Role: PingFederate Engineer / IAM Engineer
Summary
Work on design, configuration, and support of PingFederate-based authentication and SSO solutions for enterprise applications. Handle day-to-day IAM operations, troubleshooting, and enhancements across PingFederate, PingAccess, and related identity platforms.
Key Responsibilities
- Configure, deploy, and maintain PingFederate SSO integrations using SAML, OAuth, and OIDC.
- Set up IdP/SP connections, authentication policies, contract mappings, and token processors.
- Configure Password Credential Validators, IdP adapters, OAuth clients, and connection templates.
- Work on PingAccess policy creation, application onboarding, rule configuration, and troubleshooting.
- Integrate PingFederate with AD/LDAP directories and REST APIs for authentication and attribute retrieval.
- Troubleshoot login failures, SAML assertions, OAuth tokens, certificate issues, session problems, and adapter errors.
- Handle certificate lifecycle management: CSR, import/export, renewal, and trust store updates.
- Onboard new applications and work with dev teams to provide metadata, signing certs, and configuration guidance.
- Implement MFA and federation with Ping + third-party IDPs.
- Document configurations, create runbooks/playbooks, and support production deployments.
- Work with clients in the banking/financial domain following strict compliance and security guidelines.