Job Summary
We are seeking an experienced **IAM SME/Engineer** to design, implement, support, and enhance Identity and Access Management solutions across enterprise environments. The ideal candidate will have strong expertise in identity lifecycle management, authentication, authorization, SSO, MFA, directory services, and identity governance. The role will work closely with security, infrastructure, application, and compliance teams to ensure secure and compliant access management.
***
# Key Responsibilities
## IAM Solution Design & Implementation
* Design, deploy, and support enterprise IAM solutions.
* Develop and maintain IAM architecture, standards, and best practices.
* Implement authentication, authorization, and access control mechanisms.
* Support IAM transformation and modernization initiatives.
## Identity Lifecycle Management
* Manage Joiner-Mover-Leaver (JML) processes.
* Implement automated user provisioning and deprovisioning.
* Maintain identity repositories and access governance processes.
* Support role-based access control (RBAC) and attribute-based access control (ABAC).
## Authentication & Access Management
* Configure and administer:
* Single Sign-On (SSO)
* Multifactor Authentication (MFA)
* Adaptive/Risk-Based Authentication
* Federation Services
* Support SAML, OAuth 2.0, OpenID Connect (OIDC), and WS-Federation protocols.
* Troubleshoot authentication and authorization issues.
## Directory Services Management
* Administer Active Directory, LDAP, and Azure Entra ID environments.
* Manage identity synchronization and federation services.
* Support password management and self-service capabilities.
## Application Integration
* Integrate enterprise and cloud applications with IAM platforms.
* Implement user provisioning workflows and connector configurations.
* Work with application teams for onboarding and access governance requirements.
## Governance, Risk & Compliance
* Support access certification and attestation activities.
* Conduct access reviews and entitlement validation.
* Ensure compliance with internal policies and regulatory requirements.
* Support audit findings, remediation, and reporting activities.
## Operations & Support
* Troubleshoot IAM-related incidents and service requests.
* Monitor IAM platform health and performance.
* Create and maintain operational documentation and procedures.
* Participate in on-call support and incident response activities.
***
# Required Technical Skills
### IAM Technologies
* Identity & Access Management (IAM)
* Identity Governance & Administration (IGA)
* Access Management (AM)
* Privileged Access Management (PAM) concepts
### Authentication & Federation
* Single Sign-On (SSO)
* Multifactor Authentication (MFA)
* SAML 2.0
* OAuth 2.0
* OpenID Connect (OIDC)
* JWT
* Federation Services
### Directory Services
* Microsoft Active Directory
* Azure Entra ID (Azure AD)
* LDAP
* Active Directory Federation Services (ADFS)
### IAM Platforms (One or More)
* SailPoint
* Saviynt
* Okta
* ForgeRock
* Ping Identity
* Microsoft Entra Suite
* IBM Security Verify
* One Identity
* CyberArk (Integration knowledge)
### Scripting & Automation
* PowerShell
* Python
* REST APIs
* JSON
* XML
### Operating Systems
* Windows Server
* Linux/Unix
***
# Required Experience
* 4+ years of IAM implementation and support experience.
* Experience integrating applications using SAML, OAuth, and OIDC.
* Experience with user provisioning and lifecycle management.
* Strong understanding of access management and governance processes.
* Experience working in enterprise or regulated environments.
***
# Preferred Qualifications
* Bachelor's Degree in Computer Science, Information Security, or related discipline.
* Industry certifications such as:
* Microsoft Certified: Identity and Access Administrator
* SailPoint Certification
* Okta Certified Professional/Administrator
* ForgeRock Certification
* CISSP
* Security+
***
# Preferred Skills
* Zero Trust Security Architecture
* Cloud Identity Management (Azure, AWS, GCP)
* Privileged Access Management (PAM)
* ServiceNow Integration
* Identity Analytics and Reporting
* DevSecOps and CI/CD Security
***
# Soft Skills
* Strong stakeholder management and communication skills.
* Excellent analytical and troubleshooting abilities.
* Ability to work independently and lead IAM initiatives.
* Experience engaging with auditors, security teams, and business stakeholders.
* Strong documentation and governance mindset.
***
## Keywords
IAM, Identity and Access Management, SSO, MFA, Federation, OAuth, OIDC, SAML, Azure Entra ID, Active Directory, LDAP, SailPoint, Saviynt, Okta, ForgeRock, Ping Identity, Identity Governance, RBAC, ABAC, Access Reviews, User Provisioning, Authentication, Authorization, Zero Trust, PAM Integration.
关于高知特 (Cognizant)
高知特(Cognizant)(纳斯达克代码:CTSH)作为一家AI Builder和相关技术服务提供商,致力于通过打造全栈AI解决方案,帮助企业将人工智能投资转化为实际价值。公司凭借深厚的行业经验、流程优化和工程技术专长,将企业独特的业务场景融入科技系统,赋能组织释放人才潜能,推动切实成果,并帮助全球企业在瞬息万变的环境中保持领先。如需了解更多详情,敬请访问 cognizant.ai 或关注@cognizant。
补充雇佣信息
薪酬信息截至本职位发布之日为准。Cognizant 保留在适用法律允许的范围内随时修改该信息的权利。
申请人可能需要通过现场面试或视频会议的方式参加面试。此外,候选人在每次面试时可能需要出示其当前所在州或政府签发的有效身份证件。
Cognizant 是一家提供平等就业机会的雇主。在招聘过程中,您的申请和候选资格不会因种族、肤色、性别、宗教、信仰、性取向、性别认同、国籍、残疾、遗传信息、怀孕、退伍军人身份或任何其他受联邦、州或地方法律保护的特征而受到影响。







