- Experience
- 3+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 7 કલાક પેહલા
- Work mode
- Work from home
- Education
- Bachelor's degree or equivalent in Computer Science, Information Systems, or related field
- Resume
- Required to apply
Job description
Overview
The Identity Engineer is responsible for supporting and enhancing Milliman’s global Identity & Access Management services. This includes engineering, operating, and refining standardized identity solutions suited to a decentralized multinational organization. The role aims to deliver secure, scalable, and consistent identity services for workforce and clients, while empowering Practice IT teams and product groups to administer resources within established boundaries.
This position involves hands-on engineering, operational support, automation, and providing guidance across identity platforms such as Okta, Microsoft Entra ID, Active Directory, Auth0, among others. Working collaboratively with Infrastructure, Operations, Cloud Services, Information Security, application teams, and Practice IT administrators, the Identity Engineer seeks to reduce risks, enhance reliability, simplify user access, and develop Milliman’s global identity operating standards. Reporting to the Manager of Infrastructure and Cloud Services, this remote India-based role preferably aligns with the New Delhi/NCR region and requires effective collaboration across global time zones. While mainly remote, occasional presence at office events like U.S. leadership visits or team workshops may be required.
Key Responsibilities
- Engineer and maintain Milliman’s centralized workforce identity systems including Okta Workforce Identity, Microsoft Entra ID, Active Directory, Multi-factor Authentication (MFA), Single Sign-On (SSO), lifecycle management, and related integrations.
- Support a decentralized IT environment by enabling delegated administration for Practice IT teams, while ensuring consistent identity standards, auditability, guardrails, and least-privilege access.
- Configure, test, and support SSO and federation across SaaS, internal, cloud, and practice-managed apps adopting protocols such as SAML, OIDC/OAuth, and SCIM.
- Maintain and enhance identity lifecycle processes for onboarding, offboarding, leaves, name changes, group and role assignments, license allocations, and account reconciliation involving HR systems, Okta, AD, and Entra ID.
- Administer Microsoft Entra ID capabilities including enterprise applications, app registrations, managed identities, Conditional Access policies, privileged roles, and hybrid identity synchronization.
- Define and uphold standards, runbooks, and documentation for IAM services utilized across Milliman practices.
- Enable Practice IT and product teams to manage authorized resources through delegated administration models for Okta, Entra ID, Active Directory, and Auth0 where appropriate.
- Handle service catalog requests, optimize ticket categorization, operational metrics, and create knowledge articles to improve intake, routing, reporting, and auditing of identity tasks.
- Provide consultative advice on identity integration patterns, access controls, MFA requirements, and account readiness to internal IT teams.
- Implement identity controls following Milliman’s standards emphasizing unique user identity, MFA, centralized authentication, least privilege, secure service account patterns, and audit preparedness.
- Support enhancements in privileged access including role governance, emergency access, privileged account lifecycles, and just-in-time access capabilities.
- Monitor, diagnose, and resolve identity-related issues such as provisioning failures, sync errors, authentication faults, stale access, misconfigured apps, and account incidents.
- Enforce principles like least-privilege access, just-in-time provisioning, and privileged session monitoring for critical systems.
- Participate in incident review, root-cause analysis, operational resilience improvements, and continuity planning for identity-dependent services.
- Collaborate with Information Security and audit teams to provide evidence, improve access review processes, and fulfill compliance obligations.
- Automate repetitive identity management tasks using PowerShell, APIs, workflows, and infrastructure-as-code methods.
- Advance IAM initiatives including Okta-to-Entra federation, provisioning automation, group and role automation, passwordless authentication, client identity governance, Auth0 administration, and identity threat detection.
- Evaluate new identity platform features, document findings, and assist in translating roadmap strategies into actionable plans.
- Advocate for Zero Trust identity principles such as continuous verification, device trust assessment, and risk-based Conditional Access policy design.
Required Skills and Expertise
- Strong experience administering Okta Workforce Identity including application integration, MFA, lifecycle, workflows, and group assignment.
- Proficiency in Microsoft Entra ID administration including Conditional Access, enterprise apps, app registrations, Privileged Identity Management, B2B, service principals, and hybrid identity.
- Expertise in Active Directory management in multi-domain or delegated environments, covering groups, OUs, GPOs, DNS dependencies, and synchronization.
- Familiarity with Auth0 or similar client identity platforms including tenant management, organizations, enterprise connections, and delegated access controls.
- Deep understanding of identity standards and protocols such as SAML, OIDC/OAuth, SCIM, LDAP, Kerberos, and modern authentication methods.
- Automation skills using PowerShell, REST APIs, Microsoft Graph, Okta APIs, and workflow automation tools.
- Operational support experience encompassing ticket handling, change management, runbooks, incident response, and communications with stakeholders.
- Effective written and oral communication abilities suited for global teams, ensuring documented handoffs, runbooks, status updates, and follow-through across time zones.
Preferred Qualifications and Experience
- Background in global professional or financial services, consulting, or decentralized IT environments.
- Experience in shared service models, delegated administration, or federated operations across multiple business units or practices.
- Proven collaboration with stakeholders and teams across India, U.S., and other international regions.
- Knowledge of identity governance, access reviews, privileged access management, passwordless authentication, identity threat detection, or Zero Trust frameworks.
- Experience with IT Service Management (ITSM) tools, service catalog development, ticket taxonomy, operational reporting, and continuous process improvement.
Educational and Certification Requirements
- Bachelor’s degree or equivalent in Computer Science, Information Systems, B.Tech/B.E., MCA, M.Sc., or similar disciplines.
- Minimum 3 years' experience in identity, infrastructure, cloud, or systems engineering roles.
- Hands-on expertise managing at least two major identity platforms such as Okta, Microsoft Entra ID, Active Directory, or Auth0.
- Strong troubleshooting capabilities spanning identity, authentication, directory services, networking, endpoints, and application integrations.
- Certifications such as Okta Certified Professional/Administrator, Microsoft Certified Identity and Access Administrator (SC-300), Microsoft Certified Azure Administrator (AZ-104), or relevant cloud, PAM, IGA, or automation credentials are highly valued.
Behavioral Competencies
- A strong service orientation recognizing identity as a shared service balancing standardization and business practicality.
- Sound security judgment applying risk-based approaches to authentication, authorization, privileged access, and operations.
- Proven collaboration skills engaging with cross-functional teams and stakeholders without direct authority.
- Operational discipline demonstrated through documentation, change management, runbook maintenance, and visibility into work via tickets and metrics.
- Clear global communication ensuring concise written updates, handoffs, and visible progress across geographically dispersed teams.
- Automation mindset seeking to reduce manual tasks, enhance reliability, and establish repeatable identity management processes.
- Commitment to continuous improvement using incident learnings, audit feedback, stakeholder inputs, and roadmap objectives.