1)CISO Technical Lead – SSO Engineer
Services:
•Divestiture Strategy & Execution:
oDrive development and execution strategies for the secure separation, migration, and integration of PingFederate instances, configurations, and associated identity stores for divested business units.
oPlan and implement identity federation solutions to support application access for users transitioning between organizations, ensuring minimal disruption.
oManage the lifecycle of federated trusts, connections, and identity providers/service providers in the context of divestiture, including onboarding and offboarding applications.
•PingFederate Implementation & Management:
oDesign, deploy, configure, and maintain high-availability PingFederate environments across various enterprise landscapes.
oAdminister PingFederate connections, policies, adapters, selectors, and authentication methods (e.g., SAML, OAuth, OIDC).
oTroubleshoot complex SSO authentication, authorization, and federation issues to ensure continuous service availability.
•Identity & Access Integration:
oIntegrate PingFederate with various identity stores such as Active Directory, Azure Active Directory, and LDAP directories.
oCollaborate with application owners to onboard new applications and migrate existing ones to the PingFederate SSO platform.
oEnsure seamless integration with Multi-Factor Authentication (MFA) solutions.
•Security & Compliance:
oImplement and enforce security best practices and architectural guidelines for identity federation and SSO solutions.
oEnsure that SSO configurations comply with corporate security policies, regulatory requirements, and data governance standards during the divestiture process.
oConduct regular security reviews and vulnerability assessments of the PingFederate environment.
•Operational Support & Documentation:
oProvide expert-level support for SSO-related incidents and requests, often collaborating with cross-functional IT and security teams.
oDevelop and maintain comprehensive documentation, architectural diagrams, runbooks, and standard operating procedures (SOPs) for the SSO infrastructure.
Deliverables:
•Secure Divestiture & Federated Identity Transition
•Resilient PingFederate & SSO Platform Operations
•Security, Compliance & Operational Excellence
Required Skills/Expertise:
•Bachelor’s degree in computer science, Information Security, or a related technical fi eld, or equivalent practical experience.
•5+ years of dedicated experience in Identity and Access Management (IAM), with at least 3 years focused specifically on SSO technologies.
•Proficiency in designing, implementing, and managing PingFederate in large-scale enterprise environments.
•Understanding and hands-on experience with identity federation protocols such as SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC).
•Experience integrating SSO solutions with various applications and identity stores (e.g., Active Directory, Azure AD, LDAP).
•Proficiency in scripting languages (e.g., PowerShell, Python) for automation and administration tasks.
•Excellent analytical, problem-solving, and communication skills, with the ability to articulate complex technical concepts to both technical and non-technical audiences.
•Required: English fluency (oral and written).
Salary Range: $100,000 to $130,000 per year
Salary Range: $100,000 to $130,000 per year
More Information
Application Details
- Organization DetailsTCS / Tata Consultancy Services


Recommended Comments
There are no comments to display.
Join the conversation
You are posting as a guest. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.