Senior IAM (Identity & Access Management) Engineer with OneLogin experience - Hybrid (8-15 Yrs) - Be
Luxoft India
Job Description
Job Description
Dear Applicants,
\nPl note we are looking for Senior IAM (Identity & Access Management) with OneLogin experience for Bangalore location
\nExperience - 8-15 yrs
\nLocation : Bangalore
\nWork Mode : Hybrid (3 days in a week in office)
\nSkills Required- IAM (Identity and Access management ) + OneLogin and Entraid experience
\nNotice period- Immediate to 30 days only
\nProject Description
\nWe are seeking a highly skilled Senior Identity & Access Management (IAM) Engineer with 8–10 years hands-on experience. The candidate must possess strong expertise in SSO, OIDC, MFA, AuthID, and custom IAM solution development, with preferred experience in OneLogin and Microsoft Entra ID.
\nResponsibilities
\n- \n
- Design and develop custom SSO/identity broker solutions, including non‐standard authentication flows and legacy app integrations \n
- Design, implement, and maintain SSO integrations using OneLogin and Entra ID. \n
- Deep, protocol‐level understanding of OIDC, OAuth2, and SAML, including token claims design, signing/encryption, and custom authorization servers \n
- Design and implementation of custom MFA and risk‐based authentication flows. \n
- Experience with FIDO2 / WebAuthn, certificate‐based authentication, or device trust models \n
- Create custom IAM workflows, automation scripts, and API integrations using Python, PowerShell, or Shell scripting. \n
- Strong understanding of IAM security threats including token replay, session fixation, consent abuse, and misconfigured federation. \n
- Ability to perform authentication and authorization threat modeling \n
- Collaborate with engineering, application, and security teams as the IAM subject matter expert (SME). \n
Mandatory Skills
\n- \n
- 8–10 years of IAM ((Identity & Access Management) engineering experience. \n
- Strong hands-on experience with SSO, OIDC, OAuth2, SAML, AuthID, and MFA. \n
- Solid infrastructure and development background, including TLS / certificate lifecycle management, DNS, reverse proxies, and load balancers \n
- Preferred SSO product experience: OneLogin and Okta or Microsoft Entra ID. \n
- Strong scripting experience (Python, PowerShell, Bash). \n
- Experience with custom IAM solution development (APIs, SDKs, identity workflows). \n
- Familiarity with SCIM, JWT, conditional access policies, and identity lifecycle management. \n
- Excellent oral and written communication skills. \n
- Ability to work cross-functionally and explain complex issues in simple terms. \n
Experience- 8-15 yrs
\nNotice period - Immediate to 30 days
\nWork location - Bengaluru
\nWork Mode- Hybrid (3 days per week in office)