Job Summary
The IAM Engineer is a hands on technical role responsible for the implementation configuration and day to day operations of the organizations Identity and Access Management platforms. The role focuses on administering Ping Identity (SSO or MFA) and BeyondTrust (PAM) solutions managing user and access lifecycle activities configuring authentication policies and enforcing least privilege access. The Engineer will work closely with the IAM Architect security operations
Responsibilities
Experience Required
5 to 8 years of hands on experience in Identity and Access Management engineering including PAM SSO and MFA platform administration.
Key Responsibilities
Perform day to day administration of PAM (BeyondTrust) SSO and MFA (Ping Identity) platforms including configuration changes integrations and health checks.
Execute user and access lifecycle management activities onboarding role changes transfers terminations and privileged account provisioning.
Resolve access issues and incidents troubleshoot authentication failures SSO or federation problems MFA enrollment issues and PAM session errors.
Implement Access & Policy Management changes configure roles authentication policies adaptive access rules and policy maintenance per approved standards.
Enforce Least Privilege onboard privileged accounts to the vault configure session management and recording and remediate excessive entitlements.
Execute periodic access reviews generate certification campaigns support reviewers and process revocations and remediation actions.
Integrate applications with Ping Identity (SAML OAuth OIDC) and onboard privileged systems into BeyondTrust.
Maintain operational documentation runbooks and configuration baselines support audits and compliance evidence gathering.
Technical Skills & Technologies
Ping Identity PingFederate PingAccess PingOne PingID (hands on configuration).
BeyondTrust Password Safe Privileged Remote Access Endpoint Privilege Management.
Authentication standards SAML 2.0 OAuth 2.0 OIDC MFA technologies.
Directory services Active Directory Azure AD or Entra ID LDAP.
Scripting PowerShell Python or Bash for automation (advantageous).
Required Qualifications
Bachelors degree in Computer Science Information Technology Information Security or a related field.
Hands on experience administering Ping Identity and BeyondTrust platforms.
Strong understanding of SSO MFA federation and PAM concepts.
Experience with user lifecycle management and access certification processes.
Familiarity with ITIL based change incident and problem management.
Certifications Required
Ping Identity Certified Associate / Professional
BeyondTrust Certified Engineer / Administrator
CompTIA Security+
Microsoft Identity certifications (SC-300) (preferred)
ITIL Foundation (preferred)
コグニザントについて
コグニザント(NASDAQ: CTSH)は、AI Builderおよびテクノロジーサービスプロバイダーとして、お客様にフルスタックのAIソリューションを構築することで、AI投資と企業価値を結ぶ架け橋となっています。業界、ビジネスプロセス、エンジニアリングに関する当社の深い専門知識を活かし、組織固有のビジネス環境をテクノロジー・システムに組み込みます。これにより、人間の可能性を最大限に引き出し、確かな成果を実現するとともに、急速に変化する世界においてグローバル企業が常に一歩先を行くための支援を行っています。 詳細については、cognizant.ai をご覧ください。
雇用に関する追加情報
本募集に記載されている報酬情報は、掲載日時点で正確なものです。Cognizantは、適用される法令に従い、いつでも本情報を変更する権利を留保します。
応募者は、対面またはビデオ会議による面接への参加を求められる場合があります。また、各面接の際に、現在有効な州政府または政府発行の身分証明書の提示を求められる場合があります。
Cognizantは機会均等雇用主です。応募および選考において、人種、肌の色、性別、宗教、信条、性的指向、性自認、国籍、障がい、遺伝情報、妊娠、退役軍人の地位、その他連邦法・州法・地方自治体の法律により保護されるいかなる特性に基づく差別も行いません。







