yoinka

Senior Identity & Access Management (CIAM) Engineer

PepsiCo

Plano, TXSenior$80.2k – $134.3k/yrH-1B sponsor company
Sign in to applyVerified 1h ago
Location
Plano, TX
Work model
On-Site
Level
Senior
Salary
$80.2k – $134.3k/yr
H-1B history
19 approvals (FY2023)

Skills

AWSAgileAnsibleAzureCI/CDCybersecurityDockerGitGitHub ActionsJavaJavaScriptJenkinsKubernetesLinuxNode.jsOAuthPrometheusPythonRESTReactSAPSQLSalesforceSplunkSpringTerraform

About this role

Overview The Identity Access Management (IAM) Engineer will serve as a hands-on technical resource with strong Customer Identity and Access Management (CIAM) expertise, responsible for implementing, supporting, and improving secure identity solutions for B2B, B2C, and external user populations.

This role requires solid technical experience in CIAM platforms such as Okta Customer Identity Cloud/Auth0, Okta, Ping, or ForgeRock, with strong hands-on knowledge of OAuth 2.0, OpenID Connect, SAML, JWT, SCIM, API integrations, MFA, passwordless, adaptive authentication, and customer identity lifecycle flows.

The engineer will work on CIAM implementation activities from requirements through production support, including platform configuration, application integration, testing, troubleshooting, documentation, and operational handoff.

The successful candidate should be able to operate independently on technical tasks, support CIAM design discussions, strengthen security controls, and help onboard digital applications while maintaining good user experience and compliance alignment.

Must have strong hands-on configuration, scripting, API integration, troubleshooting, and support experience in CIAM or access management environments.

This role is based out of Plano, Texas and requires coming into the office. Responsibilities

Serve as a hands-on CIAM technical resource for implementation, configuration, integration, and production support. Configure and support CIAM solutions using Okta Customer Identity Cloud/Auth0, Okta, Ping, ForgeRock, or comparable platforms. Build and support customer identity flows including registration, login, MFA, passwordless authentication, social login, consent, profile management, account recovery, and progressive profiling. Support secure application integrations using OAuth 2.0, OpenID Connect, SAML, JWT, SCIM, REST APIs, SDKs, webhooks, and token-based authorization patterns. Implement B2B and B2C identity patterns for web, mobile, portal, API, eCommerce, and partner-facing applications. Configure platform capabilities such as Auth0 Actions, Rules, Hooks, Organizations, Management APIs, Okta Workflows, Identity Engine, Universal Directory, and Lifecycle Management. Develop scripts, workflows, and automation to support identity lifecycle, application onboarding, monitoring, reporting, and operational efficiency. Work with Cybersecurity, API, architecture, digital product, and application teams to support secure authentication and authorization patterns. Participate in CIAM roadmap delivery, platform modernization, migrations, and capability enhancements. Troubleshoot authentication, federation, token, consent, profile, directory, API, latency, and production availability issues. Support monitoring, alerting, logging, audit, and reporting using tools such as Splunk, ELK, Prometheus, or native platform logs. Implement security controls such as adaptive authentication, attack protection, bot protection, risk-based access, identity proofing integrations, and zero trust-aligned policies. Support privacy, regulatory, audit, and compliance requirements related to customer identity, consent, data protection, and access governance. Use DevSecOps practices, CI/CD pipelines, Git-based configuration management, Terraform, Ansible, or similar tools to improve repeatability and reduce manual changes. Create and maintain integration patterns, technical design documents, runbooks, standards, and operational handoff materials. Provide Level 2/Level 3 support, incident support, root cause analysis, and improvement recommendations for CIAM services. Share technical knowledge with team members and contribute to Agile DevOps delivery practices.

Compensation and Benefits

The expected compensation range for this position is between $80,200 - $134,250. Location, confirmed job-related skills, experience, and education will be considered in setting actual starting salary. Your recruiter

Listing verified 1h ago. Applications go through the company's official careers site.

← Back to Yoinka

Senior Identity & Access Management (CIAM) Engineer at PepsiCo, Plano, TX | Yoinka