Ping Engineer, AVP
Job Description
The role of the Ping Engineer will be managing and administrating the Ping Identity Suite to enable single sign on and SAML for customer facing and internal applications. The engineer will also be responsible for the Ping single sign on and SAML integrations implementing IDP and/or SP initiated single sign on. The engineer will be working with internal application developers and business units as well as communicating with external software vendors. The engineer will be responsible for upgrading and maintaining the current Ping Product Suites as well as addressing security vulnerabilities along with troubleshooting any issues related to the Ping Identity and Azure product suites and the corresponding applications. The role will include on-call responsibilities and working with offshore as part of the overall operational support model.
Major Responsibilities
- Administration of IAM products for Ping product suite (Ping Access, Ping Federate, Ping Directory)
- Experience with patching and upgrading of Ping Products.
- Implement Federation using SAML 2.0 with Microsoft Azure AD or Ping Federate.
- Implement OAuth integration for Single Sign on with Microsoft Azure AD.
- Implement IDP as well as SP initiated Federation SSO.
- Configure Encryption and Signing of SAML assertion.
- Web server (Apache, Tomcat, IBM HTTP Server and IIS) agent installations & configuration, Policy, Rules, Realms, Response and Auth Schemes set up.
- Monitors systems activities and fine tunes system parameters and configuration to optimize performance and ensure availability and security of systems.
- Troubleshoots and resolves system service failures by identifying and analyzing the situation and provides corrective actions.
- Provides expertise on decisions and priorities regarding systems architecture of IAM Products (Microsoft Azure AD and PING Identity).
- Creates documentation specific to deployment of IAM PING products.
- Work with internal parties and external vendors to setup SAML federation.
- Able to coordinate and work with multiple teams.
- Promote DevOps culture and drive adoption of tools and practices.
Qualifications
- Bachelor’s Degree or equivalent experience in Identity/Access Management.
- Experience with MFA (multi-factor authentication) and DNS technology required.
- 3+ years of management and maintenance experience of IAM Ping Identity Suite, Microsoft Azure AD, Single-Sign On, OAuth, OIC, SAML, Active Directory Federated Services required.
- Strong background in Windows, Active Directory, virtualization, and Identity/Access Management a must.
- Experience with MFA (multi-factor authentication) and DNS technology required.
- Knowledge of Web Server and application server technologies. Apache, JBOSS Web Server, JBOSS Application Server, IBM WebSphere, Tomcat, IIS.
- Knowledge of Web Application security, Software Security, HTTP, SSL, Certificates and related technologies.
Education
Bachelor's degree in Computer Science or a closely-related discipline, or an equivalent combination of formal education and experience.
Pay
The typical base pay range for this role is between $136k - $171k depending on job-related knowledge, skills, experience, and location.
Benefits
We will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws (including (i) the San Francisco Fair Chance Ordinance, (ii) the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair Chance Ordinance, and (iv) the California Fair Chance Act) to the extent that (a) an applicant is not subject to a statutory disqualification pursuant to Section 3(a)(39) of the Securities and Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity Exchange Act, and (b) they do not conflict with the background screening requirements of the Financial Industry Regulatory Authority (FINRA) and the National Futures Association (NFA).
Equal Opportunity Employer
We are proud to be an Equal Opportunity Employer and committed to leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business. We do not discriminate on the basis of race, color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and military status, disability, medical condition, sexual orientation, genetic information, or any other status of an individual or that individual’s associates or relatives that is protected under applicable federal, state, or local law.