Lead LDAP Engineer

Methodhubsoftware — United States · Posted ~5 hours ago

Lead Contract Hybrid

Skills

LDAP Ping Directory Active Directory migration Identity management Terraform CI/CD Active Directory Kubernetes

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

An enterprise technology project is seeking a lead identity engineer to architect directory services, automate infrastructure, and manage large-scale identity migrations.

Highlights

Lead identity infrastructure strategy and complex migration projects for enterprise environments.

Description

Ping Directory Lead SME Location: Malvern, PA. (2-3 day/week) Duration: 12 months We are seeking an expert+ candidate with hands-on experience migrating AD to Ping Directory for a medium- to large financial organization. Responsibilities • Own Ping Directory technical strategy, engineering standards, and platform lifecycle. • Lead architecture and deployment of Ping Directory, PingDirectoryProxy, and PingDataSync, including schema, indexing, access controls, replication, synchronization, and high availability. • Automate infrastructure and configuration through Terraform, Git-based controls, cloud or Kubernetes patterns, and CI/CD pipelines. • Direct Active Directory (AD) migration, including dependency discovery, data mapping, coexistence, cutover, validation, and rollback. • Integrate Ping Directory with identity providers, cloud platforms, privileged access services, and LDAP, REST, or SCIM consumers. • Engineer resilience and performance through capacity planning, monitoring, backup and recovery, disaster-recovery testing, patching, upgrades, and failover validation. • Enforce least privilege, secure LDAP and replication, privileged and non-human identity controls, audit logging, SIEM integration, and compliance evidence. • Provide senior-level production engineering, incident leadership, root-cause analysis, performance tuning, and preventive remediation. • Govern production changes, service validation, data integrity, backout readiness, and continuous reliability improvement. • Maintain architecture standards, implementation guides, runbooks, recovery procedures, and operational knowledge. • Participate in on-call support for critical incidents, releases, failover events, and recovery exercises. Qualifications Ping Directory Platform experience Extensive enterprise directory engineering experience, including senior ownership of highly available, business-critical platforms.Proven delivery of Ping Directory implementations, platform modernization, or large-scale LDAP and Active Directory migrations.Strong command of directory architecture, schema design, replication, synchronization, security, performance, and recovery.Demonstrated leadership across IAM, security, cloud, infrastructure, application, vendor, and audit stakeholders.Bachelor’s degree in computer science, engineering, cybersecurity, or equivalent practical experience; relevant Ping or cloud certifications preferred. Technical Skills Directory platforms: Ping Directory, PingDirectoryProxy, PingDataSync, Active Directory, LDAP/LDAPS, directory information trees, schema, indexes, access controls, password policies, replication, and virtual attributes.Cloud and automation: AWS or equivalent cloud infrastructure, Kubernetes, Terraform, Git, CI/CD, infrastructure as code, secrets management, and certificate automation.Identity integrations: Okta, Microsoft Entra ID, PingFederate, REST APIs, SCIM, identity lifecycle management, and privileged access management.Engineering and operations: Linux, Java Virtual Machine tuning, Python, PowerShell or shell scripting, Splunk or equivalent observability, backup and restore, disaster recovery, capacity planning, and incident management.