← All Jobs
Posted Apr 25, 2026

IAM Engineer (Okta / ForgeRock / Ping Identity)

Apply Now
Role: IAM Engineer (Okta / ForgeRock / Ping Identity) Work Mode: Remote (Hybrid preferred for CA candidates) Client: Gainwell Work Location & Model Hybrid: Candidates located in the Sacramento / Roseville, CA area must work onsite 2 3 days per week Remote: Candidates outside commutable distance within CA or based elsewhere in the US may work 100% remotely Role Overview We are seeking an experienced IAM Engineer with strong expertise in Okta, ForgeRock, and Ping Identity. The ideal candidate will design, implement, and support enterprise-grade Identity and Access Management (IAM) solutions across cloud and hybrid environments, ensuring secure authentication, authorization, and compliance. Key Responsibilities & Technical Skills Core IAM Expertise Hands-on experience with: Okta: SSO, MFA, Lifecycle Management, Workflows ForgeRock: OpenAM, OpenIDM, OpenDJ, OpenIG Ping Identity: PingFederate, PingAccess, PingDirectory Strong understanding of authentication and authorization protocols: OAuth 2.0, SAML 2.0, OpenID Connect, Kerberos Development & Integration Programming and scripting experience with Java, Python, JavaScript, Groovy, and PowerShell Proven experience integrating IAM platforms with: AWS cloud environments On-prem systems and SaaS applications Strong knowledge of RESTful APIs and identity federation concepts Security & Compliance Solid understanding of SSL/TLS, PKI, and encryption standards Familiarity with compliance frameworks such as GDPR, HIPAA, and SOC 2 Cloud & DevOps Experience managing identities in hybrid and cloud-based IAM architectures Working knowledge of DevOps and automation tools: Jenkins, Docker, Kubernetes, Terraform Soft Skills Strong analytical and troubleshooting capabilities Ability to collaborate across cross-functional teams Clear communication skills with both technical and non-technical stakeholders Preferred Certifications Okta Certified Professional ForgeRock Identity Management Specialist Ping Identity Certified Professional Additional Expectations Flexibility to work extended or adjusted hours based on business needs Willingness to travel as required Video camera usage is mandatory during all interviews and throughout the first week of orientation
Interested in this role?Apply on iHire