Role : Principal Solution Architect (Ping Identity, OIDC, Authentication)
Location : Dallas, TX (Tu / Wd / Th – onsite)
Term : Contract
Exp Level : 10+ years architectural and design experience
Top 3 Mandatory Requirements : Ping Identity, OIDC, Authentication
Nice to have skills : Java, Spring Boot, GraphQL, Airline Domain Knowledge
- Proven track record of implementing federated identity solutions in large-scale environments.
- Hands-on experience integrating identity platforms with modern applications and legacy systems.
Team environment and structure :
This team is a strategic, customer-facing engineering group responsible for delivering secure, seamless login and authentication experiences for millions of airline loyalty program members worldwide. Their work directly impacts customer satisfaction, brand trust, and revenue, making them one of the most high-visibility teams in the organization.
The team is made up of mostly senior engineers.
Additional Job Description details :
Define and maintain the overall architecture for identity and access management (IAM) systems using PingFederate, PingDirectory, and PingOne.Design secure authentication and authorization flows leveraging OIDC, OAuth 2.0, and SAML.Develop and Integrate ApplicationsBuild and maintain microservices using Java and Spring Boot.Design and implement GraphQL APIs for flexible data access and integration with enterprise systems.Identity Platform ManagementConfigure and optimize Ping Identity products for high availability and scalability.Implement token services, federation, and directory synchronization across multiple environments.Security and ComplianceEnsure IAM solutions meet security best practices and compliance requirements (e.g., GDPR, SOC2).Conduct regular audits and reviews of authentication flows and API security.Collaboration and LeadershipWork closely with product teams, developers, and security engineers to align architecture with business needs.Mentor junior engineers and provide technical guidance on IAM and API design.Performance and ReliabilityMonitor system performance and troubleshoot complex integration issues.Drive improvements in scalability, resilience, and fault tolerance of identity services.Innovation and Continuous ImprovementResearch emerging IAM technologies and recommend enhancements.Contribute to architectural standards and best practices for identity and API security.Documentation and GovernanceMaintain detailed architecture diagrams, technical documentation, and integration guidelines.Participate in architecture review boards and governance processes.Best Candidate for this role :
Core Expertise : Identity and Access Management (IAM), API Architecture, and Enterprise Integration
Technical Skills :
Ping Identity Suite :
PingFederate : Deep experience in configuring and managing SSO, federation protocols (SAML, OAuth, OIDC), and token services.PingDirectory : Expertise in LDAP directory services, schema design, and high-availability deployments.PingOne : Familiarity with cloud-based identity solutions, adaptive authentication, and integration with enterprise apps.Identity Standards & Protocols :
Strong knowledge of OIDC, OAuth 2.0, and SAML for secure authentication and authorization flows.Application Development :Proficient in Java and Spring Boot for building scalable microservices.Experience designing and implementing GraphQL APIs for flexible data querying and integration.Architecture & Design :Ability to design enterprise-grade IAM solutions that integrate with heterogeneous systems.Skilled in API security, token lifecycle management, and zero-trust principles.Cloud & DevOps :Familiarity with containerization (Docker / Kubernetes), CI / CD pipelines, and cloud platforms (Azure).WHAT YOU'LL DO
This list is intended to reflect the current job but there may be additional essential functions (and certainly non-essential job functions) that are not referenced. Management will modify the job or require other tasks be performed whenever it is deemed appropriate to do so, observing, of course, any legal obligations including any collective bargaining obligations.
Oversees and contributes to the technical approach of application design
Collaborates with developers to guide the architecture approach for the Functional and Technical Design; reviews, revises, and approves the content of these design documentsCreates required documents to support technical application architecture, vision, strategy, standards, policies, and presentationsContinually contributes technical input and responses in meetings and discussions in order to support the best application architectureEscalates technical issues when needed to keep project on track and minimize riskCreates, maintains, and communicates application architecture standards and procedures related to design, development, and other associated activitiesReviews Business Requirements documents and where applicable, offers alternative best-practice solutions prior to start of designReviews source code changes and / or unit test cases when applicable (i.e. where design, coding or project can involve high risk).Provides technical assistance and feedback, as needed, related to the M&E application and its architectureConsults and advises resources for related application architecture and infrastructure services and technologiesApplies appropriate technology to reduce costs and / or improve productivity resulting in value to the companyMaintains an effective approach on problem solving, multi-tasking, coordinating, and scheduling in accordance with stated goals to ensure visibility and predictabilityInfluences and empowers team members for growth and independenceConsistently demonstrates a positive, professional, leadership attitude and frame of mind when working with and communicating with others