Position Overview We are seeking an experienced IAM Architect / Subject Matter Expert (SME) specializing in ForgeRock and PingID to design, develop, and implement enterprise-grade Identity and Access Management (IAM) solutions. The ideal candidate will have strong hands-on experience with ForgeRock IDM, deep understanding of integration architectures, and solid development skills in Java, Python, and Groovy. This hybrid position requires close collaboration with cross-functional teams to architect, build, and optimize IAM workflows, connectors, and privilege models supporting large-scale enterprise systems.
Key Responsibilities
Lead the design, integration, and implementation of IAM solutions using ForgeRock IDM and PingID.
Develop and customize IDM workflows, schema objects, and privilege models that align with enterprise business requirements.
Build and manage custom integrations between ForgeRock and systems such as Salesforce, Ping Identity, and other third-party applications.
Design and develop RESTful APIs and implement custom connectors using JavaScript, Groovy, and Python.
Configure and optimize reconciliation mappings, scheduler jobs, and data synchronization processes.
Implement and maintain access control policies, including dynamic privilege and role-based access management.
Troubleshoot and resolve issues related to API performance, connector operations, and data integrity.
Conduct root cause analysis and maintain documentation for configuration, support, and continuous improvement.
Collaborate with infrastructure and security teams to ensure scalable, secure IAM architectures in cloud environments.
Required Qualifications
5+ years of hands-on experience with ForgeRock Identity Management (IDM) or comparable IDM platforms.
10+ years of development experience with Java, Cloud technologies, and Python.
Proficiency in developing RESTful APIs using JavaScript or Groovy.
Experience designing custom schema objects and integrating them within ForgeRock’s privilege model.
Integration experience with Salesforce, Ping Identity, and other enterprise systems.
Strong understanding of access control policies, mapping behaviors, and managed object lifecycle events.
Experience with SQL connectors, relational data transformations, and database integration.
Proven troubleshooting and performance optimization skills in IDM workflows and connectors.
Certifications in ForgeRock, PingID, Java, or Cloud technologies are highly desirable.
Education
Bachelor’s degree in Computer Science, Information Systems, or a related field.
Technical Skills Languages & Frameworks: Java, JavaScript, Groovy, Python Technologies: ForgeRock IDM, PingID, RESTful APIs, Service Cloud, SQL Cloud Platforms: AWS or Azure (preferred) IAM Focus Areas: Identity Governance, Privilege Models, Access Control, Workflow Automation
Soft Skills
Excellent communication and documentation skills.
Strong analytical thinking, problem-solving, and troubleshooting ability.
Ability to collaborate cross-functionally with business, security, and infrastructure teams.
Detail-oriented with strong organizational and leadership capabilities.
Work Environment
Hybrid role – candidates based in Virginia (VA) or Texas (TX) preferred.
On-site collaboration may be required on a periodic basis.