Role Overview
We are seeking an experienced Identity Platform Engineer to lead the design, refactoring, enhancement, and ongoing support of a global Customer Identity and Access Management (CIAM) platform.
This role focuses on modernizing authentication journeys, improving scalability, and enabling region-specific identity experiences across multiple jurisdictions. The environment is complex and highly regulated, requiring strong architectural thinking, hands-on engineering capability, and the ability to support a globally distributed identity ecosystem.
The engineer will play a key role in evolving legacy identity workflows into modern, cloud-adaptable authentication services that can support vendor integrations, regional compliance needs, and enterprise-scale traffic.
Key Responsibilities
- Analyze and translate regional (Americas and international) CIAM requirements into scalable identity and authentication solutions
- Refactor and redesign user authentication journeys to support region-specific policies, configurations, and compliance requirements
- Enable flexible integration of third-party identity ecosystem components (e.g., fraud/risk engines, identity verification providers, MFA services)
- Modernize and migrate legacy identity scripting and orchestration logic to current platform standards and frameworks
- Troubleshoot, optimize, and enhance authentication flows, policy engines, and user login experiences
- Leverage CI/CD pipelines to ensure efficient, secure, and reliable deployment of identity platform changes
- Ensure alignment with global regulatory and privacy frameworks (e.g., PSD2/PSD3, GDPR, MAS, and equivalent regional standards) and translate requirements into technical controls
- Establish and maintain engineering best practices, documentation standards, and operational support procedures for identity services
- Improve platform resilience by implementing disaster recovery strategies, including recovery time and recovery point objectives (RTO/RPO) for IAM systems
- Support ongoing observability, monitoring, and performance tuning across authentication services
Required Skills & Experience
- 4+ years of experience in Identity and Access Management (IAM) or CIAM engineering roles
- Strong hands-on experience with modern identity orchestration and authentication platforms
- Deep understanding of authentication protocols including SAML, OAuth 2.0, and OpenID Connect (OIDC)
- 2+ years of experience with JavaScript and RESTful API development
- 2+ years of experience working with CI/CD pipelines and DevOps practices in enterprise environments
- Familiarity with SSL/TLS certificate lifecycle management in distributed systems
- Strong understanding of authentication flows, authorization models, and session management strategies
- Experience implementing MFA, OTP, and risk-based authentication mechanisms
- Awareness of regulatory, privacy, and data residency considerations in global identity systems
- Experience working in cloud-native or hybrid IAM architectures
- Bachelor's degree in Computer Science, Cybersecurity, Mathematics, or a related technical discipline
- Preferred: Relevant certification in enterprise identity platforms or authentication systems