# IAM Technical Lead / Senior IAM Engineer

> Weekday AI · Hyderabad, India · Full-time · Posted 2026-09-04

**Salary:** INR 3,000,000–5,000,000

**Workplace:** on_site

**Department:** Weekday's Client via platform

## Description

**This role is for one of Weekday’s clients  
Salary range: Rs 3000000 - Rs 5000000 (ie INR 30 - 50 LPA)**

  
Min Experience: 10+ years  
Location: Hyderabad, Telangana, India  
JobType: full-time

We are seeking an experienced **IAM Technical Lead / Senior IAM Engineer** to design, engineer, enhance, and integrate enterprise Identity and Access Management (IAM) and Customer Identity and Access Management (CIAM) capabilities across cloud and on-premises environments.

The role will focus on delivering secure, resilient, scalable, and automation-driven identity solutions across platforms such as **Okta, Auth0, and Microsoft Entra ID**. The ideal candidate will have strong expertise in Zero Trust, authentication and authorization, identity lifecycle management, Conditional Access, federation, and application integration.

This is an engineering-focused role involving close collaboration with IAM architects, product owners, cybersecurity teams, application teams, and technology partners.

## Requirements

### Key Responsibilities

### IAM & CIAM Engineering

-   Design, develop, and enhance enterprise Workforce IAM and CIAM solutions using Okta, Auth0, Okta Access Gateway, and Microsoft Entra ID.
-   Engineer secure authentication and authorization solutions supporting Zero Trust, MFA, passwordless authentication, adaptive access, privileged access, and customer identity journeys.
-   Design and implement federation and identity integration patterns using **SAML 2.0, OAuth 2.0, OpenID Connect, and SCIM**.
-   Develop identity lifecycle and access management models for employees, partners, customers, and other external users.
-   Design CIAM journeys covering customer registration, authentication, profile management, consent, and account lifecycle.
-   Ensure IAM solutions follow security, privacy, regulatory, and organizational standards.

### CIAM & Customer Identity

-   Design and implement scalable CIAM architectures using Auth0 for customer-facing applications and digital platforms.
-   Develop secure customer authentication flows involving social identity providers, progressive profiling, step-up authentication, and risk-aware access controls.
-   Partner with application and digital product teams to integrate customer identity capabilities with applications, APIs, and platforms.
-   Establish CIAM patterns that balance security, regulatory compliance, privacy, and customer experience.
-   Ensure appropriate controls for consent management, data minimization, and customer data protection.

### Conditional Access & Zero Trust

-   Design, implement, and continuously improve Microsoft Entra Conditional Access policies aligned with Zero Trust principles.
-   Develop scalable access-control patterns for workforce users, privileged accounts, devices, applications, and workload identities.
-   Implement automation for policy validation, deployment, monitoring, and configuration management.
-   Collaborate with security and architecture teams to strengthen identity-based security controls and Zero Trust strategies.

### Platform Engineering & Automation

-   Develop IAM automation using APIs, SDKs, scripting, and configuration-as-code approaches.
-   Support CI/CD pipelines and controlled deployment of IAM, CIAM, and Conditional Access configurations across environments.
-   Drive platform upgrades, new feature adoption, and technical debt reduction across identity platforms.
-   Identify and implement engineering improvements that enhance platform security, reliability, scalability, and operational efficiency.

### Application & Cloud Integration

-   Partner with application teams to design and implement secure IAM and CIAM integrations for SaaS, cloud, API-based, custom, and legacy applications.
-   Lead IAM technical assessments for application onboarding, migrations, cloud transformations, and modernization initiatives.
-   Validate identity architecture and integrations for security, performance, production readiness, and user experience.
-   Resolve complex federation, authentication, authorization, and access challenges across hybrid and multi-tenant environments.

### Security & Architecture

-   Ensure IAM solutions comply with enterprise security policies, architecture standards, and regulatory requirements.
-   Implement identity security controls based on least privilege, strong authentication, continuous access evaluation, and defense-in-depth principles.
-   Provide technical input into security assessments, audits, risk reviews, and regulatory engagements.
-   Contribute to threat modelling and security design decisions involving identity compromise, unauthorized access, customer fraud, and access abuse.

### Technical Leadership

-   Act as a senior technical authority for IAM engineering and provide technical direction to engineers and developers.
-   Mentor IAM engineers and contribute to technical standards, development practices, and engineering excellence.
-   Collaborate with architects and product owners to influence IAM platform roadmaps and solution strategies.
-   Work with technology partners and vendors on advanced integrations, platform capabilities, and feature adoption.
-   Provide engineering-level guidance during complex IAM incidents, escalations, and technical challenges.

### Documentation & Continuous Improvement

-   Maintain technical designs, integration standards, IAM/CIAM guidelines, architecture documentation, and engineering runbooks.
-   Participate in post-implementation and post-incident reviews from a technical and architectural perspective.
-   Continuously evaluate IAM technologies and industry practices to improve security posture, platform reliability, and developer experience.
-   Support knowledge sharing and establish reusable engineering patterns across IAM initiatives.

### Required Qualifications & Experience

-   10–12 years of overall experience in IAM, CIAM, cybersecurity engineering, or related technology domains.
-   Extensive hands-on experience with enterprise IAM platforms in large-scale environments.
-   Strong expertise in **Okta** and **Microsoft Entra ID**.
-   Strong understanding of IAM architecture, authentication, authorization, identity lifecycle management, and access governance.
-   Experience with Zero Trust architecture and identity-centric security models.
-   Hands-on knowledge of SAML, OAuth, OpenID Connect, and SCIM.
-   Experience developing integrations using APIs, scripting, or programming languages such as Java, .NET, Python, PowerShell, or JavaScript.
-   Experience supporting cloud-first, SaaS, API-driven, and hybrid identity architectures.
-   Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related discipline, or equivalent professional experience.

### Good-to-Have Skills

-   Experience with CIAM implementations and customer identity platforms.
-   Strong hands-on experience with Auth0.
-   Experience with OAuth-based application and API integrations.
-   Exposure to Okta Access Gateway and related identity technologies.
-   Experience with Conditional Access policy automation and governance.
-   Knowledge of identity security, privileged access, and adaptive/risk-based authentication.
-   Experience working in large, global, regulated enterprise environments.

### Key Competencies

-   Strong analytical and problem-solving abilities with a security-first mindset.
-   Ability to communicate complex IAM architectures and technical concepts to technical and non-technical stakeholders.
-   Strong stakeholder management, collaboration, and influencing skills.
-   Ability to provide technical leadership while remaining hands-on.
-   High level of ownership, accountability, and engineering discipline.
-   Comfortable working across global teams and complex enterprise environments.

### Must-Have Skills

-   Okta
-   Entra ID
-   IAM

### Good-to-Have Skills

-   CIAM
-   OAuth

## Apply

[Apply at Weekday AI](https://apply.workable.com/weekday-1/j/9F121C2101/apply)

---
Powered by [Workable](https://www.workable.com)
