The Lead/Senior Identity Engineer will lead the design and implementation of Customer Identity and Access Management (CIAM) solutions for a large-scale banking transformation program.
This role focuses on delivering secure, scalable, and regulatory-compliant digital identity platforms supporting customer identities, digital banking channels, and API ecosystems. The engineer will drive end-to-end CIAM solution delivery, including architecture, design, build, integration, and deployment using PingOne Advanced Identity Cloud and ForgeRock platforms.
The role requires strong expertise in modern identity protocols, customer journey design, Zero Trust principles, and banking security frameworks.
What You’ll Do
Design and implement end-to-end CIAM solutions using PingOne Advanced Identity Cloud and ForgeRock (AM, IDM, DS, IG)
Translate business, security, and regulatory requirements into scalable IAM solution designs
Define and implement authentication, authorization, and federation strategies (OAuth2, OIDC, SAML)
Customer Identity Journeys
Design and configure customer onboarding and authentication journeys, including digital onboarding, KYC integration, MFA, passwordless, and adaptive authentication
Implement progressive profiling, consent management, and secure customer experience flows
Integration & API Security
Integrate CIAM with banking applications, mobile/web platforms, APIs, and third-party services
Develop secure integrations using REST APIs and modern identity standards (OAuth2, OIDC, SAML, SCIM)
Implement API security and token-based access control mechanisms
Identity Lifecycle & Directory Services
Design and implement customer identity lifecycle processes including registration, provisioning, and profile management
Integrate with directory services such as Ping Directory, OpenDJ, and LDAP
Define identity data models, roles, and entitlement structures
Platform Development & Customization
Develop custom authentication logic, scripts, and extensions using Java / JavaScript
Build microservices and reusable components supporting CIAM architecture
Automate workflows and integrations using APIs and scripting
Cloud & DevOps Delivery
Implement IAM solutions using CI/CD pipelines and Infrastructure as Code (IaC)
Deploy solutions in containerized environments (Docker, Kubernetes)
Manage multi-environment deployments (Dev, QA, Prod) with secure configuration practices
Align implementations with Zero Trust and cloud-native architecture principles
Security & Compliance
Ensure compliance with banking security and regulatory standards, including data privacy and strong customer authentication
Implement risk-based authentication and fraud prevention controls
Collaboration
Collaborate with architects, security teams, and application teams to deliver IAM solutions
Participate in Agile delivery and CIAM transformation programs
Produce high-quality technical documentation (HLD, LLD, integration specifications)
What You Bring
6–10+ years of IAM experience with strong CIAM focus
5+ years of hands-on experience with PingOne AIC / ForgeRock IAM
Core Skills
OAuth 2.0, OpenID Connect (OIDC), SAML 2.0
API security and identity federation
Customer authentication journeys and CIAM workflows
Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand.
Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together.
Applicants
are
advised to research the bonafides of the prospective employer independently. We do NOT
endorse any
requests for money payments and strictly advice against sharing personal or bank related
information. We
also recommend you visit Security Advice for more information. If you suspect any fraud
or
malpractice,
email us at abuse@talentmate.com.
You have successfully saved for this job. Please check
saved
jobs
list
Applied
You have successfully applied for this job. Please check
applied
jobs list
Do you want to share the
link?
Please click any of the below options to share the job
details.
Report this job
Success
Successfully updated
Success
Successfully updated
Thank you
Reported Successfully.
Copied
This job link has been copied to clipboard!
Apply Job
Upload your Profile Picture
Accepted Formats: jpg, png
Upto 2MB in size
Your application for Lead Identity Engineer - FR CIAM
has been successfully submitted!
To increase your chances of getting shortlisted, we recommend completing your profile.
Employers prioritize candidates with full profiles, and a completed profile could set you apart in the
selection process.
Why complete your profile?
Higher Visibility: Complete profiles are more likely to be viewed by employers.
Better Match: Showcase your skills and experience to improve your fit.
Stand Out: Highlight your full potential to make a stronger impression.
Complete your profile now to give your application the best chance!