Build authentication and registration journeys using Transmit Journey Orchestration ... Configure OIDC, OAuth 2.0, and SAML flows * Manage identity lifecycle: registration, login, step-up ...
Build authentication and registration journeys using Transmit Journey Orchestration ... Configure OIDC, OAuth 2.0, and SAML flows * Manage identity lifecycle: registration, login, step-up ...
Lead Engineer - Identity and Authentication
New York, NY · On-site
$112K - $147K/yr
Proficient in authentication protocols and standards (OAuth2, OIDC, SAML, WebAuthn, FIDO2). * Experience building and scaling identity platforms at fintech companies or security-focused engineering ...
Lead Engineer - Identity and Authentication
New York, NY · On-site
$112K - $147K/yr
Proficient in authentication protocols and standards (OAuth2, OIDC, SAML, WebAuthn, FIDO2). * Experience building and scaling identity platforms at fintech companies or security-focused engineering ...
OAuth 2.0, OpenID Connect, FIDO2/WebAuthn, SAML, TOTP. * Experience with API authentication patterns (API keys, OAuth client credentials, mTLS), and with authentication for AI agents, MCP servers, or ...
Quick apply
OAuth 2.0, OpenID Connect, FIDO2/WebAuthn, SAML, TOTP. * Experience with API authentication patterns (API keys, OAuth client credentials, mTLS), and with authentication for AI agents, MCP servers, or ...
Lead Engineer - Identity and Authentication
$112K - $147K/yr
Proficient in authentication protocols and standards (OAuth2, OIDC, SAML, WebAuthn, FIDO2). * Experience building and scaling identity platforms at fintech companies or security-focused engineering ...
Lead Engineer - Identity and Authentication
$112K - $147K/yr
Proficient in authentication protocols and standards (OAuth2, OIDC, SAML, WebAuthn, FIDO2). * Experience building and scaling identity platforms at fintech companies or security-focused engineering ...
GSFC - .Net Developer
Tucker, GA · On-site
$44/hr
NET Core, C#, Python development, OIDC & SAML authentication, REST APIs, relational databases, and frontend technologies, with a passion for building scalable and secure enterprise web applications.
Quick apply
GSFC - .Net Developer
Tucker, GA · On-site
$44/hr
NET Core, C#, Python development, OIDC & SAML authentication, REST APIs, relational databases, and frontend technologies, with a passion for building scalable and secure enterprise web applications.
OAuth 2.0, OpenID Connect, FIDO2/WebAuthn, SAML, TOTP. * Experience with API authentication patterns (API keys, OAuth client credentials, mTLS), and with authentication for AI agents, MCP servers, or ...
OAuth 2.0, OpenID Connect, FIDO2/WebAuthn, SAML, TOTP. * Experience with API authentication patterns (API keys, OAuth client credentials, mTLS), and with authentication for AI agents, MCP servers, or ...
The authentication group manages services used by all employees in the organization. The ideal ... SAML/OIDC applications with Azure AD * Experience with VMware vCenter to manage Windows virtual ...
The authentication group manages services used by all employees in the organization. The ideal ... SAML/OIDC applications with Azure AD * Experience with VMware vCenter to manage Windows virtual ...
Senior Vice President, Identity and Authentication Engineer
Pittsburgh, PA · On-site
$111K - $152K/yr
... and Authentication Engineer to join our Identity and Access Management team. This role is in ... Demonstrated hands-on experience with single sign-on and federation technologies, including SAML ...
Senior Vice President, Identity and Authentication Engineer
Pittsburgh, PA · On-site
$111K - $152K/yr
... and Authentication Engineer to join our Identity and Access Management team. This role is in ... Demonstrated hands-on experience with single sign-on and federation technologies, including SAML ...
Senior Java Developer
Colorado Springs, CO · Remote
$55.50 - $70.75/hr
Familiarity with identity and access management, including SAML authentication * Ability to develop and complete user stories independently, with minimal assistance on complex issues * Experience ...
Senior Java Developer
Colorado Springs, CO · Remote
$55.50 - $70.75/hr
Familiarity with identity and access management, including SAML authentication * Ability to develop and complete user stories independently, with minimal assistance on complex issues * Experience ...
The authentication group manages services used by all employees in the organization. The ideal ... SAML/OIDC applications with Azure AD * Experience with VMware vCenter to manage Windows virtual ...
The authentication group manages services used by all employees in the organization. The ideal ... SAML/OIDC applications with Azure AD * Experience with VMware vCenter to manage Windows virtual ...
... and Authentication Engineer to join our Identity and Access Management team. This role is in ... Demonstrated hands-on experience with single sign-on and federation technologies, including SAML ...
... and Authentication Engineer to join our Identity and Access Management team. This role is in ... Demonstrated hands-on experience with single sign-on and federation technologies, including SAML ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
MFA (Multi Factor Authentication)
Philadelphia, PA · On-site
$115K - $158K/yr
... authentication, authorization, and identity management, including federation and multi-factor ... SAML 2.0, OAuth 2.0, etc. Technical competence in the needed technical areas: Java, J2EE, and ...
MFA (Multi Factor Authentication)
Philadelphia, PA · On-site
$115K - $158K/yr
... authentication, authorization, and identity management, including federation and multi-factor ... SAML 2.0, OAuth 2.0, etc. Technical competence in the needed technical areas: Java, J2EE, and ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Deep knowledge of LDAP, Kerberos, NTLM decommissioning, SAML 2.0, OIDC, OAuth, and modern API ... legacy authentication protocols (LDAP, Kerberos, NTLM decommissioning). * 7+ Years of deep ...
Saml Authentication information

Lead Engineer - Customer Identity & Authentication (Transmit Security & Apigee)
United AirlinesAtlanta, GA
Other
Medical, Dental, Vision, Life, Retirement, PTO
Posted 7 days ago
United Airlines rating
7.8
Based on 333 frontline employees who took The Breakroom Quiz
9th of 26 rated airlines
Job description
Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way you'd like, where you'll be supported and inspired bya collaborative community of colleagues around the world, and where you'll be able to reimagine what's possible. Join us and help the world's leading organizationsunlock the value of technology and build a more sustainable, more inclusive world.
The job is located at Atlanta, GA. This job requires onsite participation.
We are looking for a skilled CIAM Engineer with expertise in Transmit Security and Apigee to build secure, scalable, and seamless customer authentication solutions. The role focuses on passwordless authentication, fraud prevention, API security, and identity lifecycle management across web and mobile platforms.
Customer Identity & Authentication- Design and implement Transmit Security CIAM solutions
- Enable passwordless authentication, adaptive MFA, and risk-based authentication (RBA)
- Implement FIDO2/WebAuthn, passkeys, biometrics, OTP, and push authentication
- Build authentication and registration journeys using Transmit Journey Orchestration
- Configure OIDC, OAuth 2.0, and SAML flows
- Manage identity lifecycle: registration, login, step-up auth, recovery, consent, profile updates
- Use MongoDB for storing profiles, session data, device fingerprints, and fraud telemetry
- Integrate Transmit Risk & Fraud Intelligence via Apigee
- Apply device, behavioral, and network signals for authentication decisions
- Implement real-time risk scoring to prevent ATO, credential stuffing, and bot attacks
- Align fraud rules with Transmit policies and Apigee enforcement
- Deploy solutions on AWS/GCP
- Build CI/CD pipelines using Infrastructure-as-Code
- Manage secrets, tokens, and certificates securely
- Ensure high availability, scalability, and performance
- Apply Zero Trust principles across identity and API layers
- Ensure compliance with PCI-DSS, SOC 2, GDPR
- Support audits with logs, access records, and fraud reports
- Perform threat modeling and security reviews
- Develop Apigee API proxies for identity and fraud services
- Implement OAuth/OIDC mediation, JWT validation, token introspection
- Configure policies for rate limiting, threat protection, and payload transformation
- Enable API security, analytics, and monitoring
- Support integrations across channels, CIAM, and backend systems
- Resolve issues in authentication, tokens, and API proxies
- Optimize performance and user experience
- Promote adoption of passwordless and low-friction authentication
- Experience with Transmit Security and Apigee
- Knowledge of OAuth 2.0, OIDC, SAML, FIDO2/WebAuthn
- Hands-on with AWS/GCP, MongoDB, API security, CI/CD
- Strong understanding of Zero Trust and identity security
The base compensation range for this role in the posted location is: 106230 to 145000
Capgemini provides compensation range information in accordance with applicable national, state, provincial, and local pay transparency laws. The base compensation range listed for this position reflects the minimum and maximum target compensation Capgemini, in good faith, believes it may pay for the role at the time of this posting. This range may be subject to change as permitted by law.
The actual compensation offered to any candidate may fall outside of the posted range and will be determined based on multiple factors legally permitted in the applicable jurisdiction.
These may include, but are not limited to: Geographic location, Education and qualifications, Certifications and licenses, Relevant experience and skills, Seniority and performance, Market and business consideration, Internal pay equity.
It is not typical for candidates to be hired at or near the top of the posted compensation range.
In addition to base salary, this role may be eligible for additional compensation such as variable incentives, bonuses, or commissions, depending on the position and applicable laws.
Capgemini offers a comprehensive, non-negotiable benefits package to all regular, full-time employees. In the U.S. and Canada, available benefits are determined by local policy and eligibility and may include:
- Paid time off based on employee grade (A-F), defined by policy: Vacation: 12-25 days, depending on grade, Company paid holidays, Personal Days, Sick Leave
- Medical, dental, and vision coverage (or provincial healthcare coordination in Canada)
- Retirement savings plans (e.g., 401(k) in the U.S., RRSP in Canada)
- Life and disability insurance
- Employee assistance programs
- Other benefits as provided by local policy and eligibility
Important Notice: Compensation (including bonuses, commissions, or other forms of incentive pay) is not considered earned, vested, or payable until it becomes due under the terms of applicable plans or agreements and is subject to Capgemini's discretion, consistent with applicable laws. The Company reserves the right to amend or withdraw compensation programs at any time, within the limits of applicable legislation.
Disclaimers
Capgemini is an Equal Opportunity Employer encouraging inclusion in the workplace. Capgemini also participates in the Partnership Accreditation in Indigenous Relations (PAIR) program which supports meaningful engagement with Indigenous communities across Canada by promoting fairness, accessibility, inclusion and respect. We value the rich cultural heritage and contributions of Indigenous Peoples and actively work to create a welcoming and respectful environment. All qualified applicants will receive consideration for employment without regard to race, national origin, gender identity/expression, age, religion, disability, sexual orientation, genetics, veteran status, marital status or any other characteristic protected by law.
This is a general description of the Duties, Responsibilities and Qualifications required for this position. Physical, mental, sensory or environmental demands may be referenced in an attempt to communicate the manner in which this position traditionally is performed. Whenever necessary to provide individuals with disabilities an equal employment opportunity, Capgemini will consider reasonable accommodations that might involve varying job requirements and/or changing the way this job is performed, provided that such accommodation does not pose an undue hardship. Capgemini is committed to providing reasonable accommodation during our recruitment process. If you need assistance or accommodation, please reach out to your recruiting contact.
Please be aware that Capgemini may capture your image (video or screenshot) during the interview process and that image may be used for verification, including during the hiring and onboarding process.
Click the following link for more information on your rights as an Applicant in the United States. http://www.capgemini.com/resources/equal-employment-opportunity-is-the-law
Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs. It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, generative AI, cloud and data, combined with its deep industry expertise and partner ecosystem.
What United Airlines employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About United Airlines
Sourced by ZipRecruiter
United Airlines is embarking on an exciting journey to become the best airline in aviation history. Our purpose, "Connecting People, Uniting the World," extends beyond transportation, emphasizing our commitment to uplift and create opportunities in the places we serve. With a global presence and diverse workforce, we value inclusivity and are dedicated to hiring tens of thousands of individuals across various roles. Our comprehensive benefits package, including perks like space available travel, parental leave, and 401k, aims to support your well-being and growth.
Industry
Aviation
Company size
10,000+ Employees
Headquarters location
Chicago, IL, US
Year founded
1926