Job Summary
We are seeking an experienced **IAM SME/Engineer** to design, implement, support, and enhance Identity and Access Management solutions across enterprise environments. The ideal candidate will have strong expertise in identity lifecycle management, authentication, authorization, SSO, MFA, directory services, and identity governance. The role will work closely with security, infrastructure, application, and compliance teams to ensure secure and compliant access management.
***
# Key Responsibilities
## IAM Solution Design & Implementation
* Design, deploy, and support enterprise IAM solutions.
* Develop and maintain IAM architecture, standards, and best practices.
* Implement authentication, authorization, and access control mechanisms.
* Support IAM transformation and modernization initiatives.
## Identity Lifecycle Management
* Manage Joiner-Mover-Leaver (JML) processes.
* Implement automated user provisioning and deprovisioning.
* Maintain identity repositories and access governance processes.
* Support role-based access control (RBAC) and attribute-based access control (ABAC).
## Authentication & Access Management
* Configure and administer:
* Single Sign-On (SSO)
* Multifactor Authentication (MFA)
* Adaptive/Risk-Based Authentication
* Federation Services
* Support SAML, OAuth 2.0, OpenID Connect (OIDC), and WS-Federation protocols.
* Troubleshoot authentication and authorization issues.
## Directory Services Management
* Administer Active Directory, LDAP, and Azure Entra ID environments.
* Manage identity synchronization and federation services.
* Support password management and self-service capabilities.
## Application Integration
* Integrate enterprise and cloud applications with IAM platforms.
* Implement user provisioning workflows and connector configurations.
* Work with application teams for onboarding and access governance requirements.
## Governance, Risk & Compliance
* Support access certification and attestation activities.
* Conduct access reviews and entitlement validation.
* Ensure compliance with internal policies and regulatory requirements.
* Support audit findings, remediation, and reporting activities.
## Operations & Support
* Troubleshoot IAM-related incidents and service requests.
* Monitor IAM platform health and performance.
* Create and maintain operational documentation and procedures.
* Participate in on-call support and incident response activities.
***
# Required Technical Skills
### IAM Technologies
* Identity & Access Management (IAM)
* Identity Governance & Administration (IGA)
* Access Management (AM)
* Privileged Access Management (PAM) concepts
### Authentication & Federation
* Single Sign-On (SSO)
* Multifactor Authentication (MFA)
* SAML 2.0
* OAuth 2.0
* OpenID Connect (OIDC)
* JWT
* Federation Services
### Directory Services
* Microsoft Active Directory
* Azure Entra ID (Azure AD)
* LDAP
* Active Directory Federation Services (ADFS)
### IAM Platforms (One or More)
* SailPoint
* Saviynt
* Okta
* ForgeRock
* Ping Identity
* Microsoft Entra Suite
* IBM Security Verify
* One Identity
* CyberArk (Integration knowledge)
### Scripting & Automation
* PowerShell
* Python
* REST APIs
* JSON
* XML
### Operating Systems
* Windows Server
* Linux/Unix
***
# Required Experience
* 4+ years of IAM implementation and support experience.
* Experience integrating applications using SAML, OAuth, and OIDC.
* Experience with user provisioning and lifecycle management.
* Strong understanding of access management and governance processes.
* Experience working in enterprise or regulated environments.
***
# Preferred Qualifications
* Bachelor's Degree in Computer Science, Information Security, or related discipline.
* Industry certifications such as:
* Microsoft Certified: Identity and Access Administrator
* SailPoint Certification
* Okta Certified Professional/Administrator
* ForgeRock Certification
* CISSP
* Security+
***
# Preferred Skills
* Zero Trust Security Architecture
* Cloud Identity Management (Azure, AWS, GCP)
* Privileged Access Management (PAM)
* ServiceNow Integration
* Identity Analytics and Reporting
* DevSecOps and CI/CD Security
***
# Soft Skills
* Strong stakeholder management and communication skills.
* Excellent analytical and troubleshooting abilities.
* Ability to work independently and lead IAM initiatives.
* Experience engaging with auditors, security teams, and business stakeholders.
* Strong documentation and governance mindset.
***
## Keywords
IAM, Identity and Access Management, SSO, MFA, Federation, OAuth, OIDC, SAML, Azure Entra ID, Active Directory, LDAP, SailPoint, Saviynt, Okta, ForgeRock, Ping Identity, Identity Governance, RBAC, ABAC, Access Reviews, User Provisioning, Authentication, Authorization, Zero Trust, PAM Integration.
Über Cognizant
Cognizant (NASDAQ: CTSH) i ist ein Technologiedienstleister und Entwickler von KI-Lösungen. Wir schlagen die Brücke zwischen KI-Investitionen und echtem unternehmerischem Mehrwert, indem wir ganzheitliche Full-Stack-KI-Lösungen für unsere Kunden entwickeln. Mit unserer fundierten Branchen-, Prozess- und Engineering-Expertise integrieren wir die spezifischen Anforderungen von Unternehmen passgenau in Technologiesysteme. So entfalten wir das menschliche Potenzial, erzielen greifbare Ergebnisse und sichern globalen Unternehmen in einer sich rasant wandelnden Welt den entscheidenden Vorsprung. Erfahren Sie mehr unter cognizant.ai oder @cognizant.
Zusätzliche Informationen zur Beschäftigung
Die Vergütungsinformationen sind zum Zeitpunkt der Veröffentlichung dieser Stellenausschreibung korrekt. Cognizant behält sich das Recht vor, diese Informationen jederzeit unter Beachtung der geltenden gesetzlichen Bestimmungen zu ändern.
Bewerberinnen und Bewerber können verpflichtet sein, an Vorstellungsgesprächen persönlich oder per Videokonferenz teilzunehmen. Darüber hinaus kann es erforderlich sein, bei jedem Gespräch einen gültigen staatlichen Lichtbildausweis vorzulegen.
Cognizant ist ein Arbeitgeber mit Chancengleichheit. Ihre Bewerbung und Kandidatur werden nicht aufgrund von Rasse, Hautfarbe, Geschlecht, Religion, Glaubensbekenntnis, sexueller Orientierung, Geschlechtsidentität, nationaler Herkunft, Behinderung, genetischen Informationen, Schwangerschaft, Veteranenstatus oder sonstiger durch bundes‑, landes‑ oder kommunalrechtliche Vorschriften geschützter Merkmale berücksichtigt oder abgelehnt.







