1

Ciam Jobs (NOW HIRING)

Sr Engineer, CIAM

Plano, TX · On-site

$100K - $137K/yr

Responsibilities CIAM Architecture & Platform Governance * Own the architecture and design of the enterprise customer identity platform, including authentication policy frameworks, authorization ...

IAM Risk Audit (CIAM) - Lead

Chicago, IL · On-site

$99K - $169K/yr

The Lead, Client Identity & Access Management (CIAM) Risk & Audit, plays a key role in supporting and advancing risk, audit, governance, and control activities across the organization's client ...

IAM Risk Audit (CIAM) - Lead

Chicago, IL · On-site

$99K - $169K/yr

The Lead, Client Identity & Access Management (CIAM) Risk & Audit, plays a key role in supporting and advancing risk, audit, governance, and control activities across the organization's client ...

Description Senior CIAM Security Professional Location and work arrangement: Four day onsite hybrid schedule in one of the following Citizens hubs: * Johnston, RI * Phoenix, AZ * Westwood or Medford ...

Description Senior CIAM Security Professional Location and work arrangement: Four day onsite hybrid schedule in one of the following Citizens hubs: * Johnston, RI * Phoenix, AZ * Westwood or Medford ...

Description Senior CIAM Security Professional Location and work arrangement: Four day onsite hybrid schedule in one of the following Citizens hubs: Johnston, RI Phoenix, AZ Westwood or Medford, MA ...

Sr CIAM Security Professional

Iselin, NJ · Hybrid

$100K - $150K/yr

Description Senior CIAM Security Professional Location and work arrangement: Four day onsite hybrid schedule in one of the following Citizens hubs: * Johnston, RI * Phoenix, AZ * Westwood or Medford ...

Sr CIAM Security Professional

Iselin, NJ · Hybrid

$100K - $150K/yr

Description Senior CIAM Security Professional Location and work arrangement: Four day onsite hybrid schedule in one of the following Citizens hubs: Johnston, RI Phoenix, AZ Westwood or Medford, MA ...

Description Senior CIAM Security Professional Location and work arrangement: Four day onsite hybrid schedule in one of the following Citizens hubs: Johnston, RI Phoenix, AZ Westwood or Medford, MA ...

Sr CIAM Security Professional

Iselin, NJ · Hybrid

$100K - $150K/yr

Description Senior CIAM Security Professional Location and work arrangement: Four day onsite hybrid schedule in one of the following Citizens hubs: * Johnston, RI * Phoenix, AZ * Westwood or Medford ...

IAM Risk Audit (CIAM) - Lead

Tempe, AZ · On-site

$99K - $169K/yr

The Lead, Client Identity & Access Management (CIAM) Risk & Audit, plays a key role in supporting and advancing risk, audit, governance, and control activities across the organization's client ...

Description Senior CIAM Security Professional Location and work arrangement: Four day onsite hybrid schedule in one of the following Citizens hubs: Johnston, RI Phoenix, AZ Westwood or Medford, MA ...

Showing results 41-60

Ciam information

See salary details

$34K

$95.7K

$399.5K

How much do ciam jobs pay per year?

As of Sep 10, 2026, the average yearly pay for ciam in the United States is $95,671.00, according to ZipRecruiter salary data. Most workers in this role earn between $50,000.00 and $97,500.00 per year, depending on experience, location, and employer.

What does a CIAM professional do?

CIAM stands for Customer Identity and Access Management. CIAM professionals are responsible for implementing and managing systems that securely handle customer identities, authentication, and access to digital services. Their primary goal is to ensure a seamless and secure user experience while protecting sensitive customer data from unauthorized access or breaches. They often work with technologies like single sign-on (SSO), multi-factor authentication, and privacy compliance solutions. CIAM experts are essential for organizations that interact with customers through web or mobile platforms.

What skills and qualifications are needed to thrive as a CIAM specialist?

To thrive as a CIAM Specialist, you need expertise in identity and access management concepts, security protocols, and a background in computer science or information technology. Familiarity with tools like Okta, ForgeRock, Azure AD, and relevant certifications such as Certified Identity and Access Manager (CIAM) or CISSP is often required. Strong analytical thinking, problem-solving abilities, and effective communication skills help distinguish top professionals in this role. These skills are crucial for ensuring secure, seamless user experiences while protecting sensitive customer data and maintaining regulatory compliance.

What are common challenges faced by CIAM professionals?

Professionals in CIAM roles often encounter challenges related to balancing strong security requirements with a seamless user experience. Ensuring compliance with data privacy regulations, integrating new authentication methods, and managing large volumes of user data can be complex. Additionally, CIAM specialists frequently collaborate with cross-functional teams, including IT, security, and product management, to implement solutions that scale effectively while meeting organizational needs. Staying updated with evolving security threats and emerging technologies is also essential in this dynamic field.

What is the difference between Ciam vs Data Analyst?

AspectCIAMData Analyst
Required credentialsCertifications in identity management, cybersecurity, or related fieldsDegree in statistics, mathematics, or related fields; certifications like Microsoft Data Analyst
Work environmentIT security teams, identity management systems, cloud platformsData analysis teams, business intelligence departments, software tools
Employer and industry usageTech companies, financial institutions, healthcare providersMarketing firms, finance, healthcare, tech companies

CIAM (Customer Identity and Access Management) focuses on managing user identities and securing access to digital services. Data Analysts interpret data to inform business decisions. While CIAM involves security and identity protocols, Data Analysts work with data analysis tools and reporting. Both roles require technical skills but serve different functions within organizations.

More about Ciam jobs

What states have the most Ciam jobs?

States with the most job openings for Ciam jobs include:

Infographic showing various Ciam job openings in the United States as of September 2026, with employment types broken down into 94% Full Time, and 6% Contract. Highlights an 70% Physical, 9% Hybrid, and 21% Remote job distribution, with an average salary of $95,671 per year, or $46 per hour.

Senior Identity & Access Management (CIAM) Engineer

Plano, TX • On-site

PepsiCo
Food and Drink Manufacturing • 10K+ employees

$80K - $134K/yr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 26 days ago


PepsiCo rating

7.5

Company rating: 7.5 out of 10

Based on 907 frontline employees who took The Breakroom Quiz


Job description

Overview

The Identity Access Management (IAM) Engineer will serve as a hands-on technical resource with strong Customer Identity and Access Management (CIAM) expertise, responsible for implementing, supporting, and improving secure identity solutions for B2B, B2C, and external user populations.

This role requires solid technical experience in CIAM platforms such as Okta Customer Identity Cloud/Auth0, Okta, Ping, or ForgeRock, with strong hands-on knowledge of OAuth 2.0, OpenID Connect, SAML, JWT, SCIM, API integrations, MFA, passwordless, adaptive authentication, and customer identity lifecycle flows.

The engineer will work on CIAM implementation activities from requirements through production support, including platform configuration, application integration, testing, troubleshooting, documentation, and operational handoff.

The successful candidate should be able to operate independently on technical tasks, support CIAM design discussions, strengthen security controls, and help onboard digital applications while maintaining good user experience and compliance alignment.

Must have strong hands-on configuration, scripting, API integration, troubleshooting, and support experience in CIAM or access management environments.

This role is based out of Plano, Texas and requires coming into the office.

Responsibilities
  • Serve as a hands-on CIAM technical resource for implementation, configuration, integration, and production support.
  • Configure and support CIAM solutions using Okta Customer Identity Cloud/Auth0, Okta, Ping, ForgeRock, or comparable platforms.
  • Build and support customer identity flows including registration, login, MFA, passwordless authentication, social login, consent, profile management, account recovery, and progressive profiling.
  • Support secure application integrations using OAuth 2.0, OpenID Connect, SAML, JWT, SCIM, REST APIs, SDKs, webhooks, and token-based authorization patterns.
  • Implement B2B and B2C identity patterns for web, mobile, portal, API, eCommerce, and partner-facing applications.
  • Configure platform capabilities such as Auth0 Actions, Rules, Hooks, Organizations, Management APIs, Okta Workflows, Identity Engine, Universal Directory, and Lifecycle Management.
  • Develop scripts, workflows, and automation to support identity lifecycle, application onboarding, monitoring, reporting, and operational efficiency.
  • Work with Cybersecurity, API, architecture, digital product, and application teams to support secure authentication and authorization patterns.
  • Participate in CIAM roadmap delivery, platform modernization, migrations, and capability enhancements.
  • Troubleshoot authentication, federation, token, consent, profile, directory, API, latency, and production availability issues.
  • Support monitoring, alerting, logging, audit, and reporting using tools such as Splunk, ELK, Prometheus, or native platform logs.
  • Implement security controls such as adaptive authentication, attack protection, bot protection, risk-based access, identity proofing integrations, and zero trust-aligned policies.
  • Support privacy, regulatory, audit, and compliance requirements related to customer identity, consent, data protection, and access governance.
  • Use DevSecOps practices, CI/CD pipelines, Git-based configuration management, Terraform, Ansible, or similar tools to improve repeatability and reduce manual changes.
  • Create and maintain integration patterns, technical design documents, runbooks, standards, and operational handoff materials.
  • Provide Level 2/Level 3 support, incident support, root cause analysis, and improvement recommendations for CIAM services.
  • Share technical knowledge with team members and contribute to Agile DevOps delivery practices.

Compensation and Benefits:

  • The expected compensation range for this position is between $80,200 - $134,250.
  • Location, confirmed job-related skills, experience, and education will be considered in setting actual starting salary. Your recruiter can share more about the specific salary range during the hiring process.
  • Bonus based on performance and eligibility target payout is 8% of annual salary paid out annually.
  • Paid time off subject to eligibility, including paid parental leave, vacation, sick, and bereavement.
  • In addition to salary, PepsiCo offers a comprehensive benefits package to support our employees and their families, subject to elections and eligibility: Medical, Dental, Vision, Disability, Health, and Dependent Care Reimbursement Accounts, Employee Assistance Program (EAP), Insurance (Accident, Group Legal, Life), Defined Contribution Retirement Plan.
Qualifications

Minimum Qualifications:

  • 8+ years of overall IT experience with hands-on engineering or support background.
  • 6+ years of IAM, access management, authentication, federation, or identity engineering experience.
  • 4+ years of hands-on CIAM implementation or support experience for B2B, B2C, external customer, partner, or digital identity use cases.
  • Hands-on experience with Okta Customer Identity Cloud/Auth0, Okta, Ping, ForgeRock, or comparable CIAM platform.
  • Strong working knowledge of OAuth 2.0, OpenID Connect, SAML 2.0, JWT, SCIM, LDAP, REST APIs, SDKs, webhooks, and API security.
  • Hands-on experience configuring CIAM applications, connections, identity providers, login/sign-up flows, redirect URIs, callback URLs, logout URLs, custom domains, and branding.
  • Good understanding of OAuth/OIDC flows including Authorization Code with PKCE, Client Credentials, refresh tokens, scopes, claims, audiences, issuers, token validation, and token lifetime management.
  • Experience integrating CIAM with single-page applications, mobile apps, backend APIs, portals, and partner-facing applications using vendor SDKs, REST APIs, and modern web frameworks.
  • Experience configuring or supporting MFA, passwordless authentication, social login, enterprise federation, user registration, account recovery, profile management, and consent capture.
  • Hands-on experience with custom claims, rules/actions/hooks, API permissions, RBAC, groups/roles, attribute mapping, and user metadata/profile attribute management.
  • Experience troubleshooting CIAM issues related to redirects, SSO sessions, token errors, certificate/metadata mismatches, CORS, API authorization failures, login failures, and user provisioning issues.
  • Understanding of CIAM security controls such as adaptive MFA, bot/credential attack protection, breached password detection, rate limits, tenant logs, suspicious activity monitoring, and audit logging.
  • Hands-on scripting or development experience using Java, JavaScript, Node.js, React, Spring Boot, Python, PowerShell, or similar technologies.
  • Experience with CI/CD, DevSecOps, Git, Terraform, Ansible, Jenkins, GitHub Actions, Azure DevOps, or comparable automation tools.
  • Experience supporting production IAM or CIAM platforms, including monitoring, logging, incident support, root cause analysis, and performance troubleshooting.
  • BS/BA degree in Computer Science, Information Security, Engineering, or equivalent work experience.
  • Okta Certified Administrator preferred; Okta Certified Consultant, Okta Certified Developer, Auth0/Okta Customer Identity Cloud certification, or Ping/ForgeRock certification is a plus.
  • CISSP, CIAM, CISM, or comparable security certification is a plus.

Preferred Qualifications:

  • Experience implementing enterprise CIAM solutions at scale.
  • Hands-on experience with Okta Customer Identity Cloud/Auth0 capabilities such as Actions, Rules, Hooks, Organizations, Management API, attack protection, log streaming, and custom domains.
  • Experience with Okta Identity Engine, Universal Directory, Lifecycle Management, Workflows, Administrative APIs, and application integration patterns.
  • Exposure to Ping, ForgeRock, SiteMinder, Azure AD/Entra ID, AWS Cognito, or other identity platforms is preferred.
  • Ability to support secure B2B and B2C identity models for large-volume customer environments, including retail, eCommerce, mobile, portal, or partner ecosystems.
  • Good understanding of authentication and authorization patterns including SSO, federation, token exchange, refresh tokens, session management, scopes, claims, consent, and delegated authorization.
  • Understanding of API gateways, microservices, REST integration, reverse proxies, load balancers, headers-based authentication, and secure API access patterns.
  • Experience integrating CIAM with web applications, mobile applications, CRM, Salesforce, SAP, eCommerce platforms, directories, data platforms, or downstream business systems.
  • Awareness of privacy and security requirements such as GDPR, CCPA, consent capture, data minimization, audit logging, and customer data protection.
  • Experience with security controls such as risk-based authentication, adaptive MFA, bot mitigation, credential attack protection, suspicious activity detection, and passwordless authentication.
  • Hands-on experience with Java, Node.js, JavaScript, React, Spring Boot, Python, PowerShell, SQL, and REST API development.
  • Experience deploying or supporting identity solutions in AWS, Azure, or hybrid environments.
  • Exposure to Docker, Kubernetes, Linux, Windows, middleware, Apache, and enterprise infrastructure components.
  • Experience with Splunk, ELK, Prometheus, native CIAM logs, SIEM integrations, or operational dashboards.
  • Experience creating reusable integration patterns, runbooks, standards, and technical documentation.
  • Experience supporting application migrations from legacy IAM platforms to modern CIAM capabilities.
  • Ability to troubleshoot complex issues while continuing to build deeper SME-level expertise.

Non-Technical skills:

  • Strong communication skills with the ability to explain CIAM concepts to technical teams, application owners, and security partners.
  • Self-starter who can analyze requirements, identify risks, propose solutions, and complete technical tasks with limited guidance.
  • Strong analytical and problem-solving skills, especially during integration troubleshooting and production support.
  • Ability to balance security, user experience, scalability, performance, compliance, and delivery timelines.
  • Ability to work across global teams, vendors, cybersecurity, architecture, product, and application teams.
  • Good documentation discipline, including integration guides, runbooks, standards, and operational handoff materials.
  • Flexible and able to adapt to changing priorities in a fast-paced enterprise environment.

Our Company will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the Fair Credit Reporting Act, and all other applicable laws, including but not limited to, San Francisco Police Code Sections 4901-4919, commonly referred to as the San Francisco Fair Chance Ordinance; and Chapter XVII, Article 9 of the Los Angeles Municipal Code, commonly referred to as the Fair Chance Initiative for Hiring Ordinance.

All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status.

PepsiCo is an Equal Opportunity Employer: Female / Minority / Disability / Protected Veteran / Sexual Orientation / Gender Identity

If you'd like more information about your EEO rights as an applicant under the law, please download the availableEEO is the Law&EEO is the Law Supplementdocuments. ViewPepsiCo EEO Policy.

Please view ourPay Transparency Statement

#J-18808-Ljbffr

What PepsiCo employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


PepsiCo logo

About PepsiCo

Sourced by ZipRecruiter

PepsiCo products are enjoyed by consumers more than one billion times a day in more than 200 countries and territories around the world. PepsiCo generated $86 billion in net revenue in 2022, driven by a complementary beverage and convenient foods portfolio that includes Lay's, Doritos, Cheetos, Gatorade, Pepsi-Cola, Mountain Dew, Quaker, and SodaStream. PepsiCo's product portfolio includes a wide range of enjoyable foods and beverages, including many iconic brands that generate more than $1 billion each in estimated annual retail sales.

Industry

Food and drink manufacturing

Company size

10,000+ Employees

Headquarters location

Purchase, NY, US

Year founded

1965