Sutherland

Ping Identity/LDAP Administrator

Hyderabad, TS, in · Posted 2w ago

salary not listedDept: Engineering
PingDirectoryPingFederatePingAccessLDAPSAMLOAuthOIDCWS-FederationAWSAzurePythonPowerShellBashLinuxUnixWindows Server

Job Description

Key Responsibilities

1. Directory Operations & Administration

  • Configure, tune, and maintain LDAP infrastructure (e.g., PingDirectory) to optimize replication, synchronization, and data integrity across regions.
  • Manage directory schemas, object classes, attributes, tree structures, and Access Control Instructions (ACIs).
  • Lead or support lift-and-shift initiatives to migrate legacy LDAP/Ping architectures to cloud providers like AWS or Azure. [1, 2, 3]

2. Access Management & Federation

  • Administer PingFederate and PingAccess environments, including custom adapters and policy management.
  • Configure and troubleshoot SSO integrations using federation protocols such as SAML 2.0, OAuth 2.0, OIDC (OpenID Connect), and WS-Federation.
  • Manage API security rules, authentication schemes, and authorization frameworks for internal and SaaS applications. [1, 2, 3]

3. Automation & Support

  • Write and maintain automation scripts (using Python, PowerShell, or Bash) to streamline administrative tasks.
  • Monitor audit trails, logs, and security events to diagnose and resolve complex federation and replication issues.
  • Handle SSL/TLS certificate management and ensure compliance with enterprise security policies.

Required Skills & Qualifications

  • Core Tools: Hands-on experience with Ping Identity stack (PingFederate, PingDirectory, PingAccess).
  • Directory Knowledge: Deep expertise in LDAP database management, replication, and indexing strategies.
  • Protocols: Strong command of SAML, OAuth, OIDC, and general networking protocols.
  • Environment: Proficiency in both Linux/Unix and Windows Server administration.
  • Scripting: Basic to intermediate level in Python, Bash, or PowerShell.

Preferred Qualifications

  • Cloud Experience: Experience managing IAM infrastructure on cloud platforms (AWS, Azure, or GCP).
  • Containerization: Exposure to Docker, Kubernetes, Terraform, and CI/CD pipelines.
  • Certifications: Ping Identity Certified Professional (PICP) or Ping Identity Certified Expert (PICE).

All your information will be kept confidential according to EEO guidelines.