Назад
13 часов назад

Senior Implementation Engineer (IAM)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
vacancy_detail.hirify_telegram_tooltipВакансия из Telegram канала -

Мэтч & Сопровод

Покажет вашу совместимость и напишет письмо

Описание вакансии

Senior Implementation Engineer

Company

1Kosmos, Inc.

Conditions

6 days ago Senior Edison, New Jersey, United States Hybrid Full Time Engineering Jobs by 1Kosmos, Inc.

1Kosmos, Inc. 1Kosmos provides identity verification, passwordless authentication, and user reverification through a privacy-first platform. Its solutions serve workforce, customer, and government identity use cases, including enterprise clients and large-scale deployments. Distributed Funding Series B ($57M) Investors NextEra Energy Ventures Forgepoint Capital Oquirrh Ventures Gula Tech Adventures About 1Kosmos, Inc. 1Kosmos offers an identity platform that verifies users during onboarding, captures biometrics, issues decentralized credentials, enables passwordless authentication, and reverifies identities when risk changes. The company provides integrations, APIs, developer documentation, and solutions for workforce identity, customer identity, citizen identity, and AI agents. Its clients include enterprises, government organizations, and large workforces such as Concentrix's 450,000 users. View jobs by 1Kosmos, Inc.

Skills

Active Directory Bash Customer Implementation Enterprise Integration Entra Id Federation Fido2 Iam Javascript Json Ldap Mfa Oauth Oidc Passkey Passwordless Authentication Pki Powershell Python Rest Api Saml Scim Siem Sso Webauthn Xml Zero-Trust

About the Role

You will lead end-to-end deployments of the passwordless authentication and identity verification platform for enterprise and public-sector customers. You will run discovery workshops, architecture reviews, and technical design sessions, then develop implementation plans, migration strategies, and deployment runbooks. You will serve as the primary technical lead during customer onboarding and production rollouts while managing multiple implementations simultaneously. You will design and implement Single Sign-On integrations using SAML 2.0, OpenID Connect, OAuth 2.0, and WS-Federation, and integrate with identity providers including Microsoft Entra ID, PingFederate, Okta, ADFS, ForgeRock, and custom providers. You will deploy passwordless and identity verification solutions using FIDO2, passkeys, WebAuthn, and certificate-based authentication, and integrate with Active Directory, LDAP, HR systems, SIEM platforms, and MFA solutions. You will build automation scripts in Python, PowerShell, and JavaScript, develop and troubleshoot REST API integrations, and create deployment automation and operational tooling. You will act as a trusted technical advisor, mentor customer teams on passwordless best practices, support escalated technical issues, and provide implementation feedback to Product and Engineering.

Requirements

  • 9+ years of hands-on IAM, SSO, or Federation implementation experience
  • 5+ years implementing enterprise authentication and access management solutions
  • Experience leading customer-facing technical implementations
  • Experience integrating enterprise applications and SaaS platforms using federation standards
  • Proven ability to manage complex technical deployments involving multiple stakeholders
  • Strong experience with SAML 2.0, OpenID Connect, OAuth 2.0, SCIM, Active Directory, LDAP, Microsoft Entra ID, MFA, passwordless authentication, PKI, certificate management, REST APIs, JSON, and XML
  • Experience with one or more of Microsoft Entra ID, Ping Identity PingFederate, Okta, ForgeRock, SailPoint, or CyberArk
  • Programming or scripting experience with Python, PowerShell, JavaScript, and Bash

Responsibilities

  • Lead end-to-end deployment of solutions for enterprise and public-sector customers
  • Conduct discovery workshops, architecture reviews, and technical design sessions
  • Develop implementation plans, migration strategies, and deployment runbooks
  • Serve as the primary technical lead during customer onboarding and production rollouts
  • Manage multiple customer implementations simultaneously
  • Design and implement SSO integrations using SAML 2.0, OIDC, OAuth 2.0, and WS-Federation
  • Integrate with enterprise Identity Providers including Microsoft Entra ID, PingFederate, Okta, ADFS, and ForgeRock
  • Configure federation trust relationships, claims mappings, authentication policies, and user provisioning workflows
  • Troubleshoot authentication failures, token issues, certificate problems, and federation incidents
  • Deploy passwordless authentication using FIDO2, passkeys, WebAuthn, mobile-based authentication, and certificate-based authentication
  • Implement identity proofing and verification workflows
  • Design phishing-resistant authentication architectures aligned with Zero Trust principles
  • Integrate passwordless authentication into VPNs, VDI environments, workforce applications, and customer-facing applications
  • Integrate with Active Directory, LDAP, Microsoft Entra ID, HR systems, SIEM platforms, and MFA solutions
  • Deploy and support platform components across hybrid, multi-cloud, and on-premises environments
  • Develop automation scripts and integration tools using Python, PowerShell, and JavaScript
  • Build and troubleshoot REST API integrations
  • Create deployment automation and operational tooling
  • Assist customers with custom integrations and identity workflows
  • Mentor customer teams on passwordless authentication best practices
  • Support escalated technical issues and complex production environments
  • Collaborate with Product, Engineering, Support, and Customer Success to resolve customer challenges
  • Provide implementation feedback to influence product roadmap and feature enhancements

Benefits

  • Flexible hybrid work model
  • Medical
  • Dental
  • Vision
  • 401k

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →

Текст вакансии взят без изменений

Источник -