Senior IAM Architect

Posted 2 Days Ago
Be an Early Applicant
Hiring Remotely in USA
Remote or Hybrid
137K-180K Annually
Senior level
Cloud • Security • Software
The Role
Lead and own Ping's internal IAM architecture and roadmap for WIAM and CIAM. Design, implement, operate, and improve identity platforms (SSO, MFA, federation, provisioning), define role/access models, troubleshoot complex auth and provisioning issues, drive governance and access reviews, maintain lab/test environments, and partner with product, IT, security, HR, and engineering to adopt new Ping capabilities.
Summary Generated by Built In

About Ping Identity: 

At Ping Identity, we believe in making digital experiences both secure and seamless for all users, without compromise. We call this digital freedom. And it's not just something we provide our customers. It's something that inspires our company. People don't come here to join a culture that's built on digital freedom. They come to cultivate it. 

Our intelligent, cloud identity platform lets people shop, work, bank, and interact wherever and however they want. Without friction. Without fear. 

While protecting digital identities is at the core of our technology, protecting individual identities is at the core of our culture. We champion every identity. One of our core values, Respect Individuality, reminds us to celebrate differences so you are empowered to bring your authentic self to work. 

We're headquartered in Denver, Colorado and we have offices and employees around the globe. We serve the largest, most demanding enterprises worldwide, including more than half of the Fortune 100. At Ping Identity, we're changing the way people and businesses think about cybersecurity, digital experiences, and identity and access management. 

As a Senior IAM Architect on Ping’s Corporate IT Systems Administration team, you will lead the company’s internal IAM practice across both workforce and customer identity environments. This is a senior, hands-on role for someone who can design, implement, operate, troubleshoot, and continuously improve identity capabilities for Ping as the customer.

This person will serve as the internal owner of Ping’s IAM architecture, role model, and operational direction, helping ensure the environment is secure, functional, scalable, and maintainable while partnering closely with internal product teams and business stakeholders to evaluate and adopt new Ping capabilities over time.

Responsibilities
  • Lead the architecture, roadmap, and day-to-day maturity of Ping’s internal IAM practice across WIAM, CIAM, authentication, authorization, federation, lifecycle management, and governance.
  • Own the design, implementation, operation, and continuous improvement of Ping’s internal identity platforms and supporting processes, with responsibility for keeping the environment secure, functional, and maintainable.
  • Act as the internal owner of Ping’s role model, access model, and identity architecture, ensuring business requirements are translated into scalable technical controls and usable identity services.
  • Partner with internal product teams to evaluate, pilot, and adopt new Ping products and acquired capabilities in Ping’s corporate and CIAM environments.
  • Work closely with IT, Security, HR, Engineering, Product, and other business stakeholders to define identity requirements, improve processes, and align IAM capabilities to real business needs.
  • Lead role engineering efforts by analyzing business requirements, defining roles and permissions in functional business terms, and ensuring system privileges map correctly to approved access models.
  • Drive strong operational execution for SSO, MFA, federation, provisioning, deprovisioning, role assignment, access reviews, and exception handling across internal and customer-facing systems.
  • Troubleshoot complex authentication, authorization, provisioning, and access issues across applications, directories, workflows, and connected systems.
  • Maintain and improve standards, procedures, controls, reporting, and documentation for IAM operations, including actual-state versus desired-state validation, access reviews, and change governance.
  • Maintain a lab and test environment to validate new integrations, prototype new capabilities, and safely trial new Ping products and patterns before production rollout.
  • Serve as Ping’s internal IAM thought leader and provide practical product feedback based on real enterprise use cases from Ping’s WIAM and CIAM environments.
Required Skills & Qualifications
  • 8+ years of experience in Identity and Access Management, including significant experience designing, implementing, and operating both WIAM and CIAM environments.
  • Proven experience owning complex IAM platforms from architecture through operations in enterprise environments.
  • Experience building and maintaining DaVinci flows for WIAM and CIAM use cases.
  • Strong hands-on experience with Ping Identity products in production environments; including PingOne SSO, PingID, PingOne MFA, PingOne Protect, PingFederate.
  • Strong expertise with modern identity standards and protocols such as SAML, OAuth, OpenID Connect, SCIM, LDAP, and REST-based integrations.
  • Strong hands-on troubleshooting skills across authentication, federation, access, and provisioning flows, including the ability to diagnose issues across browsers, applications, logs, and connected systems.
  • Experience defining and maintaining roles, permissions, and access models in business terms while ensuring accurate implementation in technical systems and application authorization structures.
  • Strong understanding of identity lifecycle processes, including joiner/mover/leaver workflows, access requests, approvals, exception handling, access removal, and periodic review.
  • Experience implementing IAM controls, reporting, and governance processes that improve auditability, risk management, and operational integrity.
  • Working knowledge of identity-related infrastructure and supporting technologies such as directory services, PKI/certificates, networking, system administration, and application integrations.
  • Strong written and verbal communication skills with the ability to partner effectively across technical teams, business stakeholders, and leadership.
  • Demonstrated ability to operate independently, drive change, and bring structure to a fast-moving and evolving environment.
  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related field, or equivalent practical experience.
Desired Candidate Skills
  • Strong hands-on experience with Ping Identity products in production environments.
  • Expertise designing, implementing, and maintaining DaVinci Product flows.
  • Familiarity with PingOne Architecture and the broader Ping platform ecosystem.
  • Experience with PingOne SSO, PingID, PingOne MFA, PingOne Protect, PingOne Authorize, PingFederate, PingAccess, PingDirectory, and related Ping technologies.
  • Experience serving as an internal platform owner who can evaluate new capabilities, form a point of view on the right architecture for the business, and drive adoption of new identity capabilities over time.
  • Experience maintaining lab environments, testing new integrations, and validating new identity patterns before production deployment.
  • Strong understanding of access controls, segregation of duties, least privilege, and policy-driven authorization models.
  • Experience with change management, release management, and integrating IAM work into broader IT and security operating processes.
  • Experience with DevOps and platform engineering practices such as Terraform, CI/CD, API integration, and cloud-native deployment models.
  • Ability to represent Ping internally as the enterprise customer and translate that experience into better architecture, better operational outcomes, and stronger adoption of Ping technology.

Salary Range: $137,000 - $180,000

Life at Ping:

We believe in and facilitate a flexible, collaborative work environment. We’re growing quickly, but remain true to the innovative, can-do startup values that got us here. Most importantly, we keep hiring talented, smart, fun, and genuinely nice people because that’s who we want to succeed with every day. 

Here are just a few of the things that make Ping special:

  • A company culture that empowers you to do your best work.
  • Employee Resource Groups that create a sense of belonging for everyone.
  • Regular company and team bonding events.
  • Competitive benefits and perks.
  • Global volunteering and community initiatives

Our Benefits: 

  • Generous PTO & Holiday Schedule 
  • Parental Leave
  • Progressive Healthcare Options
  • Retirement Programs
  • Opportunity for Education Reimbursement 
  • Commuter Offset (Specific locations) 

Ping is the collective sum of all our individual experiences, backgrounds and influences and we pride ourselves in growing and learning together. We are committed to building an inclusive and diverse environment where everyone’s individuality is respected and everyone has an Identity. In recruiting for new colleagues, we welcome the unique contributions you can bring and encourage you to be your best self.

We are an Equal Opportunity/Affirmative Action employer.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected Veteran Status, or any other characteristic protected by applicable federal, state, or local law.

Skills Required

  • 8+ years of experience in Identity and Access Management, including designing, implementing, and operating WIAM and CIAM environments.
  • Proven experience owning complex IAM platforms from architecture through operations in enterprise environments.
  • Experience building and maintaining DaVinci flows for WIAM and CIAM use cases.
  • Strong hands-on experience with Ping Identity products in production environments (PingOne SSO, PingID, PingOne MFA, PingOne Protect, PingFederate).
  • Strong expertise with identity standards and protocols (SAML, OAuth, OpenID Connect, SCIM, LDAP, REST-based integrations).
  • Strong hands-on troubleshooting skills across authentication, federation, access, and provisioning flows.
  • Experience defining and maintaining roles, permissions, and access models in business terms and implementing them in technical systems.
  • Strong understanding of identity lifecycle processes (joiner/mover/leaver, access requests, approvals, exception handling, reviews).
  • Experience implementing IAM controls, reporting, and governance processes to improve auditability and risk management.
  • Working knowledge of identity-related infrastructure and supporting technologies (directory services, PKI/certificates, networking, system administration, application integrations).
  • Strong written and verbal communication skills and ability to partner with technical teams, business stakeholders, and leadership.
  • Demonstrated ability to operate independently, drive change, and bring structure in a fast-moving environment.
  • Bachelor's degree in Computer Science, Information Systems, Engineering, or related field, or equivalent practical experience.

Ping Identity Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Ping Identity and has not been reviewed or approved by Ping Identity.

  • Leave & Time Off Breadth Time off offerings are described as generous, including unlimited Paid Time Off (PTO) and broad time-off coverage that supports flexibility. Additional time-off elements like holidays and volunteer time are also cited as part of the overall package.
  • Healthcare Strength Health coverage is characterized as comprehensive, spanning medical, dental, and vision plans, with added support such as mental health resources and disability/life insurance. Fertility and family-related health benefits are also referenced as notable components.
  • Retirement Support Retirement benefits are portrayed as a meaningful part of total rewards, with 401(k) plans and employer matching described as a standout feature. Stock-based compensation is also referenced as part of financial rewards for eligible roles.

Ping Identity Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Denver, CO
2,300 Employees
Year Founded: 2002

What We Do

At Ping Identity, we make it possible to trust every digital moment across customers, employees, partners, and non-human identities. Whether you're securing millions of users, fighting fraud, simplifying third-party access, or going passwordless, establishing trust shouldn’t slow you down. Our enterprise-grade identity platform is built for scale, speed, and flexibility and works seamlessly with your existing cloud, hybrid, and on-prem environments. We help you confidently embrace AI and automation with Runtime Identity, so you can continuously verify the identity, context, and intent of every AI agent and control their actions in real time. With Ping, all digital experiences start with trust. Learn more at pingidentity.com.

Why Work With Us

Identians are what make Ping an extraordinary place to work. They create our award-winning products and they’re the reason for our unique customer following.

Gallery

Gallery

Similar Jobs

ServiceNow Logo ServiceNow

Area VP, Sales - Moveworks

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Atlanta, GA, USA
29000 Employees

ServiceNow Logo ServiceNow

Architect

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
San Diego, CA, USA
29000 Employees
148K-230K Annually

Boeing Logo Boeing

Software Engineer

Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
In-Office or Remote
Mesa, AZ, USA
170000 Employees
118K-232K Annually

ServiceNow Logo ServiceNow

Director, Global Partner Leader - Wipro

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Philadelphia, PA, USA
29000 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account