Job Description
HCL Tech is looking for " DevOps Architect CIAM & Azure"
Job Title: Security DevOps Engineer CIAM & Azure
Location: Pune
Employment Type: Full-Time
Experience Required: 15+ Years
Industry: IT / Cybersecurity / Cloud Infrastructure
Functional Area: DevOps / Security Engineering / Identity & Access Management
Job Summary:
Were looking for a hands-on Security DevOps Engineer to support our Customer Identity & Access Management (CIAM) platform, helping us securely deliver and scale authentication services for internet-facing applications that serve millions of users. This role sits at the intersection of DevOps, platform security, and CIAMfocused on automating secure deployments and protecting public-facing APIs and services.
Key Responsibilities:
1. CIAM Deployment & Operations
- Build and operate highly available CIAM infrastructure using Infrastructure as Code (IaC).
- Automate deployment/configuration of identity services (e.g., Transmit Security, Azure AD B2C, Auth0, ForgeRock).
- Integrate reverse proxies, WAFs (e.g., F5, Azure Front Door), and API gateways.
- Deploy and manage secure workloads in Azure (App Services, AKS, Azure Functions, Key Vault).
2. Security Engineering & Hardening
- Enforce secure defaults (rate limiting, MFA, token protection).
- Automate secrets management and certificate rotation.
- Integrate risk-based access and fraud detection signals.
- Build custom dashboards for observability and monitoring.
3. DevOps & CI/CD
- Harden CI/CD pipelines with shift-left security scanning.
- Create reusable deployment modules for multi-region/multi-tenant CIAM.
- Support developers integrating with OAuth2, OIDC, SAML, and federation.
4. Collaboration & Incident Support
- Participate in security reviews for new features and integrations.
- Act as SME in CIAM-related incident response and postmortem analysis.
- Collaborate with product, development, and compliance teams.
Required Qualifications:
- 10+ years in DevOps, Cloud Engineering, or Platform Security roles.
- Hands-on experience with Azure and CI/CD automation.
- Deep understanding of TLS, WAFs, JWT/OAuth token handling.
- Strong scripting skills (Python, PowerShell, Bash).
- Familiarity with OAuth2, OIDC, SAML, and threat models.
- Experience managing authentication/authorization services at scale.
Preferred Qualifications:
- Experience with CIAM platforms: Transmit, ForgeRock, Auth0, Ping, Azure AD B2C.
- Understanding of Zero Trust architectures.
- Familiarity with DDoS mitigation and secure web gateway integration.
- Exposure to cloud-native observability stacks and runtime security.
- Azure and IT security certifications (e.g., AZ-500, CISSP, CCSK).
How to Apply?
Share your updated resume at ad**********l@hc****h.com or DM us directly.
Best Regards,
Aditi Agarwal
Talent Acquisition Team
HCL Tech
Job Classification
Industry: IT Services & Consulting
Functional Area / Department: Engineering - Software & QA
Role Category: DevOps
Role: DevOps Consultant / Architect
Employement Type: Full time
Contact Details:
Company: HCLTech
Location(s): Bhopal
Keyskills:
Ciam
Scripting Languages
Azure Devops
Terraform
Powershell
Python