Senior Engineer, Identity Access Management
Bristol Myers Squibb · Hyderabad, Telangana, India
Bristol Myers Squibb · Hyderabad, Telangana, India
Job Profile Bristol Myers Squibb (BMS) is seeking an experienced **Senior Engineer Identity Access Management (Directory Services)** to design, implement, and support enterprise directory platforms that enable secure identity services across the global organization. The ideal candidate combines deep directory services expertise with strong Linux, cloud, automation, and troubleshooting skills, and thrives in a highly collaborative environment focused on innovation, reliability, security, and operational excellence. This role is responsible for ensuring stability, scalability, security, and availability of critical directory services that support authentication, authorization, and identity-related business processes across the enterprise. The successful candidate will work closely with Architecture, Infrastructure, Security, and Application teams to deliver modern identity solutions and drive continuous improvement initiatives. Key Responsibilities - Provide technical leadership for enterprise directory services platforms based on LDAP technologies, including Ping DS (ForgeRock Directory Services), Ping Directory, Oracle DSEE, Microsoft Entra ID (Azure AD), and virtual directory solutions. - Design, implement, administer, monitor, and optimize directory infrastructure, including replication topologies, indexing strategies, backups, disaster recovery, performance tuning, and capacity planning. - Ensure Directory Services platforms remain secure, compliant, resilient, and highly available. - Partner with Architecture, Security, and Infrastructure teams to evaluate, implement, and integrate new technologies and solutions. - Drive modernization initiatives and proactively identify opportunities to improve performance, scalability, automation, and operational efficiency. - Support business-critical production environments and lead the resolution of complex incidents and escalations. - Conduct Root Cause Analysis (RCA), Problem Management activities, and implement preventive measures to improve service reliability. - Develop and maintain architecture documentation, technical standards, requirements, network designs, roadmaps, implementation plans, recovery procedures, rollback strategies, and disaster recovery solutions. - Direct and support installation, configuration, maintenance, patching, and lifecycle management of directory service platforms. - Collaborate effectively with internal infrastructure teams, application owners, security teams, vendors, and business stakeholders to deliver identity-related capabilities and operational support. - Demonstrate strong ownership and accountability by driving issues to resolution and leading technical initiatives across cross-functional teams. - Mentor and provide technical guidance to junior engineers and team members. - Participate in an on-call support rotation and perform maintenance, deployment, and upgrade activities during approved maintenance windows as required. Required Technical Experience - Advanced expertise with LDAP-based directory technologies, including Ping DS (ForgeRock Directory Services), Oracle DSEE, and other enterprise-grade directory solutions. - Hands-on experience with public cloud platforms such as AWS and Azure. - Strong experience administering Linux operating systems, including software installation, patching, troubleshooting, automation, and performance tuning. - Experience supporting enterprise application servers such as Apache Tomcat, JBoss, WebLogic, and WebSphere. - Strong scripting and automation skills using technologies such as Bash, PowerShell, Python, JavaScript, or similar languages. - Software development experience with knowledge of Object-Oriented Programming (OOP), REST APIs, MVC architecture, and Java frameworks such as Spring. - Strong understanding of networking concepts, including DNS, TLS/SSL, load balancers, reverse proxies, and end-to-end encryption architectures. - Experience integrating directory platforms with enterprise applications, cloud services, and third-party technologies. - Strong troubleshooting and diagnostic skills across identity platforms, infrastructure, network, and application layers. - Experience with SQL and/or PL/SQL for querying, troubleshooting, and supporting enterprise identity and directory-related applications. Preferred Qualifications - Foundational knowledge of Agentic AI concepts, frameworks, and emerging use cases, with an interest in leveraging AI-assisted capabilities to enhance identity operations, security, automation, and user experience. - Working knowledge of Access Management and Identity Federation technologies, including Single Sign-On (SSO), SAML, OAuth 2.0, OpenID Connect (OIDC), Multi-Factor Authentication (MFA), LDAP integrations. - Experience with enterprise identity platforms such as Ping Identity, ForgeRock, Okta, or Microsoft Entra ID. - Experience implementing infrastructure-as-code, automation, and DevOps practices within identity and infrastructure environments. Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.