • Experience with Java and scripting.
  • Knowledge of LDAP / directory services.
  • Experience with Linux/Unix and CI/CD environments.
  • Understanding of enterprise IAM and Zero Trust authorization concepts.

Preferred

  • Experience with PingFederate, PingDirectory and PingAccess.
  • Experience securing APIs and microservices.
  • Experience integrating authorization with enterprise identity and entitlement systems.
  • Experience supporting large-scale enterprise IAM or CIAM environments.

Key Skills

PingDirectory

OAuth 2.0

LDAP directory services

CI/CD environments

ABAC

OpenID Connect (OIDC)

PingAccess

PBAC

Zero Trust authorization

PIP

PingAuthorize

PingAuthorization

About Company