Identity and Access Management Engineer

India, MH, Pune
正式工作

主要职位信息
Location:
India, MH, Pune
Job type:
正式工作
Brand:
Dassault Systèmes
Experience level:
6 to 7 years
Posted on:
11/2/2025
Ref ID:
546007

Identity and Access Management Engineer

Unlock your potential with Dassault Systèmes, a global leader in Scientific Software Engineering as an Identity & Access Management Engineer (IAM) in Pune, Maharashtra!

In our APAC IT organization, we are looking for an experienced, innovative, and motivated IAM Engineer who will help us integrate our various technologies into a homogeneous secured user access experience. 

As an IAM Engineer you’ll contribute towards our goals of achieving true Zero Trust identity access by levering your knowledge of IDP architecture and administration, Privileged Access Management (PAM), Principle of Least Privilege, Single Sign-On integrations, Multi-Factor authentication implementations, implementation of user Life Cycle Management, and the implementation of Role Based Access Control in Active Directory and various other critical environments.

This role requires hands-on experience in user lifecycle management, MFA integrations (Duo Security, Okta Verify, Yubikey, PKI, etc.), API-based automation, and federated identity standards (OIDC, SAML). The IAM Engineer will play a key role in maturing our zero-trust strategy and ensuring that identity remains the foundation of secure access across users, applications, and devices. You will be a key cross-functional resource who will work with different global stakeholders in the business to dive their infrastructures towards zero-trust access.


Role Description & Responsibilities:

  • Design, implement, and maintain IAM solutions leveraging our IDP Okta, ADFS, and utilize CyberArk PAM to manage authentication, authorization, and privileged access.

  • Help create, document, and implement identity management policies which will enhance our zero-trust posture

  • Drive improvement in our RBAC in Active Directory

  • Utilize our internal Microsoft PKI infrastructure to help secure various environments and leverage it as an MFA.

  • Administer and integrate MFA solutions (e.g. Okta Verify, Okta Fastpass, Yubikey, Duo, & PKI) across corporate applications, Systems & Storage infrastructures, and network access devices and appliances.

  • Develop, enhance, and manage user lifecycle automation (new joiners, movers, leaver processes) through identity governance and provisioning workflows.

  • Integrate IAM with enterprise applications via REST APIs, SAML, OIDC, and SCIM for single sign-on (SSO) and secure provisioning.

  • Collaborate with endpoint and device management teams to enable device-based conditional access and posture validation for zero-trust enforcement.

  • Manage privileged accounts and credentials using CyberArk PAM, including password vaulting, privileged session management and       recordings, SSH session integrations with Windows and Linux, and access policies.

  • Monitor and troubleshoot IAM-related issues, including authentication failures, federation errors, and policy misconfigurations.

  • Participate in IAM roadmap planning and contribute to the organization’s identity security architecture.

  • Document IAM standards, configurations, and procedures to ensure compliance and repeatability.

  • Opportunity to be part of a global team that is responsible for influencing and shaping a modern Zero Trust security architecture at a cutting edge software company.

  • Work with cutting-edge IAM and ZTNA technologies.

  • Collaborative culture focused on innovation, learning, and professional growth.

Qualifications:

  • Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent degree and experience).

  • 5 – 7 years of experience in Identity and Access Management or Information Security Engineering

  • 4 – 6 years architecting, implementing, and administering Active Directory

  • Strong hands-on experience with:

     

    Okta (Workforce Identity Cloud, Universal Directory, Lifecycle Management, Workflows)

     

    Microsoft ADFS / Azure AD / Entra ID

     

    CyberArk Privileged Access Management

     

    ZTNA and secure access platforms (e.g., Zscaler, Palo Alto Prisma Access, etc.)

     

    MFA solutions such as Duo Security, Okta MFA, PKI, and Yubikey implementations

  • Expertise in SAML, OIDC, OAuth 2.0, and SCIM integrations.

  • Working knowledge of REST APIs for integration and automations.

  • Knowledge of Zero Trust frameworks, device trust validation, and secure endpoint integration.

  • Experience with identity governance and user lifecycle automation.

  • Strong troubleshooting, scripting, and analytical skills (PowerShell, Python or similar).

What’s in it for you?

  • Provide local benefits to candidate

  • Work in a fun, young & energetic team

  • Very supportive mentor & leaders

Inclusion statement

As a game-changer in sustainable technology and innovation, Dassault Systèmes is striving to build more inclusive and diverse teams across the globe. We believe that our people are our number one asset and we want all employees to feel empowered to bring their whole selves to work every day. It is our goal that our people feel a sense of pride and a passion for belonging. As a company leading change, it’s our responsibility to foster opportunities for all people to participate in a harmonized Workforce of the Future.
Dassault Systèmes Logo > Dassault Systèmes

达索系统是推动人类进步的催化剂。我们为企业和个人提供协作虚拟环境,以畅想可持续创新。通过我们的3DEXPERIENCE平台和应用程序,创建现实世界的虚拟孪生体验,我们为遍布150多个国家、超过35万家各类规模和各个行业的客户带来了价值。加入我们由超过23,800名充满激情的成员组成的全球大家庭吧!

想了解更多?

访问我们网站的其他部分以了解更多信息。

在校生和毕业生

成为我们的一员 - 查看实习和工作机会。

您的应聘之旅

了解您的应聘之旅。

我们的文化和价值观

了解我们的文化和价值观。