Job Summary
We are seeking an experienced **IAM SME/Engineer** to design, implement, support, and enhance Identity and Access Management solutions across enterprise environments. The ideal candidate will have strong expertise in identity lifecycle management, authentication, authorization, SSO, MFA, directory services, and identity governance. The role will work closely with security, infrastructure, application, and compliance teams to ensure secure and compliant access management.
***
# Key Responsibilities
## IAM Solution Design & Implementation
* Design, deploy, and support enterprise IAM solutions.
* Develop and maintain IAM architecture, standards, and best practices.
* Implement authentication, authorization, and access control mechanisms.
* Support IAM transformation and modernization initiatives.
## Identity Lifecycle Management
* Manage Joiner-Mover-Leaver (JML) processes.
* Implement automated user provisioning and deprovisioning.
* Maintain identity repositories and access governance processes.
* Support role-based access control (RBAC) and attribute-based access control (ABAC).
## Authentication & Access Management
* Configure and administer:
* Single Sign-On (SSO)
* Multifactor Authentication (MFA)
* Adaptive/Risk-Based Authentication
* Federation Services
* Support SAML, OAuth 2.0, OpenID Connect (OIDC), and WS-Federation protocols.
* Troubleshoot authentication and authorization issues.
## Directory Services Management
* Administer Active Directory, LDAP, and Azure Entra ID environments.
* Manage identity synchronization and federation services.
* Support password management and self-service capabilities.
## Application Integration
* Integrate enterprise and cloud applications with IAM platforms.
* Implement user provisioning workflows and connector configurations.
* Work with application teams for onboarding and access governance requirements.
## Governance, Risk & Compliance
* Support access certification and attestation activities.
* Conduct access reviews and entitlement validation.
* Ensure compliance with internal policies and regulatory requirements.
* Support audit findings, remediation, and reporting activities.
## Operations & Support
* Troubleshoot IAM-related incidents and service requests.
* Monitor IAM platform health and performance.
* Create and maintain operational documentation and procedures.
* Participate in on-call support and incident response activities.
***
# Required Technical Skills
### IAM Technologies
* Identity & Access Management (IAM)
* Identity Governance & Administration (IGA)
* Access Management (AM)
* Privileged Access Management (PAM) concepts
### Authentication & Federation
* Single Sign-On (SSO)
* Multifactor Authentication (MFA)
* SAML 2.0
* OAuth 2.0
* OpenID Connect (OIDC)
* JWT
* Federation Services
### Directory Services
* Microsoft Active Directory
* Azure Entra ID (Azure AD)
* LDAP
* Active Directory Federation Services (ADFS)
### IAM Platforms (One or More)
* SailPoint
* Saviynt
* Okta
* ForgeRock
* Ping Identity
* Microsoft Entra Suite
* IBM Security Verify
* One Identity
* CyberArk (Integration knowledge)
### Scripting & Automation
* PowerShell
* Python
* REST APIs
* JSON
* XML
### Operating Systems
* Windows Server
* Linux/Unix
***
# Required Experience
* 4+ years of IAM implementation and support experience.
* Experience integrating applications using SAML, OAuth, and OIDC.
* Experience with user provisioning and lifecycle management.
* Strong understanding of access management and governance processes.
* Experience working in enterprise or regulated environments.
***
# Preferred Qualifications
* Bachelor's Degree in Computer Science, Information Security, or related discipline.
* Industry certifications such as:
* Microsoft Certified: Identity and Access Administrator
* SailPoint Certification
* Okta Certified Professional/Administrator
* ForgeRock Certification
* CISSP
* Security+
***
# Preferred Skills
* Zero Trust Security Architecture
* Cloud Identity Management (Azure, AWS, GCP)
* Privileged Access Management (PAM)
* ServiceNow Integration
* Identity Analytics and Reporting
* DevSecOps and CI/CD Security
***
# Soft Skills
* Strong stakeholder management and communication skills.
* Excellent analytical and troubleshooting abilities.
* Ability to work independently and lead IAM initiatives.
* Experience engaging with auditors, security teams, and business stakeholders.
* Strong documentation and governance mindset.
***
## Keywords
IAM, Identity and Access Management, SSO, MFA, Federation, OAuth, OIDC, SAML, Azure Entra ID, Active Directory, LDAP, SailPoint, Saviynt, Okta, ForgeRock, Ping Identity, Identity Governance, RBAC, ABAC, Access Reviews, User Provisioning, Authentication, Authorization, Zero Trust, PAM Integration.
Sobre a Cognizant
Cognizant (NASDAQ: CTSH) é uma construtora de IA e fornecedora de serviços de tecnologia, criando a ponte entre o investimento em IA e o valor para as empresas por meio do desenvolvimento de soluções de IA completas para nossos clientes. Nossa profunda experiência em setores, processos e engenharia nos permite incorporar o contexto único de cada organização em sistemas tecnológicos que potencializam a capacidade humana, geram resultados tangíveis e mantêm empresas globais à frente em um mundo em rápida transformação. Saiba mais em cognizant.ai ou @cognizant.
A Cognizant é uma empregadora que investe em equidade. Sua candidatura não será pautada em raça, cor, gênero, sexualidade, credo, origem, deficiência, gravidez ou qualquer outra característica protegida pelas leis brasileiras.
Informações adicionais de emprego
Os candidatos podem ser obrigados a comparecer a entrevistas presenciais ou por videoconferência. Além disso, os candidatos podem ser obrigados a apresentar seu documento de identificação emitido pelo estado ou governo atual durante cada entrevista.
Embora nosso sistema permita a candidatura em todos os idiomas, o(s) idioma(s) e o(s) nível(is) de proficiência exigidos para o trabalho variam. No entanto, é necessário um nível básico de inglês para fins de comunicação em toda a empresa.
A Cognizant é uma empregadora que investe em equidade. Sua candidatura não será pautada em raça, cor, gênero, sexualidade, credo, origem, deficiência, gravidez ou qualquer outra característica protegida pelas leis brasileiras.
Se você tem uma deficiência que requer adaptações razoáveis para procurar uma vaga de emprego ou enviar uma candidatura, envie um e-mail para [email protected] com sua solicitação e informações de contato.











