At MiniMed, you can begin a lifelong career of exploration and innovation, while helping make a difference in the lives of people living with diabetes around the globe. You'll lead with purpose, breaking down barriers to innovation for a more connected, compassionate world.
About the Role
The CIAM Ops Engineer is responsible for the support, operation, and security, of the organization's Customer Identity and Access Management platform. This role owns the operational support of the customer authentication ecosystem, ensuring secure, scalable, and seamless access to customer-facing applications and digital services.
The engineer will serve as the subject matter expert for identity federation, authentication protocols, customer registration, SSO, MFA, identity lifecycle management, and integration of applications within the customer centralized identity providers.
Key Responsibilities
- Administer and maintain CIAM platforms such as Okta Customer Identity Cloud & Microsoft Entra ID
- Define authentication and authorization standards to include but not limited to Single Sign-On (SSO), Identity federation, MFA policies, Passwordless authentication, Social login integrations, External identity providers
- Manage B2B collaboration, Federation between Entra ID and Okta, Partner onboarding, Guest identity management, Identity synchronization
- Work with the architects to develop the external Identity Architecture to include Authentication patterns, Federation trust relationships, Token architecture, Identity governance models (NIST/CSF), Tenant strategies & Multi-brand identity experiences
- Manage tenant configuration and governance
- Maintain platform health and availability by developing a disaster recovery, tenant recovery, backup standards, and business continuity plans for customer identity services
- Ensure compliance with company policies and participate in yearly audit reviews
- Support customer identity security controls including adaptive authentication, risk-based access policies, bot mitigation, credential stuffing protection, account takeover prevention, and integration with fraud detection platforms.
- Act as the primary identity integration resource for development teams
- Integrate applications using SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), SCIM, JWT token validation
- Support developed AuthN & AuthZ standards and assist developers with integration for SaaS applications, Mobile applications, Partner portals & Customer portals
- Design and maintain centralized authentication services that allow users to maintain a single identity across multiple digital properties
- Support the customer identity lifecycle, in partnership with the business that handles Registration, Account verification, Password management, MFA enrollment, Account recovery, Account deletion & regulatory compliance requirements (such as GDPR, CCPA, APPI, etc..)
- Partner with Legal, Privacy, and Security teams to implement new features and functions (such as consent management, customer data retention policies, data residency requirements) and support data subject access, correction, and deletion requests.
- Work cross functionality to partner with the business and other digital teams on implementation goals
- Lead post-incident reviews for platform-impacting events and drive corrective actions.
- Establish platform KPIs and executive reporting by monitoring customer identity metrics including registration conversion, authentication success rates, MFA adoption, account recovery success rates, and customer authentication experience
- Assist and direct global MSP to support operational excellence & severity resolution
- Establish operational runbooks, support processes, incident response procedures, disaster recovery testing, and platform resiliency standards
- Participate in on-call escalation for identity-related critical incidents as needed
- Own platform tooling execution in partnership with procurement and security.
- Drive cost-efficient platform patterns and track platform run costs.
Physical Job Requirements
The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position.
Benefits & Compensation
MiniMed offers a competitive salary and flexible benefits package
At MiniMed, we put people first. A commitment to our employees lives at the core of our values: We recognize their contributions. They share in the success they help create. We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every stage of your career and life.
About MiniMed
We want to make every day a better day for people living with diabetes. Our team of creative innovators around the globe share a passion for finding the simplest solutions to the problems that people with diabetes face on a daily basis. For more than 40 years, we've been redefining what's possible, from intelligent dosing systems designed for real life to predictive insights that stay a step ahead, and we're dedicated to continuing to support our customers through every step of their journey — meeting them where and how they need it.