Ascendion is a full-service digital engineering solutions company that focuses on transforming digital engineering for enterprise clients. They are seeking an experienced Ping Engineer to support and enhance enterprise Identity and Access Management (IAM) platforms, particularly focusing on Single Sign-On (SSO) solutions across SaaS applications and cloud environments.
Responsibilities:
- Design, implement, and support enterprise SSO solutions using PingFederate, PingID, Okta, and AWS Identity Center
- Manage and configure enterprise IdPs, particularly Okta and GCP (Google Cloud Platform)
- Develop and maintain policies, application rules, IdP rules, and access token configurations
- Configure adapters and integrations to support secure authentication flows
- Implement and troubleshoot authentication protocols including SAML, OpenID Connect (OIDC), OAuth 2.0, and API-based authentication
- Support SaaS integrations and cloud-based identity services across AWS and GCP
- Automate identity and access workflows using scripting languages such as Bash, NodeJS, Python, or similar
- Implement Infrastructure as Code (IaC) using Terraform, AWS CloudFormation, or Azure Resource Manager
- Partner with security, application, and cloud engineering teams to ensure secure identity integration and governance
Requirements:
- 7+ years of experience in Identity and Access Management (IAM) engineering
- Hands-on experience with PingFederate, PingID, Okta SSO, and/or AWS Identity Center
- Strong experience supporting enterprise IdPs (Okta and/or GCP preferred)
- Deep understanding of authentication and federation protocols (SAML, OIDC, OAuth 2.0)
- Experience managing policy frameworks, application rules, and access token management
- Experience integrating SaaS applications with SSO platforms
- Proficiency in scripting (Bash, NodeJS, Python, or similar) for automation
- Experience implementing Infrastructure as Code in cloud environments
- Strong troubleshooting, analytical, and communication skills
- Experience in multi-cloud environments (AWS and GCP)
- Experience working in large enterprise or regulated environments
- Knowledge of Zero Trust architecture principles
- Relevant IAM certifications (Ping, Okta, AWS, or cloud certifications)