Bristol Myers Squibb

Job Title: Senior Engineer, Identity Access Management - Directory Services

Bristol Myers Squibb  •  Hyderabad, IN (Hybrid)  •  2 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Working with Us
Challenging. Meaningful. Life-changing. Those aren’t words that are usually associated with a job. But working at Bristol Myers Squibb is anything but usual. Here, uniquely interesting work happens every day, in every department. From optimizing a production line to the latest breakthroughs in cell therapy, this is work that transforms the lives of patients, and the careers of those who do it. You’ll get the chance to grow and thrive through opportunities uncommon in scale and scope, alongside high-achieving teams. Take your career farther than you thought possible.

Bristol Myers Squibb recognizes the importance of balance and flexibility in our work environment. We offer a wide variety of competitive benefits, services and programs that provide our employees with the resources to pursue their goals, both at work and in their personal lives. Read more: careers.bms.com/working-with-us

Job Profile

Bristol Myers Squibb (BMS) is seeking an experienced Senior Engineer – Identity Access Management (Directory Services) to design, implement, and support enterprise directory platforms that enable secure identity services across the global organization. The ideal candidate combines deep directory services expertise with strong Linux, cloud, automation, and troubleshooting skills, and thrives in a highly collaborative environment focused on innovation, reliability, security, and operational excellence.

This role is responsible for ensuring stability, scalability, security, and availability of critical directory services that support authentication, authorization, and identity-related business processes across the enterprise. The successful candidate will work closely with Architecture, Infrastructure, Security, and Application teams to deliver modern identity solutions and drive continuous improvement initiatives.

Key Responsibilities

· Provide technical leadership for enterprise directory services platforms based on LDAP technologies, including Ping DS (formerly ForgeRock Directory Services), Ping Directory, Oracle DSEE, Microsoft Entra ID (Azure AD), and virtual directory solutions.

· Design, implement, administer, monitor, and optimize directory infrastructure, including replication topologies, indexing strategies, backups, disaster recovery, performance tuning, and capacity planning.

· Ensure Directory Services platforms remain secure, compliant, resilient, and highly available.

· Partner with Architecture, Security, and Infrastructure teams to evaluate, implement, and integrate new technologies and solutions.

· Drive modernization initiatives and proactively identify opportunities to improve performance, scalability, automation, and operational efficiency.

· Support business-critical production environments and lead the resolution of complex incidents and escalations.

· Conduct Root Cause Analysis (RCA), Problem Management activities, and implement preventive measures to improve service reliability.

· Develop and maintain architecture documentation, technical standards, requirements, network designs, roadmaps, implementation plans, recovery procedures, rollback strategies, and disaster recovery solutions.

· Direct and support installation, configuration, maintenance, patching, and lifecycle management of directory service platforms.

· Collaborate effectively with internal infrastructure teams, application owners, security teams, vendors, and business stakeholders to deliver identity-related capabilities and operational support.

· Demonstrate strong ownership and accountability by driving issues to resolution and leading technical initiatives across cross-functional teams.

· Mentor and provide technical guidance to junior engineers and team members.

· Participate in an on-call support rotation and perform maintenance, deployment, and upgrade activities during approved maintenance windows as required.

Required Technical Experience

· Advanced expertise with LDAP-based directory technologies, including Ping DS (ForgeRock Directory Services), Oracle DSEE, and other enterprise-grade directory solutions.

· Hands-on experience with public cloud platforms such as AWS and Azure.

· Strong experience administering Linux operating systems, including software installation, patching, troubleshooting, automation, and performance tuning.

· Experience supporting enterprise application servers such as Apache Tomcat, JBoss, WebLogic, and WebSphere.

· Strong scripting and automation skills using technologies such as Bash, PowerShell, Python, JavaScript, or similar languages.

· Software development experience with knowledge of Object-Oriented Programming (OOP), REST APIs, MVC architecture, and Java frameworks such as Spring.

· Strong understanding of networking concepts, including DNS, TLS/SSL, load balancers, reverse proxies, and end-to-end encryption architectures.

· Experience integrating directory platforms with enterprise applications, cloud services, and third-party technologies.

· Strong troubleshooting and diagnostic skills across identity platforms, infrastructure, network, and application layers.

· Experience with SQL and/or PL/SQL for querying, troubleshooting, and supporting enterprise identity and directory-related applications.

Preferred Qualifications

· Foundational knowledge of Agentic AI concepts, frameworks, and emerging use cases, with an interest in leveraging AI-assisted capabilities to enhance identity operations, security, automation, and user experience.

· Working knowledge of Access Management and Identity Federation technologies, including Single Sign-On (SSO), SAML, OAuth 2.0, OpenID Connect (OIDC), Multi-Factor Authentication (MFA), LDAP integrations.

· Experience with enterprise identity platforms such as Ping Identity, ForgeRock, Okta, or Microsoft Entra ID.

· Experience implementing infrastructure-as-code, automation, and DevOps practices within identity and infrastructure environments.

Qualifications

· 5+ years of hands-on experience administering and supporting enterprise LDAP directory solutions such as Ping DS (ForgeRock Directory Services), Oracle DSEE, or other leading enterprise-grade directory technologies.

· Deep expertise in directory services engineering, architecture, troubleshooting, and operations.

· Hands-on experience with cloud infrastructure platforms such as AWS and/or Azure.

· Strong Linux administration experience, including deployment, patching, security, and operational support.

· Experience supporting enterprise middleware and application server technologies.

· Proficiency in one or more programming and scripting languages such as Python, Java, JavaScript, PowerShell, or Bash.

· Strong troubleshooting skills across IAM platforms, networking, web technologies, cloud services, and enterprise integrations.

· Excellent verbal and written communication skills with the ability to create technical documentation and present complex concepts to technical and non-technical audiences.

· Demonstrated ability to lead technical initiatives, mentor engineers, and drive complex problem resolution.

· Bachelor's degree (or equivalent experience) in Information Technology, Computer Science, Computer Engineering, or a related field.

If you come across a role that intrigues you but doesn’t perfectly line up with your resume, we encourage you to apply anyway. You could be one step away from work that will transform your life and career.

Uniquely Interesting Work, Life-changing Careers
With a single vision as inspiring as “Transforming patients’ lives through science™ ”, every BMS employee plays an integral role in work that goes far beyond ordinary. Each of us is empowered to apply our individual talents and unique perspectives in a supportive culture, promoting global participation in clinical trials, while our shared values of passion, innovation, urgency, accountability, inclusion and integrity bring out the highest potential of each of our colleagues.

On-site Protocol

BMS has an occupancy structure that determines where an employee is required to conduct their work. This structure includes site-essential, site-by-design, field-based and remote-by-design jobs. The occupancy type that you are assigned is determined by the nature and responsibilities of your role:

Site-essential roles require 100% of shifts onsite at your assigned facility. Site-by-design roles may be eligible for a hybrid work model with at least 50% onsite at your assigned facility. For these roles, onsite presence is considered an essential job function and is critical to collaboration, innovation, productivity, and a positive Company culture. For field-based and remote-by-design roles the ability to physically travel to visit customers, patients or business partners and to attend meetings on behalf of BMS as directed is an essential job function.

Supporting People with Disabilities

BMS is dedicated to ensuring that people with disabilities can excel through a transparent recruitment process, reasonable workplace accommodations/adjustments and ongoing support in their roles. Applicants can request a reasonable workplace accommodation/adjustment prior to accepting a job offer. If you require reasonable accommodations/adjustments in completing this application, or in any part of the recruitment process, direct your inquiries to adastaffingsupport@bms.com Visit careers.bms.com/eeo-accessibility to access our complete Equal Employment Opportunity statement.

Candidate Rights

BMS will consider for employment qualified applicants with arrest and conviction records, pursuant to applicable laws in your area.

If you live in or expect to work from Los Angeles County if hired for this position, please visit this page for important additional information: https://careers.bms.com/california-residents/

Data Protection

We will never request payments, financial information, or social security numbers during our application or recruitment process. Learn more about protecting yourself at https://careers.bms.com/fraud-protection

Any data processed in connection with role applications will be treated in accordance with applicable data privacy policies and regulations.

If you believe that the job posting is missing information required by local law or incorrect in any way, please contact BMS at TAEnablement@bms.com Please provide the Job Title and Requisition number so we can review. Communications related to your application should not be sent to this email and you will not receive a response. Inquiries related to the status of your application should be directed to Chat with Ripley.

R1604572 : Job Title: Senior Engineer, Identity Access Management - Directory Services

Bristol Myers Squibb

About Bristol Myers Squibb

At Bristol Myers Squibb, we work every day to transform patients’ lives through science. That work inspires some of the most interesting, meaningful, and life-changing careers you’ll experience. Join us and pursue innovative ideas alongside some of the brightest minds in biopharma, collaborating with a team rich in diversity of experiences, and perspectives. We have built a sustainable pipeline of potential therapies and are leveraging translational medicine and data analytics to understand how we can deliver the right medicine to the right patient, at the right time, to achieve the best outcome.

Whether in a scientific, business or supporting function, a career at BMS means you’ll be inspired every day to grow and thrive through opportunities that are uncommon in scale and scope. Here, you’ll be on the cutting edge of powerful innovation in oncology, hematology, immunology, cardiovascular disease, and fibrosis, with colleagues united in the mission to help patients.

Through the Bristol Myers Squibb Foundation, we also promote health equity and seek to improve health outcomes of populations disproportionately affected by serious diseases and conditions. Our mission is to give new hope to help patients prevail over serious disease – it drives everything we do.

Review our Social Media Community Guidelines at: https://www.bms.com/social-media-community-guidelines.html

Industry
Chemicals & Materials
Company Size
10,000+ employees
Headquarters
Lawrence Township, NJ
Year Founded
Unknown
Website
bms.com
Social Media