Job Summary
We are seeking an experienced **IAM SME/Engineer** to design, implement, support, and enhance Identity and Access Management solutions across enterprise environments. The ideal candidate will have strong expertise in identity lifecycle management, authentication, authorization, SSO, MFA, directory services, and identity governance. The role will work closely with security, infrastructure, application, and compliance teams to ensure secure and compliant access management.
***
# Key Responsibilities
## IAM Solution Design & Implementation
* Design, deploy, and support enterprise IAM solutions.
* Develop and maintain IAM architecture, standards, and best practices.
* Implement authentication, authorization, and access control mechanisms.
* Support IAM transformation and modernization initiatives.
## Identity Lifecycle Management
* Manage Joiner-Mover-Leaver (JML) processes.
* Implement automated user provisioning and deprovisioning.
* Maintain identity repositories and access governance processes.
* Support role-based access control (RBAC) and attribute-based access control (ABAC).
## Authentication & Access Management
* Configure and administer:
* Single Sign-On (SSO)
* Multifactor Authentication (MFA)
* Adaptive/Risk-Based Authentication
* Federation Services
* Support SAML, OAuth 2.0, OpenID Connect (OIDC), and WS-Federation protocols.
* Troubleshoot authentication and authorization issues.
## Directory Services Management
* Administer Active Directory, LDAP, and Azure Entra ID environments.
* Manage identity synchronization and federation services.
* Support password management and self-service capabilities.
## Application Integration
* Integrate enterprise and cloud applications with IAM platforms.
* Implement user provisioning workflows and connector configurations.
* Work with application teams for onboarding and access governance requirements.
## Governance, Risk & Compliance
* Support access certification and attestation activities.
* Conduct access reviews and entitlement validation.
* Ensure compliance with internal policies and regulatory requirements.
* Support audit findings, remediation, and reporting activities.
## Operations & Support
* Troubleshoot IAM-related incidents and service requests.
* Monitor IAM platform health and performance.
* Create and maintain operational documentation and procedures.
* Participate in on-call support and incident response activities.
***
# Required Technical Skills
### IAM Technologies
* Identity & Access Management (IAM)
* Identity Governance & Administration (IGA)
* Access Management (AM)
* Privileged Access Management (PAM) concepts
### Authentication & Federation
* Single Sign-On (SSO)
* Multifactor Authentication (MFA)
* SAML 2.0
* OAuth 2.0
* OpenID Connect (OIDC)
* JWT
* Federation Services
### Directory Services
* Microsoft Active Directory
* Azure Entra ID (Azure AD)
* LDAP
* Active Directory Federation Services (ADFS)
### IAM Platforms (One or More)
* SailPoint
* Saviynt
* Okta
* ForgeRock
* Ping Identity
* Microsoft Entra Suite
* IBM Security Verify
* One Identity
* CyberArk (Integration knowledge)
### Scripting & Automation
* PowerShell
* Python
* REST APIs
* JSON
* XML
### Operating Systems
* Windows Server
* Linux/Unix
***
# Required Experience
* 4+ years of IAM implementation and support experience.
* Experience integrating applications using SAML, OAuth, and OIDC.
* Experience with user provisioning and lifecycle management.
* Strong understanding of access management and governance processes.
* Experience working in enterprise or regulated environments.
***
# Preferred Qualifications
* Bachelor's Degree in Computer Science, Information Security, or related discipline.
* Industry certifications such as:
* Microsoft Certified: Identity and Access Administrator
* SailPoint Certification
* Okta Certified Professional/Administrator
* ForgeRock Certification
* CISSP
* Security+
***
# Preferred Skills
* Zero Trust Security Architecture
* Cloud Identity Management (Azure, AWS, GCP)
* Privileged Access Management (PAM)
* ServiceNow Integration
* Identity Analytics and Reporting
* DevSecOps and CI/CD Security
***
# Soft Skills
* Strong stakeholder management and communication skills.
* Excellent analytical and troubleshooting abilities.
* Ability to work independently and lead IAM initiatives.
* Experience engaging with auditors, security teams, and business stakeholders.
* Strong documentation and governance mindset.
***
## Keywords
IAM, Identity and Access Management, SSO, MFA, Federation, OAuth, OIDC, SAML, Azure Entra ID, Active Directory, LDAP, SailPoint, Saviynt, Okta, ForgeRock, Ping Identity, Identity Governance, RBAC, ABAC, Access Reviews, User Provisioning, Authentication, Authorization, Zero Trust, PAM Integration.
À propos de Cognizant
Cognizant (NASDAQ : CTSH) est un AI Builder et une entreprise de services numériques (ESN) élaborant des solutions complètes d’IA maximisant les investissements pour des résultats concrets. Sa profonde expertise des métiers, des processus et des technologies lui permet d’intégrer dans les systèmes technologiques le contexte unique de chaque organisation de l’ingénierie à la production à l’échelle. Son objectif : améliorer l’efficacité des équipes, créer de la valeur et permettre aux grandes entreprises de rester performantes dans un monde qui évolue rapidement. Pour en savoir plus : cognizant.ai ou @cognizant.
Renseignments suppplémentaires sur l'emploi
Les informations sur la rémunération sont exactes à la date de publication. Cognizant se réserve le droit de modifier ces informations à tout moment, conformément aux lois applicables.
Les exigences linguistiques varient selon les postes, mais nous demandons à tous les candidats d’avoir une connaissance de base de l’anglais afin de faciliter les communications internes à l’échelle de l’entreprise. Pour les postes basés au Québec, une maîtrise de l’anglais est requise puisque vous fournirez des services et collaborerez avec des parties prenantes situées hors de la province, qui ne parlent pas nécessairement le français.
Cognizant est un employeur souscrivant au principe de l’égalité d’accès à l’emploi. Votre candidature et votre dossier ne seront pas examinés en fonction de la race, de la couleur, du sexe, de la religion, des croyances, de l'orientation sexuelle, de l'identité de genre, de l'origine nationale, du handicap, de l'information génétique, de la grossesse, du statut d'ancien combattant ou de toute autre caractéristique protégée telle que décrite par les lois fédérales, provinciales ou locales.
Si vous avez un handicap qui nécessite un aménagement raisonnable pour rechercher une offre d'emploi ou poser une candidature, envoyiez un courriel à [email protected] avec votre demande et vos coordonnées.











