From 1Kosmos's posting. “We” and “our” refer to the employer.
We are seeking a highly motivated and customer-facing Senior Implementation Engineer to join our Professional Services and Customer Success organization. This role will lead the deployment and integration of the 1Kosmos passwordless authentication and identity verification platform across enterprise customers.
Key Responsibilities
Customer Implementation & Delivery
Lead end-to-end deployment of 1Kosmos solutions for enterprise and public-sector customers.
Conduct discovery workshops, architecture reviews, and technical design sessions.
Develop implementation plans, migration strategies, and deployment runbooks.
Serve as the primary technical lead during customer onboarding and production rollouts.
Manage multiple customer implementations simultaneously while ensuring delivery excellence.
SSO & Federation Integration
Design and implement Single Sign-On (SSO) integrations using SAML 2.0, OpenID Connect (OIDC), OAuth 2.0, and WS-Federation.
Integrate 1Kosmos with enterprise Identity Providers including Microsoft Entra ID, PingFederate, Okta, ADFS, ForgeRock, and custom Identity Providers.
Configure federation trust relationships, claims mappings, authentication policies, and user provisioning workflows.
Troubleshoot authentication failures, token issues, certificate problems, and federation-related incidents.
Implement identity proofing and verification workflows.
Design phishing-resistant authentication architectures aligned with Zero Trust principles.
Integrate passwordless authentication into VPNs, VDI environments, workforce applications, and customer-facing applications.
Enterprise Infrastructure Integration
Integrate with Active Directory, LDAP, Microsoft Entra ID, HR systems, SIEM platforms, and MFA solutions.
Deploy and support 1Kosmos components.
Support hybrid, multi-cloud, and on-premises deployment models.
Automation & Development
Develop automation scripts and integration tools using Python, PowerShell, and JavaScript.
Build and troubleshoot REST API integrations.
Create deployment automation and operational tooling.
Assist customers with custom integrations and identity workflows.
Customer Success & Escalation Support
Act as a trusted technical advisor for customer IAM and authentication initiatives.
Mentor customer teams on best practices for passwordless authentication adoption.
Support escalated technical issues and complex production environments.
Collaborate with Product, Engineering, Support, and Customer Success teams to resolve customer challenges.
Provide implementation feedback to influence product roadmap and feature enhancements.
Requirements
9+ years of hands-on IAM, SSO, or Federation implementation experience.
5+ years implementing enterprise authentication and access management solutions.
Experience leading customer-facing technical implementations.
Experience integrating enterprise applications and SaaS platforms using federation standards.
Proven ability to manage complex technical deployments involving multiple stakeholders.
Eligible to work in the United States.
Technical Expertise
Strong experience in: SAML 2.0
OpenID Connect (OIDC)
OAuth 2.0
SCIM
Active Directory
LDAP
MFA and Passwordless Authentication
PKI and Certificate Management
REST APIs
JSON and XML
Experience with one or more: Microsoft Entra ID
Ping Identity PingFederate
Okta
ForgeRock
SailPoint
CyberArk
Programming/Scripting experience: Python
PowerShell
JavaScript
Bash
Benefits
Competitive salary of 160000 USD/year, with equity or other long-term upside appropriate to the role and company stage.
Medical, dental, and vision coverage, FSA/HSA options, 401(k), and additional employee benefits.
Equipment budget and a customized workstation for the tools needed to do the job.
Hybrid work model with remote flexibility, anchored by in-person collaboration at our Edison, New Jersey headquarters.
Direct exposure to enterprise customers, product leadership, strategic partners, and a fast-moving identity-security market.
About this listing
LAYIQ is an independent job-discovery service. This listing does not imply a partnership with or endorsement by the employer. Review the original posting for current details and availability.