01 Oct
|
Delivery Centric
|
Melbourne
01 Oct
Delivery Centric
Melbourne
Job Description
Senior Identity Engineer – Ping/ForgeRock – Melbourne n
Delivery Centric is seeking an experienced
Identity Engineer
to design and support IAM solutions using
Ping Identity and/or ForgeRock
, covering authentication, authorization, federation and directory services. The role also involves backend integrations using
Go and/or Java
to deliver secure and scalable identity solutions.
n
What You'll Do
n
n
Design, implement, and maintain identity solutions using Ping Identity (PingFederate, PingAccess, Ping Directory, PingOne) and/or ForgeRock (AM, IDM, DS, IG) products.
n
Build and maintain authentication and authorization flows: OAuth 2.0, OpenID Connect, SAML 2.0, MFA, and password less/adaptive authentication.
n
Develop custom plugins,
nodes/authentication
trees, policy scripts, and extensions in Java or Groovy (ForgeRock) or via SDKs/APIs (Ping).
n
Build and integrate backend services and APIs in Go or Java that consume or extend IAM platform capabilities (token issuance, session management, user provisioning, etc.).
n
Configure and manage federation with external Identity Providers/Service Providers (B2B, B2C, partner integrations).
n
Own directory services architecture (LDAP/DS) including schema design, replication, and performance tuning.
n
Automate deployment and configuration using Infrastructure-as-Code (Terraform, Ansible) and CI/CD pipelines.
n
Troubleshoot production identity issues, perform root cause analysis, and drive resolution with minimal downtime.
n
Ensure solutions meet security, compliance, and audit requirements (OWASP, NIST, ISO *****, PCI-DSS, or relevant regulatory standards).
n
Collaborate with security, platform, and application teams to define IAM standards and best practices.
n
Participate in on-call rotation for critical identity infrastructure.
n
n
Must-Have Qualifications
n
n
4+ years of hands-on experience
with
Ping Identity
(PingFederate/PingAccess/PingOne)
and/or ForgeRock (AM/IDM/DS/IG) platforms.
n
Solid understanding of identity protocols:
OAuth 2.0, OIDC, SAML 2.0, SCIM, WS-Fed.
n
Working proficiency in
Go or Java
for building
backend services, custom authentication nodes, or API integrations.
n
Experience with
LDAP directory services
(design, tuning, replication).
n
Familiarity with
containerized/cloud
environments (
Docker, Kubernetes
)
and cloud platforms (
AWS/Azure/GCP
).
n
Experience with CI/CD tooling and
Infrastructure-as-Code (Terraform, Jenkins, GitLab CI, etc.).
n
Strong understanding of
security fundamentals
: TLS, encryption at rest/in transit, secrets management, least-privilege access.
n
Excellent troubleshooting skills across
distributed systems and network layers (HTTP, TCP/IP, DNS).
n
n
Nice-to-Have
n
n
ForgeRock or Ping certifications (e.g., ForgeRock Certified Access
Management/Directory
Services Specialist, Ping Certified Professional).
n
Experience with adaptive/risk-based authentication and fraud detection integrations.
n
Exposure to financial services or other highly regulated environments.
n
Experience with API gateways (Apigee, Kong, PingAccess as gateway) and microservices architecture.
n
Familiarity with policy-as-code and zero-trust architecture principles.
n
Scripting experience in Groovy, Python, or Bash for automation.
n
Senior Identity Engineer – Ping/ForgeRock – Melbourne n
Delivery Centric is seeking an experienced
Identity Engineer
to design and support IAM solutions using
Ping Identity and/or ForgeRock
, covering authentication, authorization, federation and directory services. The role also involves backend integrations using
Go and/or Java
to deliver secure and scalable identity solutions.
n
What You'll Do
n
n
Design, implement, and maintain identity solutions using Ping Identity (PingFederate, PingAccess, Ping Directory, PingOne) and/or ForgeRock (AM, IDM, DS, IG) products.
n
Build and maintain authentication and authorization flows: OAuth 2.0, OpenID Connect, SAML 2.0, MFA, and password less/adaptive authentication.
n
Develop custom plugins,
nodes/authentication
trees, policy scripts, and extensions in Java or Groovy (ForgeRock) or via SDKs/APIs (Ping).
n
Build and integrate backend services and APIs in Go or Java that consume or extend IAM platform capabilities (token issuance, session management, user provisioning, etc.).
n
Configure and manage federation with external Identity Providers/Service Providers (B2B, B2C, partner integrations).
n
Own directory services architecture (LDAP/DS) including schema design, replication, and performance tuning.
n
Automate deployment and configuration using Infrastructure-as-Code (Terraform, Ansible) and CI/CD pipelines.
n
Troubleshoot production identity issues, perform root cause analysis, and drive resolution with minimal downtime.
n
Ensure solutions meet security, compliance, and audit requirements (OWASP, NIST, ISO *****, PCI-DSS, or relevant regulatory standards).
n
Collaborate with security, platform, and application teams to define IAM standards and best practices.
n
Participate in on-call rotation for critical identity infrastructure.
n
n
Must-Have Qualifications
n
n
4+ years of hands-on experience
with
Ping Identity
(PingFederate/PingAccess/PingOne)
and/or ForgeRock (AM/IDM/DS/IG) platforms.
n
Solid understanding of identity protocols:
OAuth 2.0, OIDC, SAML 2.0, SCIM, WS-Fed.
n
Working proficiency in
Go or Java
for building
backend services, custom authentication nodes, or API integrations.
n
Experience with
LDAP directory services
(design, tuning, replication).
n
Familiarity with
containerized/cloud
environments (
Docker, Kubernetes
) and cloud platforms (
AWS/Azure/GCP
).
n
Experience with CI/CD tooling and
Infrastructure-as-Code (Terraform, Jenkins, GitLab CI, etc.).
n
Solid understanding of
security fundamentals
: TLS, encryption at rest/in transit, secrets management, least-privilege access.
n
Excellent troubleshooting skills across
distributed systems and network layers (HTTP, TCP/IP, DNS).
n
n
Nice-to-Have
n
n
ForgeRock or Ping certifications (e.g., ForgeRock Certified Access
Management/Directory
Services Specialist, Ping Certified Professional).
n
Experience with adaptive/risk-based authentication and fraud detection integrations.
n
Exposure to financial services or other highly regulated environments.
n
Experience with API gateways (Apigee, Kong, PingAccess as gateway) and microservices architecture.
n
Familiarity with policy-as-code and zero-trust architecture principles.
n
Scripting experience in Groovy, Python, or Bash for automation.
n
n
#J-*****-Ljbffr
📌 Senior Identity Engineer - Ping/Forgerock - Melbourne
🏢 Delivery Centric
📍 Melbourne