10 Oct
|
Ampstek
|
Sydney
We are seeking an experienced Single Sign-On (SSO) Engineer to design, implement, administer, and support enterprise Identity and Access Management (IAM) and authentication solutions.
The role will focus on SSO, federation, authentication, authorization, identity lifecycle management, and integration of enterprise applications with modern identity platforms.
Key Responsibilities
Design, implement, configure, and support enterprise SSO and IAM solutions.
Integrate applications with enterprise identity providers using SAML 2.0, OAuth 2.0 and OpenID Connect (OIDC).
Configure and manage identity providers such as Microsoft Entra ID (Azure AD), Okta, Ping Identity, or equivalent platforms.
Implement and support Multi-Factor Authentication (MFA) and Conditional Access policies.
Configure application federation and troubleshoot authentication and authorization issues.
Manage enterprise application onboarding to SSO platforms.
Configure authentication flows, claims, assertions, certificates, and token-based authentication.
Support user provisioning and de-provisioning using SCIM and other automated provisioning mechanisms.
Integrate applications with Active Directory and cloud identity services.
Troubleshoot SSO, federation, authentication, authorization, and token-related issues.
Manage SAML metadata, signing/encryption certificates, keys, and certificate renewals.
Implement identity security controls in accordance with enterprise security standards.
Work with application, infrastructure, cybersecurity, and cloud teams to onboard applications.
Develop technical documentation, architecture diagrams, implementation procedures, and troubleshooting guides.
Participate in incident, problem, and change management processes.
Support IAM modernization and migration initiatives.
Provide technical guidance to application and infrastructure teams.
Mandatory Technical Skills
Strong experience in Single Sign-On (SSO) and Identity & Access Management.
Hands-on experience with SAML 2.0.
Robust understanding of OAuth 2.0 and OpenID Connect (OIDC).
Experience with Microsoft Entra ID (Azure AD) and/or Okta.
Strong knowledge of Active Directory and enterprise identity architecture.
Experience with MFA and Conditional Access.
Experience with SCIM / automated user provisioning.
Strong understanding of authentication and authorization concepts.
Experience troubleshooting SSO integrations and authentication failures.
Knowledge of certificates, PKI, encryption, signing, and key management.
Understanding of REST APIs and identity-related integrations.
Experience working with enterprise applications and cloud platforms.
#J-18808-Ljbffr
📌 Single Sign-On (SSO) Engineer (Sydney)
🏢 Ampstek
📍 Sydney