Subject Matter Expert (Support&Ops)
India
Job Description
Subject Matter Expert (Support&Ops)
Nagpur, Maharashtra

Job Summary

The ISAM Engineer will be responsible for engineering-focused activities under fixed capacity scope, primarily involving: • Application onboarding into ISAM-based SSO/MFA platforms • Design and implementation of authentication solutions • Policy configuration and identity integrations This role is NOT operational/BAU, and focuses only on non-standard, project-based engineering work.

Key Responsibilities

✅ 1. Application Onboarding (Primary Responsibility) • Design, develop, test, and implement onboarding of: o B2E (Employee applications) o B2B / B2C / B2B2C applications • Integrate applications into ISAM SSO/MFA platforms • Configure federations using: o SAML 2.0 o OpenID Connect (OIDC) • Perform end-to-end onboarding lifecycle including design, build, testing, and go-live ________________________________________ ✅ 2. ISAM / SSO Solution Engineering • Engineer and configure ISAM SSO authentication solutions • Support: o Federation setup with multiple Identity Providers and service providers o Integration with enterprise and external applications • Develop secure authentication flows for applications • Ensure compatibility with enterprise identity architecture ________________________________________ ✅ 3. MFA Engineering & Authentication Design • Design and implement multi-factor authentication (MFA) solutions using ISAM: o OTP-based authentication o Token-based authentication o Certificate-based authentication o Adaptive/Risk-based authentication and device registration • Implement authentication across: o Web applications o VPN / remote access o Internal and external access channels ________________________________________ ✅ 4. Authentication Policy Engineering • Create and configure: o MFA policies o Conditional access policies • Enhance authentication security posture by: o Aligning policies to enterprise standards o Enforcing access controls for applications • Implement policy updates as part of onboarding or new integrations ________________________________________ ✅ 5. Azure AD / Identity Platform Integration (ISAM Context Only) • Perform engineering work related to: o Application onboarding into Azure AD (as part of SSO ecosystem) o MFA enforcement policies o Conditional access configuration • Configure AAD integrations with ISAM-based authentication flows ________________________________________ ✅ 6. Identity Platform Capacity & Enhancement Work • Support capacity-related engineering activities: o Identity platform scaling o Authentication system capacity improvements • Perform design-level enhancements as part of onboarding or transformation initiatives ________________________________________ ✅ 7. Testing & Implementation • Conduct: o Integration testing o Functional/authentication testing o Validation of dependent use cases • Ensure all onboarding implementations meet: o Security requirements o Authentication and Authorization standards before release ________________________________________ 🔹 Explicit Activities Covered Under Fixed Capacity The role must include the following activities: • Application onboarding to SSO/MFA identity platform • Designing and implementing authentication integrations • MFA policy creation • Conditional access policy configuration • Support for Azure AD onboarding and identity integration • Identity platform engineering improvements ________________________________________ 🔹 What is NOT Part of This Role (Strict Exclusion) This JD explicitly excludes: • Ticket handling / ServiceNow operations • User provisioning/deprovisioning • Incident management (routine) • Audit reporting (BAU) • Day-to-day L1/L2 operational support

Skill Requirements

Technical Skills: • IBM Security Access Manager (ISAM) – Mandatory • SSO technologies: SAML, OAuth, OpenID Connect • MFA implementations and authentication frameworks • Identity federation and IdP integration • Azure AD / Entra ID (integration level) • Understanding of authentication flows and security architecture Engineering Skills: • Application onboarding design and execution • Identity solution architecture exposure • Troubleshooting complex integration issues (L3-level engineering) • Ability to design secure authentication workflows

Other Requirements

NA

Information at a Glance

Why HCLTech?

At HCLTech, you'll supercharge your potential. You'll find your career. And you'll find your spark. All at a place that knows that helping its customers stay on top starts by putting its people first.

HCLTech is a global technology company, home to more than 223,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for Financial Services, Manufacturing, Life Sciences and Healthcare, Technology and Services, Telecom and Media, Retail and CPG, and Public Services. Consolidated revenues as of 12 months ending June 2026 totaled $14.8 billion.