← Browse all jobs

T

Forgerock access management (workforce iam)

Teamware Solutions · Bengaluru, India

FULL TIMEpermanent

Job Description

Consultant – Forge Rock Access Management (Workforce IAM)
Locations: Bangalore / Pune Hyderabad
Service Line: Cyber Security – Identity & Access Management
Experience: 4-7 Years
Position Summary
We are seeking a high-performing Consultant – Forge Rock Access Management (Workforce
IAM) with strong experience in designing, implementing, and operating Forge Rock-based
workforce identity solutions. The role involves delivering enterprise-scale identity and
access transformation programs focused on employee, contractor, and privileged user
access across hybrid and cloud environments. The selected candidate will be responsible for
hands-on configuration of Forge Rock Access Management capabilities, enabling secure SSO,
conditional/adaptive access, and MFA with emphasis on phishing-resistant authentication
(e.g., FIDO2/Web Authn/passkeys) and security hardening. You will collaborate with client
stakeholders to build Zero Trust-aligned workforce identity architectures and ensure audit-
ready controls.
Key Responsibilities :
 Implement and configure Forge Rock Access Management (AM) for workforce IAM use cases (SSO, Federation, Adaptive/Conditional Access, MFA).
 Design and implement Single Sign-On (SSO) for Saa S, custom, and on-prem applications using SAML 2.0, OAuth 2.0, and Open ID Connect (OIDC).
 Build and manage authentication journeys using Forge Rock Authentication Trees and Nodes (including custom scripts/nodes as required).
 Implement Multi-Factor Authentication (MFA) and step-up authentication policies with a focus on phishing-resistant MFA (FIDO2/Web Authn/passkeys/security keys) and controlled fallback methods.
 Design contextual and risk-based access policies (device, geo, IP/network zones,behaviorsignals) aligned to Zero Trust and least privilege.
 Integrate Forge Rock with enterprise directories (Active Directory/LDAP) and configure identity store, authentication modules, and mappings.
 Configure federation relationships (Id P/SP), certificate/key management, signing/encryption policies, and metadata exchange.
 Implement session and token hardening: secure cookie settings, timeouts, re-auth triggers, concurrent session control, PKCE and best practices for OIDC/OAuth.
 Configure claims mapping, scopes, JWT customization, and token transformation based on application requirements.
 Troubleshoot authentication, federation, MFA, session, and token-related issues using logs, audit trails, and protocol traces.
 Support workforce IAM architecture for hybrid and cloud environments; participate in solutioning, estimation, and delivery planning.
 Develop High-Level and Low-Level Design documentation, build/configuration guides, and operational runbooks.
 Automate deployments and operations using REST APIs, scripting (Java Script/Groovy), and CI/CD patterns where applicable.
 Support migration from legacy IAM platforms and contribute to audit/compliance
activities (controls evidence, logging, policy validation).
Required Skills & Qualifications
 3-7 years of experience in Identity & Access Management (IAM).
 Minimum 2 years of hands-on experience with Forge Rock Access Management (AM) implementing workforce authentication and SSO.
 Strong understanding of authentication and federation standards: SAML 2.0, OAuth 2.0, Open ID Connect, JWT/JWS/JWE.
 Hands-on experience implementing conditional/adaptive access and step-up authentication using Forge Rock Authentication Trees/Policies.
 Hands-on experience implementing MFA, including phishing-resistant MFA (FIDO2/Web Authn/passkeys/security keys) and secure enrollment/recovery flows.
 Experience integrating with Active Directory / LDAP and troubleshooting directory/authentication issues.
 Experience with REST APIs and basic scripting (Java Script/Groovy; familiarity with Power Shell or Python is a plus).
 Strong troubleshooting skills across auth flows, sessions, cookies, redirects, and protocol-level issues.
Preferred Qualifications
 Experience with Forge Rock Identity Management (IDM) and/or Forge Rock Identity Gateway (IG).
 Experience with containerized deployments (Docker/Kubernetes/Open Shift) and HA/DR architectures for IAM.
 Exposure to SIEM/log analytics (Splunk/ELK) and building audit-ready authentication logging and reporting.
 Knowledge of Zero Trust architecture patterns, device trust concepts, and modern authentication hardening practices.
 Experience with cloud platforms (Azure/AWS/GCP) and hybrid identity integrations.
 Relevant certifications (nice to have): Forge Rock certifications, Security+, or equivalent IAM/security certifications.

Details

CompanyTeamware Solutions
LocationBengaluru, India
TypeFULL TIME
Nichegeneral
Experiencepermanent

Similar Jobs

U

Technol CT

UF Health

P

Ultrasound Tech, PRN

Piedmont Healthcare

W

Pharmacy Manager $50,000 Sign On Bonus

Walmart

U

Interoperative Radiography Technologist Advanced

UCHealth

A

Amazon Delivery Station Warehouse Associate

Amazon Warehouse