Job Summary
We are seeking an experienced **IAM SME/Engineer** to design, implement, support, and enhance Identity and Access Management solutions across enterprise environments. The ideal candidate will have strong expertise in identity lifecycle management, authentication, authorization, SSO, MFA, directory services, and identity governance. The role will work closely with security, infrastructure, application, and compliance teams to ensure secure and compliant access management.
***
# Key Responsibilities
## IAM Solution Design & Implementation
* Design, deploy, and support enterprise IAM solutions.
* Develop and maintain IAM architecture, standards, and best practices.
* Implement authentication, authorization, and access control mechanisms.
* Support IAM transformation and modernization initiatives.
## Identity Lifecycle Management
* Manage Joiner-Mover-Leaver (JML) processes.
* Implement automated user provisioning and deprovisioning.
* Maintain identity repositories and access governance processes.
* Support role-based access control (RBAC) and attribute-based access control (ABAC).
## Authentication & Access Management
* Configure and administer:
* Single Sign-On (SSO)
* Multifactor Authentication (MFA)
* Adaptive/Risk-Based Authentication
* Federation Services
* Support SAML, OAuth 2.0, OpenID Connect (OIDC), and WS-Federation protocols.
* Troubleshoot authentication and authorization issues.
## Directory Services Management
* Administer Active Directory, LDAP, and Azure Entra ID environments.
* Manage identity synchronization and federation services.
* Support password management and self-service capabilities.
## Application Integration
* Integrate enterprise and cloud applications with IAM platforms.
* Implement user provisioning workflows and connector configurations.
* Work with application teams for onboarding and access governance requirements.
## Governance, Risk & Compliance
* Support access certification and attestation activities.
* Conduct access reviews and entitlement validation.
* Ensure compliance with internal policies and regulatory requirements.
* Support audit findings, remediation, and reporting activities.
## Operations & Support
* Troubleshoot IAM-related incidents and service requests.
* Monitor IAM platform health and performance.
* Create and maintain operational documentation and procedures.
* Participate in on-call support and incident response activities.
***
# Required Technical Skills
### IAM Technologies
* Identity & Access Management (IAM)
* Identity Governance & Administration (IGA)
* Access Management (AM)
* Privileged Access Management (PAM) concepts
### Authentication & Federation
* Single Sign-On (SSO)
* Multifactor Authentication (MFA)
* SAML 2.0
* OAuth 2.0
* OpenID Connect (OIDC)
* JWT
* Federation Services
### Directory Services
* Microsoft Active Directory
* Azure Entra ID (Azure AD)
* LDAP
* Active Directory Federation Services (ADFS)
### IAM Platforms (One or More)
* SailPoint
* Saviynt
* Okta
* ForgeRock
* Ping Identity
* Microsoft Entra Suite
* IBM Security Verify
* One Identity
* CyberArk (Integration knowledge)
### Scripting & Automation
* PowerShell
* Python
* REST APIs
* JSON
* XML
### Operating Systems
* Windows Server
* Linux/Unix
***
# Required Experience
* 4+ years of IAM implementation and support experience.
* Experience integrating applications using SAML, OAuth, and OIDC.
* Experience with user provisioning and lifecycle management.
* Strong understanding of access management and governance processes.
* Experience working in enterprise or regulated environments.
***
# Preferred Qualifications
* Bachelor's Degree in Computer Science, Information Security, or related discipline.
* Industry certifications such as:
* Microsoft Certified: Identity and Access Administrator
* SailPoint Certification
* Okta Certified Professional/Administrator
* ForgeRock Certification
* CISSP
* Security+
***
# Preferred Skills
* Zero Trust Security Architecture
* Cloud Identity Management (Azure, AWS, GCP)
* Privileged Access Management (PAM)
* ServiceNow Integration
* Identity Analytics and Reporting
* DevSecOps and CI/CD Security
***
# Soft Skills
* Strong stakeholder management and communication skills.
* Excellent analytical and troubleshooting abilities.
* Ability to work independently and lead IAM initiatives.
* Experience engaging with auditors, security teams, and business stakeholders.
* Strong documentation and governance mindset.
***
## Keywords
IAM, Identity and Access Management, SSO, MFA, Federation, OAuth, OIDC, SAML, Azure Entra ID, Active Directory, LDAP, SailPoint, Saviynt, Okta, ForgeRock, Ping Identity, Identity Governance, RBAC, ABAC, Access Reviews, User Provisioning, Authentication, Authorization, Zero Trust, PAM Integration.
About Cognizant:
Cognizant (Nasdaq: CTSH) is an AI Builder and technology services provider, bridging the gap between AI investment and enterprise value by building full-stack AI solutions for our clients. Our deep industry, process and engineering expertise enables us to build an organization’s unique context into technology systems that amplify human potential, drive tangible outcomes and keep global enterprises ahead in a fast-changing world. See how at cognizant.ai or @cognizant.
Additional employment information
Compensation information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.
Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government issued ID during each interview.
Cognizant is an equal opportunity employer. Your application and candidacy will not be considered based on race, color, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.












