
Staff Identity Engineer – RadiantOne
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Canada, +1 more country.
• Design, implement, and optimize Identity Fabric environments, which includes setting up replication topologies, Access Control Instances (ACIs), high-availability configurations, and enhancing performance for enterprise-scale operations.
• Create identity provisioning workflows and develop as well as troubleshoot customized connectors.
• Lead initiatives for directory consolidation, migrations, and hybrid identity that involve multi-forest Active Directory and integration with Azure AD/Entra.
• Act as the technical escalation point for production-related issues such as directory replication, provisioning failures, and identity correlation conflicts.
• Conduct root cause analyses and implement sustainable solutions.
• Collaborate with IAM governance, security architecture, and application teams to ensure directory and provisioning capabilities are in line with the overall identity strategy.
• Establish technical direction and best practices for directory and provisioning engineering.
• Mentor both senior and mid-level engineers.
• Develop Python and PowerShell automation tools to minimize manual operational tasks and enhance reliability.
• Document decisions regarding architecture, design tradeoffs, and operational runbooks.
• Assess and influence the technological roadmap for directory and provisioning solutions.
• A Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent professional experience.
• Over 8 years of hands-on experience in enterprise Identity and Access Management, particularly in identity provisioning and directory services.
• Practical experience with Radiant Logic RadiantOne, including virtual directory design and identity correlation/aggregation.
• Direct experience with Ping Directory or PingDirectoryProxy, focusing on replication and performance optimization.
• Extensive knowledge of LDAP/LDAPS fundamentals, including schema design, referrals, and resolving replication conflicts.
• Experience in designing and constructing provisioning workflows and connectors, involving SCIM, JIT, and custom connector development.
• Proficiency in scripting languages such as JavaScript, Python, and PowerShell for automation, tooling, and provisioning purposes.
• Ability to articulate architectural tradeoffs and establish technical direction for other engineers.
• Capability to work efficiently in a remote-first team setting.
• Familiarity with SailPoint IdentityIQ or similar IGA platforms and experience collaborating with governance teams.
• Knowledge of hybrid identity architectures, Azure AD/Entra ID, and multi-forest Active Directory environments.
• Understanding of PAM boundaries, service account lifecycles, and privileged directory access.
• Experience in leading directory consolidation or large-scale migration projects.
• Previous experience mentoring engineers or informally guiding technical direction within a team.
• Medical, dental, and vision insurance.
• 401(k) plan.
• Paid leave.
• Tuition reimbursement.
• A variety of additional discounts and perks.
• Eligibility for bonuses.
Mercor
RTX
Expel
Qualus
Get handpicked remote jobs straight to your inbox weekly.