🏢 Offshore Consulting Shops

Cognativ is an IT services and software development firm that provides custom engineering, data analytics consulting, and technical resource augmentation for external clients.

This company was flagged and excluded from default search results. Proceed with caution.

C
Posted 1mo ago

SSO / Identity Management Specialist (Python / FastAPI / Microsoft Entra ID) (Hiring Globally)

COGNATIV
India
HybridContract
Responsibilities
  • implementing SSO
  • building APIs
  • troubleshooting authentication
Requirements
  • 10+ years Python backend experience
  • FastAPI
  • Backend API design
  • Practical OAuth 2.0/OpenID Connect/SAML SSO implementation and troubleshooting
  • Secure API design, and independent project delivery
Technical tools mentioned
PythonFastAPIGraphQLOAuth 2.0OpenID ConnectSAMLMicrosoft Entra IDSCIMMFAAWS Cognito

Job description

Job description



Job Overview:


We are looking for an experienced SSO / Identity Management Specialist to support the implementation of enterprise Single Sign-On capabilities, with an initial focus on Microsoft Entra ID integration.

The ideal candidate has strong backend API development experience, especially with Python, FastAPI, and ideally GraphQL, combined with practical experience implementing authentication and identity protocols such as OAuth 2.0, OpenID Connect, SAML, and enterprise SSO flows.

This role is initially expected to support a focused SSO implementation project, but candidates with strong API engineering experience may be considered for additional backend work beyond the initial scope.

Job requirements

  • 10+ years of experience in Python backend development.
  • Deep understanding of Clean Code, Clean Architecture, Modular Architecture, and Distributed Systems.
  • Strong experience with Python backend development.
  • Hands-on experience with FastAPI.
  • Experience designing and implementing backend APIs.
  • Practical experience with OAuth 2.0, OpenID Connect, and SAML.
  • Experience implementing SSO integrations, specifically from the relying-party / service-provider side.
  • Understanding of identity provider configuration, metadata exchange, redirect flows, token validation, claims mapping, and session handling.
  • Ability to troubleshoot SSO issues across application, identity provider, and configuration layers.
  • Strong understanding of secure API design and authentication best practices.
  • Ability to work independently on a focused implementation project.

Job responsibilities

  • Implement SSO integration with Microsoft Entra ID.
  • Build and maintain backend APIs using Python and FastAPI.
  • Support authentication and authorization flows using OAuth 2.0, OIDC, and SAML.
  • Implement the relying-party side of enterprise SSO integrations.
  • Work with technical stakeholders to define, validate, and test identity flows.
  • Debug and resolve authentication, token, redirect, metadata, certificate, and session-related issues.
  • Collaborate with backend and platform teams to ensure secure, scalable, and maintainable implementation.
  • Contribute to documentation for configuration, deployment, troubleshooting, and customer onboarding.
  • Potentially support SCIM provisioning for enterprise customer user management.

Nice-to-Have Skills:
  • Experience with GraphQL.
  • Experience with Microsoft Entra ID enterprise integrations.
  • Experience with SCIM provisioning for user and group lifecycle management.
  • Experience with MFA flows and enterprise security policies.
  • Experience with AWS Cognito.
  • Experience supporting enterprise customer onboarding.
  • Familiarity with audit logging, identity lifecycle events, and access management workflows.

Ideal Candidate Profile:

We are looking for a highly skilled Backend Engineer or Identity Management Specialist with hands-on experience implementing and supporting Single Sign-On (SSO) solutions in production environments. The ideal candidate should have a strong understanding of enterprise identity and access management concepts and proven experience integrating applications with leading identity providers.

The successful candidate will be comfortable troubleshooting complex authentication and authorization workflows, designing secure and scalable API services, and ensuring seamless user access across systems. They should possess strong problem-solving skills, communicate effectively with technical and cross-functional stakeholders, and be capable of delivering high-quality solutions within fast-paced project timelines.

A proactive mindset, attention to security best practices, and the ability to work independently while collaborating with distributed teams will be key to success in this role.

Job benefits

  • A hybrid, flexible working policy.
  • Professional growth and development opportunities.
  • An international team of world-class engineers that brings positive energy.
  • A friendly, supportive, and relaxing working environment in our offices.

Similar jobs

Identity Management Specialist roles
2w
Save
Mark Applied
Hide
Senior Identity & Access Management Specialist
Mumbai, Maharashtra, India
OnsiteFull Time
MUFG Pension & Market Services: Provides administration services for pension funds and corporate markets.
8+ YOE8+ years experience in IAM with 3–5 years hands-on SailPoint IdentityIQ; strong identity lifecycle, provisioning and governance knowledge; experience integrating Okta, Microsoft Entra and Active Directory; REST/JSON/XML and API experience; strong troubleshooting and communication.
SailPoint IdentityIQ, Okta, Microsoft Entra, Active Directory, REST, JSON, XML, APIs
1w
Save
Mark Applied
Hide
Cyber IAM Managed Service
Noida, Uttar Pradesh, India
OnsiteFull Time
KPMG Global Services
KPMG Global Services: Provides global tax, audit, and advisory support services.
2+ YOEMinimum 24 months IAM/MFA experience, PingID administration, knowledge of SSO/federation/SAML/OAuth/OIDC/LDAP/RADIUS/DNS, incident/change management, and strong documentation skills.
PingID, PingFederate, PingOne, VPN, RADIUS, Windows, SAML, OAuth, OpenID Connect, LDAP, DNS
2w
Save
Mark Applied
Hide
Associate Manager- Cyber Security
Ahmedabad, Gujarat, India
OnsiteFull Time
Adani Group
Adani GroupNational Stock Exchange of India: ADANIENT: Developing and operating global infrastructure and energy projects.
5+ YOEBachelor's degree in CS/IT/cybersecurity, 5+ years IDAM experience, CIAM or CompTIA Security+ a plus, experience with RSA, One Identity, Net IQ, CyberArk, BeyondTrust, Okta, Microsoft Azure AD, SailPoint, and knowledge of SSO, PAM, and user provisioning.
RSA, One Identity, Net IQ, CyberArk, BeyondTrust, Okta, Microsoft Azure Active Directory, SailPoint
3w
Save
Mark Applied
Hide
Senior Administrator - Identity Access Management,Service-Oriented Architecture (144059)
India
OnsiteFull Time
HCLTech
HCLTechNational Stock Exchange of India: HCLTECH: Global provider of information technology services and software consulting.
Hands-on IBM ISAM/WebSEAL experience, IAM concepts (SSO, federation, MFA), LDAP/Microsoft Active Directory, SSL/TLS, ServiceNow, middleware (WebSphere, Apache, Tomcat, JBoss, WebLogic), production support and incident/change management.
IBM Security Access Manager, WebSEAL, LDAP, Microsoft Active Directory, SSL/TLS, ServiceNow, IBM WebSphere, Apache, Tomcat, JBoss, WebLogic
1mo
Save
Mark Applied
Hide
Specialist - Identity and Access Management - 2060
Pune, Maharashtra, India
OnsiteFull Time
Medline
MedlineNasdaq: MDLN: Manufactures and distributes medical supplies and clinical solutions.
7+ YOE7+ years IAM experience with hands-on CyberArk L3-L4 administration, PAM/SSO/MFA knowledge, AD/LDAP integrations, Ping and Azure AD experience, ability to design IAM processes, lead CyberArk teams, and manage SLAs and incident/change processes.
CyberArk, CyberArk CPM, Azure Cloud, Azure AD, Azure Active Directory B2C, Active Directory, CrowdStrike IDP, Ping Federated, PingOne, PingID, Ping Directory, Ping Identity, SAML 2.0, SSO, OAUTH, OpenID, Kerberos, LDAP, Microsoft Windows Server, Linux/UNIX
2mo
Save
Mark Applied
Hide
Identity and Access Management Specialist (SailPoint / Saviynt)
Pune, Maharashtra, India
OnsiteFull Time
MajorKey Technologies
MajorKey Technologies: Identity security and access management consulting services provider.
3+ YOE3–5+ years implementing Identity Governance and Administration or Identity Security; SailPoint ISC, Saviynt or Entra ID experience; REST APIs, JSON, LDAP/AD; cloud platforms (AWS/Azure/GCP); strong problem-solving and communication skills.
SailPoint ISC, Saviynt, Entra ID, Active Directory, Azure AD, LDAP, REST APIs, JSON, Web services, AWS, Azure, GCP, PowerShell, Python, Oracle, MS SQL, MySQL