Senior IAM Architect | PingFederate | AI | Passwordless
Midigator
Software Engineering, IT, Data Science
Alpharetta, GA, USA
Posted on Mar 21, 2026
Summary of Role:
Take the helm of our mission-critical identity services, where you’ll be responsible for maintaining a zero-downtime environment for our most vital applications. You will lead the charge in sunsetting legacy credentials in favor of sophisticated passwordless journeys, all while integrating AI to optimize and self-heal our PingFederate infrastructure. This is a high-impact leadership role for someone who views identity as the ultimate frontier of both user experience and enterprise resilience.
This role reports to our office in midtown Alpharetta, Georgia (JVW) office with travel to our Alpharetta location up to once per week.
What You’ll Do
Take the helm of our mission-critical identity services, where you’ll be responsible for maintaining a zero-downtime environment for our most vital applications. You will lead the charge in sunsetting legacy credentials in favor of sophisticated passwordless journeys, all while integrating AI to optimize and self-heal our PingFederate infrastructure. This is a high-impact leadership role for someone who views identity as the ultimate frontier of both user experience and enterprise resilience.
This role reports to our office in midtown Alpharetta, Georgia (JVW) office with travel to our Alpharetta location up to once per week.
- This is a direct-hire role and is not open to C2C or vendors.**
What You’ll Do
- Lead a high-performing squad of 10+ identity engineers, fostering a culture of technical excellence, continuous learning, and "zero-downtime" operational discipline.
- Own the SSO Roadmap: Serve as the chief architect for our Tier 0 PingFederate environment, translating complex business requirements into scalable, secure, and resilient identity patterns.
- Act as an Incident Commander: Provide executive-level technical leadership during critical outages, ensuring rapid restoration of service and leading deep-dive post-mortems to prevent recurrence.
- Deploy Agentic AI Workflows: Build and oversee autonomous AI agents that monitor infrastructure health in real-time, enabling proactive anomaly detection and automated self-healing of the PingFederate cluster.
- Enforce Infrastructure-as-Code (IaC): Standardize all configuration and deployment pipelines using Terraform and GitOps, ensuring that the identity fabric is reproducible, version-controlled, and free from manual drift.
- Be a visionary who can move us toward a self-healing infrastructure, where automated agents orchestrate real-time recovery and optimization.
- 5-10 years of experience managing PingFederate in a high-availability, clustered environment.
- Experience in "Zero-Downtime" upgrades, configuration replication, and managing mission-critical (Tier 0) authentication traffic where even a 5-minute outage is unacceptable.
- Proficiency in automating PingFederate deployments using Terraform, Ansible, or Jenkins.
- Ability to treat identity configurations as code to ensure consistency across dev, staging, and production environments.
- Beyond basic SSO, understanding of managing complex OAuth Grant Types, OpenID Connect (OIDC) policy management, and Token Exchange—critical for supporting modern mobile apps and AI-agent identities.
- The ideal candidate will design and deploy agentic AI workflows that proactively monitor system health to identify and mitigate potential outages before they impact the user base.
- Ability to be a Team Lead of up to 8-10 engineers. You must be adept at performance management, capacity planning, and technical mentorship.
- Maintained 99.99% availability for a PingFederate cluster supporting 50k+ concurrent sessions.
- Developed agentic AI workflows that reduced Mean Time to Recovery (MTTR) by 40% through automated self-healing.
- Led the migration of 10,000+ users from legacy MFA (SMS/OTP) to phishing-resistant FIDO2/WebAuthn passwordless flows.
- Ping Identity Certified Expert – PingFederate (PFAA-001)
- Automated 100% of PingFederate configuration deployments using Terraform and GitOps, eliminating 95% of manual console errors.
- Designed custom OAuth 2.0 Grant Types and OpenID Connect (OIDC) policy fragments for 200+ integrated enterprise applications.
- Been a Team Lead for a global team of 10+ IAM engineers, overseeing a $2M+ annual budget and cross-functional roadmap delivery