- Company Name
- Tekshapers
- Job Title
- Identity Management Consultant
- Job Description
-
Job title: Identity Management Consultant
Role Summary:
Senior consultant responsible for designing, implementing, and managing identity and access management (IAM) solutions using IBM Security Access Manager (ISAM). Acts as a subject‑matter expert across ISAM core, advanced access control, federation, SSO, and policy components, ensuring secure authentication and authorization across enterprise applications.
Expactations:
* 6–8 years of professional experience in IAM with a focus on ISAM implementations.
* Deep understanding of ISAM base, advanced access control, federation, policy server (ACL, POP), and junction concepts.
* Proven track record configuring SSO, SAML, OAuth, OIDC, and MFA solutions within ISAM.
* Ability to work independently and mentor junior team members as a technical SME.
* Strong communication skills to translate technical requirements into actionable solutions.
Key Responsibilities:
* Design, deploy, and maintain ISAM environments including reverse proxy, authorization server, and policy server.
* Implement SSO integrations using SAML 2.0, OAuth, and OIDC across internal and external applications.
* Configure access control policies (ACL, POP) and group imports for fine‑grained authorization.
* Develop and maintain junctions, federation modules, and policy server configurations to support cross‑domain authentication.
* Integrate multi‑factor authentication mechanisms and manage credential stores.
* Automate deployment and configuration processes using Ansible or equivalent DevOps tools.
* Perform troubleshooting, performance tuning, and security assessments of ISAM deployments.
* Document architecture, configuration, and operational procedures for governance and audit purposes.
Required Skills:
* IBM Security Access Manager (ISAM) – core, advanced access control, federation modules.
* SSO technologies: SAML 2.0, OAuth, OIDC, MFA.
* ACL, POP, group import, junction creation, policy server concepts.
* Reverse proxy, authorization server, LDAP integration.
* Ansible automation; general DevOps tool familiarity.
* Strong scripting skills (Python, Bash, PowerShell) and understanding of CI/CD pipelines.
* Troubleshooting, security best practices, and performance tuning of IAM solutions.
Required Education & Certifications:
* Bachelor’s degree in Computer Science, Information Technology, or related field.
* Professional certifications in IAM, such as:
- IBM Certified System Administrator – IBM Security Access Manager
- SAML, OAuth, or OIDC related credentials preferred.