Search...

Senior Implementation Engineer

1Kosmos, Inc. logo
1Kosmos, Inc.

1Kosmos provides identity verification, passwordless authentication, and user reverification through a privacy-first platform. Its solutions serve workforce, customer, and government identity use cases, including enterprise clients and large-scale deployments.

Distributed
About 1Kosmos, Inc.

1Kosmos offers an identity platform that verifies users during onboarding, captures biometrics, issues decentralized credentials, enables passwordless authentication, and reverifies identities when risk changes. The company provides integrations, APIs, developer documentation, and solutions for workforce identity, customer identity, citizen identity, and AI agents. Its clients include enterprises, government organizations, and large workforces such as Concentrix's 450,000 users.

View jobs by 1Kosmos, Inc.

Skills

About the Role

You will lead end-to-end deployments of the passwordless authentication and identity verification platform for enterprise and public-sector customers. You will run discovery workshops, architecture reviews, and technical design sessions, then develop implementation plans, migration strategies, and deployment runbooks. You will serve as the primary technical lead during customer onboarding and production rollouts while managing multiple implementations simultaneously. You will design and implement Single Sign-On integrations using SAML 2.0, OpenID Connect, OAuth 2.0, and WS-Federation, and integrate with identity providers including Microsoft Entra ID, PingFederate, Okta, ADFS, ForgeRock, and custom providers. You will deploy passwordless and identity verification solutions using FIDO2, passkeys, WebAuthn, and certificate-based authentication, and integrate with Active Directory, LDAP, HR systems, SIEM platforms, and MFA solutions. You will build automation scripts in Python, PowerShell, and JavaScript, develop and troubleshoot REST API integrations, and create deployment automation and operational tooling. You will act as a trusted technical advisor, mentor customer teams on passwordless best practices, support escalated technical issues, and provide implementation feedback to Product and Engineering.

Requirements

  • 9+ years of hands-on IAM, SSO, or Federation implementation experience
  • 5+ years implementing enterprise authentication and access management solutions
  • Experience leading customer-facing technical implementations
  • Experience integrating enterprise applications and SaaS platforms using federation standards
  • Proven ability to manage complex technical deployments involving multiple stakeholders
  • Strong experience with SAML 2.0, OpenID Connect, OAuth 2.0, SCIM, Active Directory, LDAP, Microsoft Entra ID, MFA, passwordless authentication, PKI, certificate management, REST APIs, JSON, and XML
  • Experience with one or more of Microsoft Entra ID, Ping Identity PingFederate, Okta, ForgeRock, SailPoint, or CyberArk
  • Programming or scripting experience with Python, PowerShell, JavaScript, and Bash

Responsibilities

  • Lead end-to-end deployment of solutions for enterprise and public-sector customers
  • Conduct discovery workshops, architecture reviews, and technical design sessions
  • Develop implementation plans, migration strategies, and deployment runbooks
  • Serve as the primary technical lead during customer onboarding and production rollouts
  • Manage multiple customer implementations simultaneously
  • Design and implement SSO integrations using SAML 2.0, OIDC, OAuth 2.0, and WS-Federation
  • Integrate with enterprise Identity Providers including Microsoft Entra ID, PingFederate, Okta, ADFS, and ForgeRock
  • Configure federation trust relationships, claims mappings, authentication policies, and user provisioning workflows
  • Troubleshoot authentication failures, token issues, certificate problems, and federation incidents
  • Deploy passwordless authentication using FIDO2, passkeys, WebAuthn, mobile-based authentication, and certificate-based authentication
  • Implement identity proofing and verification workflows
  • Design phishing-resistant authentication architectures aligned with Zero Trust principles
  • Integrate passwordless authentication into VPNs, VDI environments, workforce applications, and customer-facing applications
  • Integrate with Active Directory, LDAP, Microsoft Entra ID, HR systems, SIEM platforms, and MFA solutions
  • Deploy and support platform components across hybrid, multi-cloud, and on-premises environments
  • Develop automation scripts and integration tools using Python, PowerShell, and JavaScript
  • Build and troubleshoot REST API integrations
  • Create deployment automation and operational tooling
  • Assist customers with custom integrations and identity workflows
  • Mentor customer teams on passwordless authentication best practices
  • Support escalated technical issues and complex production environments
  • Collaborate with Product, Engineering, Support, and Customer Success to resolve customer challenges
  • Provide implementation feedback to influence product roadmap and feature enhancements

Benefits

  • Flexible hybrid work model
  • Medical
  • Dental
  • Vision
  • 401k