The specialist is responsible for supporting and optimizing IAM systems, including authentication, authorization, and directory services. They will perform system administration, manage integrations, and provide Tier 3 technical support for global infrastructure.
Overview
The Identity and Access Management Systems Engineer is responsible for supporting and optimizing IAM systems to ensure the integrity and availability of authentication, authorization, LDAP-related services and PKI. This position will work with peer service areas and technology owners globally in order to execute system changes, and will implement customizations to enhance system functionality and security. This position must be able to provide Tier 3 technical support for resolving incidents, requests, integrating applications, and maintaining systems. This position must work effectively with managerial and technical team members in order to achieve defined goals and objectives.
Job Responsibilities Include:
- Act as a subject matter expert with user directories, authentication, and provisioning services across all NTT DATA Americas, including but not limited to: Active Directory, Azure AD, Azure AD Connect, OKTA, LDAP, auto-provisioning, or related complex infrastructures
- Act as a subject matter expert for related Azure / Entra features including: Azure App Proxy, Conditional Access, InTune and related packages and Enterprise Application integrations
- Perform the configuration, administration, and management of IAM systems, such as SSO related services, across the enterprise Work with PKI and Certificate Authority for Global and regional areas
- Participate in activities to ensure that IAM systems are compliant with NTT DATA Americas security policies and standards.
- Provide engineering support for complex projects that leverage IAM platforms, and also perform root causes analysis on any system incidents
- Ensure processing and response to IAM requests to deliver premium security and Access Management services to the organization Working in a global team supporting a global user community Supporting both Enterprise and regional Active Directories and the services they provide (Identity, DNS, replication, security, access mgmt, etc.)
- Work supporting various application owners and their needs as in pertains to AD integration
- Continue to convert applications from our acquisitions over to our enterprise systems.
- Working towards implementing and SSO philosophy for our on-premise and cloud based applications
- Support our growing SAML/ADFS/OKTA setup
- Support our MFA portfolio for increased security Support Azure Active Directory and Azure integrations
- Support and build custom PowerBuilder and powershell scripts for automation