Identity Verification Engineer - Senior
Job Description
EY is hiring a Senior Identity Verification Engineer for a hybrid role based in Dallas, TX. This position focuses on building and operating identity verification and passwordless capabilities using 1Kosmos or Microsoft Verified ID, with work that supports secure onboarding and enterprise IAM integrations. You will help advance stronger identity proofing, reduce account takeover and impersonation risks, and improve user experiences across workforce and privileged access.
The compensation for this role includes a comprehensive compensation and benefits package, with a base salary range of $104,800 to $192,200 across all geographic locations in the US. For the New York City Metro Area, Washington State, and California (excluding Sacramento), the base range is $125,800 to $218,500. Medical and dental coverage, pension and 401(k) plans, paid time off, and time off for EY-paid holidays, winter/summer breaks, personal/family care, and other leaves of absence are also included.
Responsibilities
- Design and implement identity proofing workflows using the 1Kosmos platform or Microsoft Verified ID.
- Configure and support document verification, biometric authentication, facial recognition, liveness detection, and identity assurance controls.
- Implement IAL2-grade identity proofing processes aligned with NIST 800-63 guidelines.
- Support onboarding journeys for employees, contractors, vendors, and privileged users.
- Configure and administer 1Kosmos BlockID and associated services.
- Manage user enrollment, credential issuance, identity verification policies, and authentication workflows.
- Integrate orchestration and biometrics verification using IdRamp and CLEAR with Microsoft Entra.
- Monitor platform health, performance, and operational effectiveness, and troubleshoot identity verification and authentication issues.
- Build and support API-based integrations for identity verification and identity lifecycle workflows.
- Configure SAML, OAuth, OIDC, and SCIM integrations.
- Implement passwordless authentication approaches including biometrics, mobile authenticators, FIDO2/WebAuthn, QR code authentication, and push-based authentication.
- Support enterprise migration initiatives moving from traditional authentication to passwordless access.
- Ensure compliance with organizational security requirements and industry standards; support audit and compliance activities for identity verification and authentication controls.
- Produce security documentation, operational runbooks, and implementation standards, and participate in architecture reviews and design workshops.
- Support POCs, pilot deployments, production rollouts, and hypercare activities; collaborate with IAM architects, cybersecurity teams, application owners, and business stakeholders.
Requirements
- Bachelor’s degree in Computer Science, Information Security, Information Systems, or related field.
- 3-5+ years of experience in Identity and Access Management (IAM).
- 2+ years of hands-on 1Kosmos or Microsoft Verified ID implementation experience.
- Experience implementing identity proofing, passwordless authentication, and biometric verification solutions.
- Experience with enterprise identity lifecycle management and user onboarding processes.
- Hands-on knowledge of 1Kosmos BlockID, and Microsoft Verified ID with IdRamp and CLEAR.
- Knowledge of Entra ID / Azure AD and Active Directory.
- Familiarity with SAML, OIDC, OAuth 2.0, SCIM, and REST APIs and integration frameworks.
- Experience with Identity Proofing & Verification, biometrics, and liveness detection; experience with FIDO2/WebAuthn and passwordless authentication.
Key Success Metrics
- Successful deployment of identity verification and passwordless authentication solutions.
- Reduction in account takeover and impersonation risks.
- Improved onboarding user experience.
- High identity proofing completion rates.
- Compliance with security and regulatory requirements.
- Stable and scalable enterprise integrations.
Preferred Qualifications
- Experience with SailPoint ISC, IdentityIQ, Saviynt, Ping Identity, or Okta.
- Knowledge of Verifiable Credentials (VCs), Decentralized Identity (DID), and Microsoft Entra Verified ID.
- Experience supporting large-scale workforce or contractor onboarding programs.
- Familiarity with NIST Digital Identity Guidelines (800-63).
- Knowledge of cloud environments including Azure and AWS.
- Relevant certifications, including CIAM, CISSP, Microsoft Identity & Access Administrator, and IAM-related security certifications.
Location
- Dallas (hybrid)
- Anywhere in country
Requisition ID: 1724862
Date: Aug 7, 2026
Salary: Competitive