Site Reliability Engineer (Identity Management)
Duration : 1 year, possibility to convert full time
Contract Designation : Hybrid 3 days a week on site in Montreal.
Weekend / evenings on call rotation required.
85 / hr on C2C
Client : Morgan Stanley
Hybrid in Montreal 3 days a week
Must have
- Unix command line
- Exp in Identity access mgmt and LDAP
- Site reliability engineering
- Strong communications
Position Overview :
Support Identity Management applications for human and system account management built on the PingIdentity / ForgeRock Identity Management products.
Maintain LDAP Directory Services products such as PingDirectory and PingDataSyncProvide first-line support for Identity Management during large-scale outages, including post[1]mortem, pre-mortems and problem management with a data-driven strategies and a code-firstapproach to problem solving.
Prepare and execute change management activities, often automating and creating tools wherenecessary.
Collaborate with partner enterprise technology teams and provide support to stakeholders andour Level 2 operations team
Contribute to performance and training assessments of team membersImproving stability of Identity Management platforms by identifying and implementing alertautomation and self-healing functions where possible.
Performance and scalability – ensure systems can scale seamlessly to handle increased load andmonitor the performance of our applications and infrastructure using our service level objectives
SLO) and service level indicators (SLI).
Participate in on-call rotations (weekday and weekend cycles)Share responsibilities and knowledge across the team, engaging with our community andstakeholders to gather feedback to improve our systems.
Address security and compliance issues ensuring we are meeting industry standards and haveimplemented best practices for security and data protection with our systems.
Preferred Qualifications
Experience in Identity and Access Management (IAM)Previous experience in IT Operations, Reliability Engineering, or DevOpsExposure to Agile / DevOps environmentsKnowledge of Site Reliability Engineering (SRE) principles and methodologyITIL, CISSP or similar certification (optional)Technical Skills
Basic understanding of the LDAP protocol and its functionalitiesExperience supporting PingDirectory and PingDataSyncFamiliarity with IAM products from providers such as ForgeRock and Ping IdentityKnowledge of enterprise security standards and conceptsUnderstanding of general enterprise infrastructure concepts and troubleshooting, includingnetwork, storage, web infrastructure, middleware, etc.
Basic knowledge of operating system administration on Windows (Active Directory) and Red HatLinux platforms (>
RHEL7+)
Proficiency in at least one scripting language such as PowerShell, Python, Shell (bash)Functional knowledge of C / C++ and Java can be advantageous for some tooling.Experience working within large enterprise architecturesFamiliarity with the Software Development Life Cycle (SDLC) and development environmenttooling (GitHub, Jenkins, Visual Studio Code, etc.)
Familiarity with visualization and plant and incident management tools such as Splunk, Grafana,ServiceNow, Jira, Bitbucket, PagerDuty, PowerBI
Recommend : Foundational knowledge of authentication protocols in the broader IAM domain,such as OpenID Connect, SAML, Kerberos, and Radius, and multifactor authentication solutions
like RSA SecurID, Cisco Duo Security, FIDO, etc
Soft Skills
Strong interest in account management systems, directory products, and information securityExcellent written and oral English communication skills; capable of writing documentation, makingpresentations, and positively interacting with colleagues and customers
Independent problem-solving attitude, highly motivated, and self-directedComfortable working within an operations and support team with end-user interaction andperiodic on-call responsibilities
Advocate of SRE principlesGood organizational skillsGeneral skills
Nice to have
UNIX
LDAP
Languages
Must have
English
Native or bilingual proficiency
Additional vendor information
Must be authorized to work in Canada