Lead Identity Engineer - FR CIAM

India
Full Time
Experienced

About the Role

The Lead/Senior Identity Engineer will lead the design and implementation of Customer Identity and Access Management (CIAM) solutions for a large-scale banking transformation program.

This role focuses on delivering secure, scalable, and regulatory-compliant digital identity platforms supporting customer identities, digital banking channels, and API ecosystems. The engineer will drive end-to-end CIAM solution delivery, including architecture, design, build, integration, and deployment using PingOne Advanced Identity Cloud and ForgeRock platforms.

The role requires strong expertise in modern identity protocols, customer journey design, Zero Trust principles, and banking security frameworks.

What You’ll Do

  1. Design and implement end-to-end CIAM solutions using PingOne Advanced Identity Cloud and ForgeRock (AM, IDM, DS, IG).
  2. Translate business, security, and regulatory requirements into scalable IAM solution designs.
  3. Define and implement authentication, authorization, and federation strategies (OAuth2, OIDC, SAML).

Customer Identity Journeys

  1. Design and configure customer onboarding and authentication journeys, including digital onboarding, KYC integration, MFA, passwordless, and adaptive authentication.
  2. Implement progressive profiling, consent management, and secure customer experience flows.

Integration & API Security

  1. Integrate CIAM with banking applications, mobile/web platforms, APIs, and third-party services.
  2. Develop secure integrations using REST APIs and modern identity standards (OAuth2, OIDC, SAML, SCIM).
  3. Implement API security and token-based access control mechanisms.

Identity Lifecycle & Directory Services

  1. Design and implement customer identity lifecycle processes including registration, provisioning, and profile management.
  2. Integrate with directory services such as Ping Directory, OpenDJ, and LDAP.
  3. Define identity data models, roles, and entitlement structures.

Platform Development & Customization

  1. Develop custom authentication logic, scripts, and extensions using Java / JavaScript.
  2. Build microservices and reusable components supporting CIAM architecture.
  3. Automate workflows and integrations using APIs and scripting.

Cloud & DevOps Delivery

  1. Implement IAM solutions using CI/CD pipelines and Infrastructure as Code (IaC).
  2. Deploy solutions in containerized environments (Docker, Kubernetes).
  3. Manage multi-environment deployments (Dev, QA, Prod) with secure configuration practices.
  4. Align implementations with Zero Trust and cloud-native architecture principles.

Security & Compliance

  1. Ensure compliance with banking security and regulatory standards, including data privacy and strong customer authentication.
  2. Implement risk-based authentication and fraud prevention controls.

Collaboration

  1. Collaborate with architects, security teams, and application teams to deliver IAM solutions.
  2. Participate in Agile delivery and CIAM transformation programs.
  3. Produce high-quality technical documentation (HLD, LLD, integration specifications).

What You Bring

  • 6–10+ years of IAM experience with strong CIAM focus
  • 5+ years of hands-on experience with PingOne AIC / ForgeRock IAM

Core Skills

  • OAuth 2.0, OpenID Connect (OIDC), SAML 2.0
  • API security and identity federation
  • Customer authentication journeys and CIAM workflows
  • Identity lifecycle management and provisioning

Technical Skills

  • LDAP / directory services (Ping Directory, OpenDJ, AD)
  • Java and scripting (JavaScript, Groovy)
  • Cloud platforms: AWS / Azure / GCP
  • DevOps tools: CI/CD, Git, Jenkins, ArgoCD
  • Containers: Docker, Kubernetes

Knowledge Areas

  • MFA, SSO, adaptive authentication
  • Zero Trust architecture
  • Banking security and compliance frameworks

Nice to Have

  • Ping Identity / ForgeRock certifications
  • Experience in digital banking or Customer 360 programs
  • Exposure to fraud detection, behavioral analytics, and consent frameworks
  • Experience with large-scale CIAM platforms and microservices architectures

 

Simeio is an equal opportunity employer. If you require assistance with completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to any of the recruitment team at recruitment@simeio.com or +1 404-882-3700.

Share

Apply for this position

Required*
We've received your resume. Click here to update it.
Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or Paste resume

Paste your resume here or Attach resume file

Human Check*