About this role
The team is seeking a dedicated Software Engineer specializing in SSO and Identity to support all SSO-related configuration work across their next-generation member onboarding platform. This role will involve migrations, new integrations, certificate renewals, and incident resolution.
Key Responsibilities:
- Configure Auth0 applications using SAML and OIDC for new sponsor onboardings.
- Execute Auth0 SSO migrations per sponsor, including testing and cutover.
- Build and maintain new SSO integrations (e.g., HCSC connections, PingFederate, Lynx SP).
- Manage SSO certificate renewals and certificate rotation schedules.
- Troubleshoot and resolve SSO outages using Auth0 logs, SAML tracing, and connection debugging.
- Maintain Auth0 tenant configuration as code (YAML/JSON exports managed in GitHub).
- Support Auth0 Post-Login Actions development and maintenance.
Required Skills & Qualifications:
- Strong experience with Auth0 (Tenant Configuration, Applications, Connections, Actions, Rules).
- Hands-on experience with SAML 2.0 (SP-initiated, IdP-initiated, metadata exchange, certificate management).
- Experience with OIDC/OAuth 2.0 (Authorization Code Flow, PKCE, Token Handling).
- Proficient in Node.js or TypeScript (Auth0 Actions and proxy services).
- Knowledge of MongoDB (User Profile Store), Next.js/React.
- Good understanding of enterprise SSO concepts.
Nice to Have:
- Experience with PingFederate, Azure AD B2C, Okta (Federated IdP integrations).
- Experience with enterprise-scale SSO onboarding (50+ SAML connections).
Experience:
- 5-8 years in software engineering with a focus on SSO and identity management.
What We Offer:
- The opportunity to work in a dynamic and innovative environment.
- A chance to contribute to cutting-edge technology solutions.
- Flexible working arrangements, including remote work options.
This role is managed by VettedBench on behalf of our client. Your application is reviewed directly by our talent team.