Job Summary
We are seeking an experienced Ping Identity Engineer to design, implement, support, and optimize enterprise Identity and Access Management (IAM) solutions using the Ping Identity suite. The ideal candidate will possess strong expertise in SSO, Federation, MFA, API security, and directory services, with experience supporting large-scale enterprise or BFSI environments.
Mandatory Skills
Ping Identity Technologies
• PingFederate
• PingAccess
• PingDirectory
• PingID
• PingOne (good to have)
• PingDataSync (good to have) Authentication & Federation
• SAML 2.0
• OAuth 2.0
• OpenID Connect (OIDC)
• SCIM
• JWT
• FIDO2 Directory Services
• LDAP • Microsoft Active Directory
• Azure AD / Microsoft Entra ID Security
• Single Sign-On (SSO)
• Multi-Factor Authentication (MFA)
• Adaptive Authentication
• Authorization & Access Policies
• Zero Trust Concepts Platforms
• Linux/Unix • Windows Server
• Apache / NGINX / Web Servers
• REST APIs
Roles & Responsibilities
Key Responsibilities
Engineering & Implementation
• Design and implement enterprise authentication and authorization solutions using PingFederate, PingAccess, and PingDirectory.
• Configure and maintain SSO integrations for SaaS, cloud, and on-premises applications.
• Implement federation between internal and external identity providers.
• Configure OAuth and OIDC-based authentication flows.
Application Onboarding
• Integrate new applications with Ping Identity platforms.
• Configure SAML, OAuth, and OIDC connections.
• Support API security and token-based authentication mechanisms.
Access Management
• Design authentication policies and access control frameworks.
• Implement MFA and adaptive authentication controls.
• Configure role-based access controls aligned with least privilege principles.
Operations & Support
• Troubleshoot authentication, federation, and access-related issues.
• Monitor Ping platform health and performance.
• Perform upgrades, patching, and platform maintenance activities.
• Support production incidents and root cause analysis.
Security & Compliance
• Ensure adherence to security standards and compliance requirements.
• Support audit activities and access reviews.
• Develop and maintain technical documentation, SOPs, and architecture diagrams.
Preferred Qualifications
• Experience in BFSI, Healthcare, or other regulated industries.
• Experience with Okta, Entra ID, ForgeRock, Saviynt, or SailPoint.
• Knowledge of CI/CD pipelines and DevOps practices.
• Experience with Splunk , Dynatrace, or enterprise monitoring tools.
• Understanding of PAM, IGA, and CIAM concepts.
Certifications (Preferred)
• Ping Identity Certified Professional
• PingFederate Administrator Certification
• Security+
• CISSP
• Microsoft Identity & Access Administrator
Nice-to-Have Skills
• Java, Groovy, PowerShell, Python
• Kubernetes and Docker
• API Gateway Security
• Cloud IAM (Azure, AWS, GCP)
• LDAP Directory Performance Tuning BFSI-Specific Expectations
• Strong understanding of regulatory compliance and identity governance.
• Experience implementing secure customer and workforce authentication.
• Ability to support high-availability authentication platforms with minimal downtime.
• Experience handling security audits and access certification requirements.
TCS Employee Benefits Summary:
Discretionary Annual Incentive.
Comprehensive Medical Coverage: Medical & Health, Dental & Vision, Disability Planning & Insurance, Pet Insurance Plans.
Family Support: Maternal & Parental Leaves.
Insurance Options: Auto & Home Insurance, Identity Theft Protection.
Convenience & Professional Growth: Commuter Benefits & Certification & Training Reimbursement.
Time Off: Vacation, Time Off, Sick Leave & Holidays.
Legal & Financial Assistance: Legal Assistance, 401K Plan, Performance Bonus, College Fund, Student Loan Refinancing.
Salary Range: $120,000 - $125,000 a year