Platform Engineer, IAM, Authentication
Mondelēz International
IndiaremotePosted 1 month ago
Skill Required
IAMPlatform-EngineeringAuthentication-EngineeringSSO-EngineeringCybersecurityIAM-Platform-EngineerIdentity-Platform-EngineerSenior-IAM-EngineerSenior-Identity-And-Access-Management-EngineerPlatform-EngineerPlatform EngineerNginxanalyticalObservabilityCryptographysecurityTestNGdesignOAuthHTMLUnityJWTFulltime
Key highlights
- Subject matter expert for PingFederate, PingID MFA, and Ping Directory.
- Design and implement SAML, OAuth 2.0, and OpenID Connect integrations for secure SSO.
- Mentor and coach junior team members.
- Assess information security risks and support security of IT assets.
- Collaborate with application and IT teams to embed secure SSO and MFA.
- Equal opportunity employer.
Role overview
Join Mondelēz International’s mission to lead the future of snacking as an Information Security and Compliance Specialist. In this role you will work with the information security team to assess risks, implement security technologies, provide day‑to‑day support, manage third‑party compliance, and deliver security training.
Responsibilities
- Assess information security risks in line with internal policy and external best practices.
- Support security of information and IT assets by testing security systems and applying security standards, policies, and procedures.
- Implement cyber security technology and provide day‑to‑day business support under the guidance of the global information security lead.
- Manage third‑party providers to ensure internal and external adherence to standards, when relevant.
- Provide information security training to appropriate teams.
- Act as subject matter expert (SME) for PingFederate, PingID MFA, and Ping Directory, providing hands‑on technical leadership for complex integrations, legacy migrations, and platform enhancements.
- Perform day‑to‑day technical operations and execution for PingFederate, PingID MFA, and Ping Directory services.
- Design, implement, and maintain SAML, OAuth 2.0, and OpenID Connect (OIDC) integrations to enable secure Single Sign‑On (SSO) across enterprise applications.
- Configure and maintain SP/IdP connections and authentication adapters (HTML Form, LDAP, MFA, Kerberos, custom adapters).
- Design authentication policies, selectors, contract mappings, and claim transformations.
- Manage certificate lifecycle (signing and encryption certificates, trust stores).
- Validate user attributes and claims.
- Serve as senior escalation point for critical, high‑severity authentication and SSO incidents, ensuring rapid stabilization and root‑cause resolution.
- Troubleshoot SAML, OAuth 2.0, OIDC, and WS‑Fed flows; conduct JVM analysis (thread dumps, heap dumps, memory utilization, performance bottlenecks).
- Analyze logs and metrics across PingFederate, PingID, and Ping Directory.
- Coordinate with Ping Identity support for complex defects and product issues.
- Collaborate with application and IT teams to integrate secure, user‑friendly SSO and MFA into core enterprise platforms.
- Monitor service availability and performance.
- Support HA/DR architectures, clustering, and load balancing.
- Execute approved configuration changes and service restarts.
- Support upgrades, hotfixes, and emergency patches with pre‑ and post‑deployment validation.
- Design and implement advanced OAuth capabilities, including token exchange, fine‑grained scopes, and JWT customization.
- Drive continuous improvement through automation of recurring operational tasks and enhancement of platform reliability and scalability.
- Mentor and coach junior team members, sharing knowledge and strengthening overall team capability.
- Present identity and security concepts, platform roadmaps, and improvement initiatives to technical and non‑technical audiences.
- Partner with stakeholders to define security requirements based on risk analysis, architectural standards, and industry best practices.
Requirements
- Experience and knowledge in information security, compliance and risk management.
- Understanding of security solutions and their applicability to Mondelēz International.
- Experience with security strategies, awareness campaigns, policies/standards and governance.
- Ability to communicate effectively with technical specialists, leaders and peers.
- Strong analytical and problem‑solving abilities.
- Team player who supports and leads to achieve common goals.
- Desire to drive your future and accelerate your career.
Additional details
- Business Unit Summary: Mondelēz International delivers a broad range of high‑quality snacks, including brands such as Oreo, belVita, LU biscuits, Cadbury Dairy Milk, Milka, Toblerone, Sour Patch Kids, and Trident gum.
- Company size: Approximately 80,000 makers and bakers in more than 80 countries; products sold in over 150 countries.
- Mondelēz International is an equal opportunity employer and will consider all qualified applicants without regard to protected characteristics.
- Job Type: Originally posted on Himalayas.