Lead Ping Identity Engineer
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
En continuant, vous acceptez nos Conditions d’utilisation & Politique de confidentialité.
What you will do
As the Lead Ping Identity Engineer, you will serve as the foremost hands‑on technical authority for the organisation's Ping Identity and ForgeRock platforms. You will drive the platform's engineering, automation and complex deployments to ensure a robust, secure and highly functional IAM environment. Beyond hands‑on engineering, you will act as a dedicated mentor and internal trainer, leveraging your background as a Certified Ping Instructor to upskill, guide and support junior and medior engineers on complex Ping tooling and deployment strategies.
Your core responsibilities include:
- Technical implementation and execution: serve as the primary technical expert for the IAM platform, configuring, deploying and troubleshooting complex identity protocols including SAML, OIDC, SCIM, RBAC and ABAC within the Ping ecosystem
- Technical mentorship and team enablement: act as the internal educator and escalation point for the engineering team, conducting technical workshops, mentoring junior and medior colleagues, and guiding the team through complex Ping implementations and best practices
- Platform engineering: build, automate and maintain cloud‑native IAM infrastructures using advanced Infrastructure as Code (IaC) and highly automated CI/CD pipelines, ensuring the highest standards of code quality
- Infrastructure and environment management: implement and enforce strict standards for secure version control, deployment environments and secrets management across the identity lifecycle
- Onboarding and integration execution: lead the hands‑on technical onboarding of critical business applications, seamlessly integrating systems and enforcing identity governance controls
- Resilience and recovery: implement the technical controls necessary to meet RPO/RTO requirements, executing Disaster Recovery setups and maintaining high availability across all IAM environments
- Zero-Trust execution: technically implement and strictly enforce least‑privilege access and continuous authentication principles to align the IAM platform with the enterprise Zero‑Trust framework
- Agile technical delivery: drive hands‑on technical delivery within Scrum/Kanban frameworks, unblocking the engineering team, maintaining high code and documentation standards, and fostering a culture of continuous technical improvement
What we are looking for
- Minimum 10+ years of highly demonstrable, enterprise‑level experience in IAM engineering, complex infrastructure deployment and technical enablement
- Proven track record of upskilling engineering teams, with the ability to translate technical designs and IAM workflows into actionable training for less experienced colleagues
- Master's degree in Cybersecurity, Cryptanalysis & Forensics, or equivalent extensive practical experience
- Certified Ping Instructor (PingAM, PingIDM, PingDS, Ping Gateway, PingOne Advanced Identity Cloud, PingOne Davinci) is strictly required to facilitate internal team enablement and training
- Additional advanced technical certifications in the Ping/ForgeRock ecosystem are highly preferred
- Extensive experience delivering technical initiatives within Scrum or Kanban teams, with the ability to deliver and enforce "Definition of Done" compliant code and robust technical documentation
- Advanced proficiency with Agile tooling such as Jira, Confluence or Azure DevOps
- Master-level expertise in version control (Git) and CI/CD workflows, combined with authoritative hands‑on experience using Infrastructure as Code (Terraform, Ansible, etc.), with the ability to review, debug and optimize team code
- Direct, authoritative, hands‑on technical expertise with PingOne Advanced Identity Cloud and the broader ForgeRock ecosystem
- Expert‑level knowledge of identity protocols including OAuth2 and SAML
- Experience with Docker and Kubernetes
- Experience with identity management platforms such as One Identity and SailPoint IdentityIQ
- Active knowledge of Dutch and English
The setting
This assignment runs for 15 months, starting in October 2026. The role is based in Brussels with a hybrid working arrangement. You will work within an Agile team delivering technical initiatives in a public‑sector environment.
You can join us for this assignment as a freelancer or as an employee of HumanInTech. Same role, same team. If you join as an employee, your employment continues beyond this assignment. When it ends, we’ll work together to find your next assignment.
Location: Brussels, hybrid
Work address: Belgium
Employer / contracting party: HumanInTech
Applications close (Brussels time): October 9, 2026 at 2:00 AM
Engagement: Freelance o