Sawell

Open role

Senior Engineer, Identity and Access Management

Intercontinental Exchange Holdings

OFF USA: GA Atlanta HQ (5660 New Northside Drive)Full Time

Intercontinental Exchange Holdings

Posted 2026-09-14

About the role

Locations: Atlanta, Georgia; Jacksonville, Florida Req ID: 13476 Overview Job Purpose Intercontinental Exchange, Inc. (ICE) is a leading operator of global exchanges, clearing houses, data, and listings services. We connect businesses around the world to unique opportunities in markets that drive the global economy. We are a diverse and inclusive company that values innovation, collaboration, and excellence. ICE team members work across departments and traditional boundaries to innovate and respond to industry demand. A successful candidate will be able to multitask in a dynamic team-based environment demonstrating strong problem-solving and decision-making abilities and the highest degree of professionalism.   As an Identity and Access Management (IAM) professional, you will be responsible for ensuring the security and integrity of our IT systems and applications. You will design, implement, and maintain policies and systems that control user identities, credentials, roles, and permissions across various IT platforms and applications. You will also monitor and audit user activities, troubleshoot issues, and comply with IT standards and regulations. To succeed in this role, you will need strong technical skills, analytical thinking, problem-solving abilities, and knowledge of IT security best practices.     Responsibilities Application & Infrastructure Maintenance Administer, maintain, and support ForgeRock/Ping OpenIDM and OpenDS directory services in production and non-production environments Monitor system health, performance, and availability; perform proactive tuning and capacity planning Manage directory replication, schema extensions, indexing, and access control policies Perform upgrades, patching, and configuration changes in accordance with change management processes Troubleshoot and resolve complex issues related to directory services, authentication, and identity workflows Maintain high availability and disaster recovery configurations for IAM infrastructure Linux Administration Manage and maintain Linux-based servers hosting IAM applications and directory services Perform OS-level troubleshooting, log analysis, and performance diagnostics Implement and maintain system hardening standards and security configurations Coordinate with infrastructure teams on server provisioning, networking, and storage Scripting & Automation Develop and maintain scripts to automate routine operational tasks, monitoring, and reporting (Bash, Python, or similar) Automate provisioning, de-provisioning, and reconciliation workflows Build tooling to support bulk directory operations, data migrations, and schema management Maintain and improve CI/CD pipelines related to IAM configuration and deployments AI Adoption & Enablement Stay current with emerging AI tools and capabilities relevant to IAM operations, security, and automation Identify and champion opportunities to incorporate AI-assisted tooling into day-to-day workflows, such as anomaly detection, access pattern analysis, and automated remediation Use AI coding and scripting assistants responsibly to accelerate development of automation and operational tooling Contribute to team best practices and guardrails around responsible AI usage in an identity and security context Partner with security, application, and infrastructure teams to integrate identity services with enterprise applications Produce and maintain technical documentation including runbooks, architecture diagrams, and standard operating procedures Participate in on-call rotation and provide escalation support for P1/P2 incidents Mentor junior team members and contribute to team knowledge sharing Works independently on many IT projects as a project team member, more frequently as a project leader. Often provides strategic direction, guidance, and integration of services. Communicate verbally and in writing to technical and non-technical audiences of various levels both internally and externally Develop partnership-oriented relationships with business executives and functional leaders, especially as it relates to operations and technology Multitask in a fast-paced environment with a focus on timeliness, documentation, and communications with peers and business users Involved in the evaluation of products and/or procedures to enhance productivity and effectiveness Knowledge and Experience Bachelor’s degree in Computer Science, Information Systems, or an equivalent combination of education, training, or work experience 5+ years of experience in Identity & Access Management or directory services engineering Hands-on experience with ForgeRock OpenIDM and/or OpenDS (or Ping Identity directory products) Strong Linux administration skills (RHEL preferred) Proficiency in scripting languages such as Bash and/or Python for automation and operational tooling Solid understanding of LDAP concepts: schema, replication, ACIs, indexing, and directory architecture Experience supporting enterprise IAM in a production environment Experience designing, implementing, or supporting multi-factor authentication (MFA) solutions, including hardware tokens, YubiKeys, authenticator applications, push notifications, and/or certificate-based authentication. Familiarity with authentication protocols: LDAP, Kerberos, SAML, OAuth2/OIDC Strong troubleshooting and root cause analysis skills Requires extensive knowledge of relevant IT system issues, techniques, and implications across all existing server platforms. Must have extensive knowledge in networking, databases, systems, and/or Web operations.   Preferred Knowledge and Experience Knowledge of ICE business environment and the ability to evaluate implications of changes to IT systems  Experience with additional ForgeRock/Ping Identity products (AM,  PingFederate, PingDirectory) Familiarity with HashiCorp Vault or other secrets management solutions Experience with containerization (Docker/Kubernetes) in the context of IAM workloads Knowledge of SCIM provisioning standards Exposure to cloud environments (AWS, Azure, or GCP) and hybrid identity architectures ForgeRock Certified Identity Professional or equivalent certification Knowledge of relevant legal and regulatory requirements   Knowledge of common Identity Access Management frameworks   Experience working with a diverse range of data sources/streams and managing these effectively   Excellent analytical, decision-making, and problem-solving skills  Knowledge of multiple operating systems and related utilities and hardware  Knowledge of storage management, TCP/IP, and network monitoring and tools  Strong background in operations, processes, solutions, and technologies   Strong understanding of policy, compliance, and best practice Identity Access Management principles   Working knowledge of Linux, Windows, and Network Operating Systems   Knowledge of infrastructure, key processes, and technology-oriented risk issues, specifically around Identity Access Management and privacy   Results oriented, business focused, and successful at interfacing across multiple organizational units  Professional certification such as CISSP, CISM, etc.     #LI-SH3 #LI-ONSITE Intercontinental Exchange, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to legally protected characteristics.

AI apply unlocks in the Sawell app

Prefer desktop? Sign in on web

Related roles

View more

Powered by Xiaojia Cai