logo

View all jobs

Ping Solution Architect

Toronto, ON · Information Technology

We are seeking a Ping Identity Solution Architect to lead the design and delivery of enterprise-grade Identity and Access Management (IAM) solutions, with a focus on Customer Identity & Access Management (CIAM).
This role will be responsible for architecting scalable, secure, and user-centric identity solutions using the Ping Identity platform, supporting large-scale digital transformation initiatives across complex, regulated environments.


Key Responsibilities
1. Architecture & Solution Design

  • Define end-to-end IAM/CIAM architecture using Ping Identity products (PingFederate, PingAccess, PingID, PingDirectory)

  • Design secure authentication and authorization flows (SSO, MFA, federation, API security)

  • Establish enterprise architecture patterns for OAuth2, OIDC, and SAML integrations [JASWINDER...Architect | PDF]

  • Develop scalable, high-availability solution designs aligned to Zero Trust and security best practices

2. Ping Platform Leadership

  • Lead architecture decisions and best practices across the Ping stack:

    • PingFederate (SSO, federation hub)

    • PingAccess (application/API access control)

    • PingID (MFA, adaptive authentication)

    • PingDirectory (directory services)

  • Define authentication policy trees, token strategies, and federation models across applications

  • Guide implementation teams on platform configuration and optimization

3. Integration & Application Onboarding

  • Design integration patterns for enterprise, SaaS, and legacy applications

  • Drive onboarding of applications into CIAM platforms using reusable patterns and accelerators

  • Enable API and microservices security using Ping and modern identity standards

4. Security & Compliance

  • Ensure alignment with regulatory and security requirements (e.g., financial services, privacy)

  • Implement adaptive authentication, risk-based access, and step-up MFA policies

  • Embed Zero Trust principles into identity architecture and access enforcement

5. Delivery Leadership

  • Act as the technical authority across programs, working with Tech Leads and delivery teams

  • Provide oversight across design, build, and deployment phases

  • Support Agile POD delivery models and ensure architectural integrity across sprints

6. Stakeholder Engagement

  • Engage with business, security, and application stakeholders to translate requirements into technical designs

  • Support client workshops, solution shaping, and proposal development (e.g., RFQs, SOWs)

  • Provide executive-level guidance on IAM strategy and modernization


Required Skills & Experience

  • 10–15+ years of IAM/security experience, including architecture roles

  • 5+ years hands-on experience with Ping Identity platform (PingFederate, PingAccess, PingID, PingDirectory)

  • Strong expertise in:

    • OAuth2, OpenID Connect (OIDC), SAML

    • SSO and federation architectures

    • MFA and adaptive authentication

  • Experience designing enterprise IAM/CIAM architectures across complex environments

  • Hands-on experience integrating identity solutions with web, mobile, and API ecosystems

  • Strong understanding of Zero Trust architecture principles


Preferred Qualifications

  • Experience in financial services / regulated industries

  • Exposure to CIAM platforms (PingOne, ForgeRock, Okta, etc.)

  • Knowledge of API security, microservices, and cloud-native architectures

  • Experience with DevOps, CI/CD pipelines, and IAM automation

  • Ping certifications or equivalent IAM certifications

Use of Artificial Intelligence

No AI is used in the screening, assessment, or selection of candidates. All applications are reviewed by our recruitment team.

Equal Opportunity

emergiTEL is committed to creating a diverse and inclusive workplace. We welcome applications from all qualified individuals regardless of background, and our hiring process is based solely on skills, experience, and qualifications relevant to the role.


 

Share This Job

Powered by