I help SaaS companies implement Enterprise SSO using Okta SSO, Microsoft Entra ID (Azure AD) SSO, Google Workspace SSO, AWS Cognito SSO, Keycloak SSO and Auth0 SSO. I solve complex SAML SSO, OAuth SSO, OpenID Connect (OIDC), SCIM, AD/LDAP, MFA and identity federation challenges for enterprise SaaS platforms.
From enterprise customer onboarding and multi-IdP authentication to identity migrations and production troubleshooting, I help organisations build secure, scalable identity solutions.
🎯 Identity & SSO Services
→ Implement Enterprise SSO using SAML 2.0, OAuth 2.0 and OpenID Connect
→ Integrate Okta, Microsoft Entra ID, Google Workspace, AWS Cognito, Keycloak and Auth0
→ Enable multi-IdP authentication for SaaS platforms
→ Resolve SAML errors, OAuth callbacks, redirect loops and login failures
→ Design secure authentication and authorization architectures
→ Implement SCIM provisioning and user lifecycle automation
→ Support enterprise customer SSO onboarding for B2B SaaS
🔐 Core IAM Expertise
✅ Enterprise SSO & Identity Federation
→ SAML SSO, OAuth 2.0 and OpenID Connect (OIDC)
→ Multi-IdP and identity broker integrations
→ Enterprise SSO for multi-tenant SaaS platforms
→ Identity federation architecture and custom authentication flows
→ SSO migrations and identity modernisation
✅ Authorization & Access Control
→ RBAC and ABAC implementation
→ Fine-grained authorization using OpenFGA and OPA
→ Secure API authentication and JWT validation
→ Session management and access policy enforcement
✅ MFA & Authentication Security
→ OTP, TOTP, WebAuthn, Passkeys, YubiKey and Push authentication
→ Conditional Access and adaptive authentication
→ Step-up, passwordless and risk-based authentication
✅ User Lifecycle & Provisioning
→ SCIM 2.0 integrations
→ Active Directory and LDAP integration
→ Automated provisioning and deprovisioning
→ JIT provisioning and identity lifecycle automation
→ Identity and federation migrations
✅ SSO Troubleshooting
→ SAML assertions, metadata and certificate issues
→ OAuth callback, redirect and token exchange errors
→ OIDC authentication and JWT validation issues
→ Login failures, redirect loops and session problems
→ Production authentication and federation debugging
🛠️ Identity Platforms
Primary
Okta SSO • Microsoft Entra ID (Azure AD) SSO • Google Workspace SSO • AWS Cognito SSO • Keycloak SSO • Auth0 SSO • Sailpoint SSO
Enterprise
Ping Identity • OneLogin • ForgeRock • IBM Verify • Shibboleth • ADFS • WSO2 Identity Server
Custom / Open Source
Custom SAML SP/IdP • IdentityServer • SimpleSAMLphp • LDAP • RADIUS
🧠 Why Clients Work With Me
→ Delivered Enterprise SSO integrations across 20+ identity providers
→ Deep understanding of SAML, OAuth and OIDC internals, not just configuration
→ Strong debugging capability for complex authentication and federation issues
→ Experience designing multi-tenant SaaS authentication architectures
→ Production-ready implementations with clear documentation and knowledge transfer
⚙️ Identity Technology Stack
SAML 2.0 • OAuth 2.0 • OpenID Connect • SCIM 2.0 • JWT • PKCE • MFA • WebAuthn • Passkeys • WS-Federation • Kerberos • Active Directory • LDAP • OpenFGA • OPA
Java • .NET • Node.js • Golang • Python • TypeScript • PHP
AWS • OCI • Docker • Kubernetes • CI/CD
📌 Available for Enterprise SSO implementations, IAM architecture, SSO troubleshooting, identity migrations and long-term IAM consulting.
Let’s build an identity solution that is secure, scalable and seamless.
LDAP
OKTA
Single Sign-On
Security Assertion Markup Language
Microsoft Azure
Google Workspace
Auth0
OAuth
User Identity Management
Active Directory Federation Services
OneLogin
Microsoft Active Directory
User Authentication
Multi-Factor Authentication
Provisioning
Rajendiran C.
Bengaluru, India
$30/hr
4.9
78 jobs
SSO developer with 8+ years of experience in to identity and access management.Possess good knowledge on integrating different apps using SAML/OIDC/OAUTH.
Possess experience in using different libraries for saml/oidc that includes below programming langauge:
★ NodeJs
★ ReactJS
★NestJS
★ Angular
★ PHP/larvel
★ Python
★ .NET
Possess experience in using different identity providers such as :
★ KeyCloak
★ AzureAD
★ PINGFed/PingOne
★ Auth0
★ OKTA
★ ISAM/ISIM
★ AWS
★ SailPoint
Spring Security
PHP
Java Servlet API
OAuth
User Identity Management
Microsoft Azure
OKTA
Firebase
NodeJS Framework
React
Single Sign-On
AWS Application
Security Assertion Markup Language
Chirag B.
Bengaluru, India
$15/hr
4.3
2 jobs
👋 Hello there! I'm Chirag, a passionate and results-driven Software Engineer with a knack for cybersecurity and open source technologies. Currently, I'm on a mission to level up my security prowess as I prepare for the Offensive Security Certified Professional (OSCP) certification.
💼 In my day job, I serve as a Software Engineer at Cognizant, where I leverage my expertise in JavaScript, Python, MySQL, ServiceNow, Wireshark, and Burp Suite to develop robust and secure solutions. Whether it's crafting efficient algorithms or fortifying systems against cyber threats, I thrive on tackling complex challenges head-on.
🛠️ Beyond my professional endeavors, I'm deeply involved in the open source community, contributing my skills and insights to projects like OWASP's honeypot. As a former Google Summer of Code (GSoC) student, I've honed my collaborative skills and gained hands-on experience in building scalable, secure, and innovative solutions.
🚀 I'm passionate about leveraging technology to create a positive impact and solve real-world problems. If you're looking for a dedicated and forward-thinking developer who is committed to excellence and continuous learning, then let's connect and discuss how I can help bring your project to life!
Digital Forensics
Network Security
JavaScript
Cryptography
Security Engineering
Python
Git
Mahesh T.
Bengaluru, India
$40/hr
5.0
129 jobs
🔐 Certified Penetration Tester | AWS & Azure Cloud Security | Incident Response Expert 🔐
I’m a results-driven cybersecurity specialist with 14+ years of experience securing cloud infrastructure, web applications, and enterprise environments. I help companies prevent breaches, mitigate risks, and ensure compliance through advanced security architecture and real-world offensive security skills.
🎯 What I Do:
✔️ Cloud Security Hardening – AWS (IAM, EC2, S3, VPC, RDS, Route 53) & Azure (VNET, NSGs, Azure Security Center, Defender)
✔️ Penetration Testing – Full-scope internal/external pentests, web/app/API testing, business logic abuse, OWASP Top 10
✔️ Vulnerability Assessments – Nessus, OpenVAS, Nmap, custom exploit validation, CVSS scoring & prioritization
✔️ Threat Detection & Response – Wazuh setup, real-time event correlation, SIEM deployment, log analysis
✔️ Security Architecture – Designing scalable, secure cloud solutions with strong IAM, encryption, and DR practices
✔️ Cloudflare Optimization – Harden DNS, implement WAF rulesets, rate-limiting, Zero Trust setup
✔️ Incident Response – Triage, forensics, log collection, remediation and recovery plans (NIST, MITRE ATT&CK aligned)
📌 Security Tools I Work With:
- **Offensive Security**: Burp Suite, Metasploit, Nmap, Hydra, SQLmap
- **Defensive Tools**: Wazuh, AWS GuardDuty, Azure Sentinel, Nessus, Suricata
- **Languages/Scripting**: Bash, PowerShell, HTML/JavaScript (for attack emulation & automation)
- **Frameworks/Standards**: OWASP, MITRE ATT&CK, NIST CSF, CIS Benchmarks
🛡️ Certifications:
- AWS Certified Security – Specialty
- Microsoft Certified: Azure Security Engineer Associate
- Licensed Penetration Tester (LPT) | Certified Penetration Testing Professional (CPENT)
- CEH, CCSK
📈 Highlights:
- $300K+ earned, 100% Job Success on Upwork
- 11,500+ hours across 110+ successful projects
- Trusted by startups, fintechs, and regulated industries (HIPAA, GDPR, SOC2)
I’m known for delivering real-world, **actionable security results** — not just checkbox audits. If you’re looking to **secure your infrastructure, detect threats faster, or simulate real-world attacks**, let’s connect!
Cloudflare
Kali Linux
Microsoft Azure
Security Testing
Vulnerability Assessment
Application Security
Security Analysis
Penetration Testing
Amazon Web Services
Information Security
Web App Penetration Testing
Security Assessment & Testing
Security Infrastructure
Information Security Consultation
API Testing
Cloud Security
SOC 2
ISO 27001
Prashant D.
Bengaluru, India
$25/hr
4.9
13 jobs
6+ years as an Offensive Security Researcher, OSCP and CEH v12 certified, I help startups, SaaS companies, and enterprises think like an attacker before real attackers do through hands-on Penetration Testing, Red Teaming, and Vulnerability Assessment (VAPT) across web, mobile, API, network, and cloud environments.
My approach is simple: real offensive security isn't a scanner dump it's manual exploitation, chained attack paths, and a prioritized, developer-ready remediation plan mapped to your actual business risk.
With a strong software engineering background, I read source code, trace data flows, and reason about architecture catching business-logic flaws, privilege-escalation chains, and design weaknesses that automated tools always miss.
🎯 PENETRATION TESTING & VAPT
Full-scope Vulnerability Assessment and Penetration Testing (VAPT) across the OWASP Top 10, OWASP API Security Top 10, and PTES/OSSTMM methodologies: broken access control, IDOR, SSRF, SQLi/NoSQLi/command/template injection, XSS, CSRF, insecure deserialization, auth/session flaws, privilege escalation, and business-logic abuse.
Web App Pentesting: React, Angular, Vue, Next.js, Node.js, Django/Flask/FastAPI, Spring, Laravel, Rails, .NET, Go
Mobile Pentesting: Android & iOS per OWASP MASVS/MASTG, static + dynamic analysis, reverse engineering, insecure storage, API/backend abuse
API Pentesting: REST, GraphQL, SOAP auth bypass, rate-limit abuse, mass assignment, BOLA/BFLA
Network Pentesting: internal/external, Active Directory attacks (Kerberoasting, pass-the-hash, lateral movement, privilege escalation), segmentation testing
Every finding is manually verified (zero false positives), CVSS-scored, and delivered with an executive summary + technical deep dive + exact remediation steps, plus a free retest.
Tools: Burp Suite Pro, OWASP ZAP, Nmap, Metasploit, Cobalt Strike, Nuclei, sqlmap, Nessus, ffuf, BloodHound, Mimikatz, Hashcat, John the Ripper, Wireshark
🕵️ RED TEAMING & ADVERSARY SIMULATION
End-to-end Red Team engagements simulating real-world TTPs mapped to MITRE ATT&CK: initial access, phishing simulation, C2 infrastructure, privilege escalation, lateral movement, persistence, and data exfiltration testing people, process, and technology together, not just systems. Purple Team collaboration to strengthen detection and response (SOC/EDR/SIEM evasion & tuning).
☁️ CLOUD SECURITY (AWS, Azure & GCP)
IAM and least-privilege reviews, network segmentation, exposed storage (S3/Blob/GCS), privilege-escalation paths, and CIS Benchmark hardening. Cloud penetration testing and CSPM assessments using Prowler, ScoutSuite, and Pacu.
⚙️ DEVSECOPS & INFRASTRUCTURE SECURITY
Security embedded into CI/CD (GitHub Actions, GitLab CI, Jenkins), container/Kubernetes security (Trivy, Grype, RBAC, Pod Security Standards), and IaC security review for Terraform/CloudFormation/Ansible (Checkov, tfsec). SAST, DAST, SCA, and secrets scanning integration (Semgrep, Snyk, SonarQube, Gitleaks, TruffleHog).
🤖 AI / LLM SECURITY
Offensive testing of AI/ML and LLM-powered features against the OWASP Top 10 for LLM Applications and MITRE ATLAS: prompt injection, jailbreaks, model DoS, sensitive-data leakage, insecure output handling, and excessive agency in agentic systems.
🧠 SECURITY ENGINEERING & RESEARCH
Secure code review, threat modeling (STRIDE, attack trees), reverse engineering (Java/bytecode, anti-tamper analysis), malware analysis fundamentals, and security architecture design.
🤝 HOW I WORK:
1️⃣ Free scoping call to define objectives, rules of engagement, and scope
2️⃣ Testing/assessment with clear, regular communication
3️⃣ A prioritized report Executive Summary + technical detail + exact fixes
4️⃣ Free retest and debrief once your team remediates
Every engagement is handled under strict confidentiality, signed Rules of Engagement, and full written authorization. I don't oversell if you don't need a service, I'll tell you honestly.
Keywords: penetration testing, ethical hacking, VAPT, red teaming, purple team, OSCP, CEH, offensive security, web app pentest, mobile pentest, API pentest, network pentest, Active Directory pentest, cloud security, AWS pentest, Azure pentest, GCP pentest, DevSecOps, cybersecurity consultant, vulnerability assessment, security audit, ISO 27001, SOC 2, GDPR compliance, MITRE ATT&CK, OWASP Top 10, secure code review, threat modeling, AI security, LLM security.
📩 Message me with your project details, and I'll respond with a clear, no-pressure scoping plan.
Web Application Security
Penetration Testing
Vulnerability Assessment
Information Security
OWASP
API
Cloud Security
DevOps
Kubernetes
IT Compliance Audit
ISO 27001
SOC 2
Network Security
Risk Assessment
NIST Cybersecurity Framework
Information Security Audit
Information Security Governance
Governance, Risk Management & Compliance
Information Security Consultation
Pabitra Kumar R.
Bengaluru, India
$30/hr
5.0
1 jobs
Cybersecurity professional with expertise in Identity and Access Management (IAM)
and Cybersecurity engineering. Skilled in OKTA for IAM and CyberArk for Privileged
Access Management (PAM). Proficient in implementing SSO solutions, passwordless
authentication, and multi-factor authentication, as well as user creation and deletion
processes. Notable achievements include integrating OKTA with multiple applications
for SSO and building Python scripts for user automation. Seeking a cybersecurity
position to leverage IAM and Cybersecurity skills to enhance organizational security
measures.
Information Security
OAuth
Single Sign-On
OKTA
How it works
Post a job for freePost a job
Tell us what you need. Create your own job post or generate one with AI then filter talent matches.
Hire top talent fast
Consult, interview, and hire quickly, so you can meet the freelancers you're excited about.
Collaborate easily
Use Upwork to chat or video call, share files, and track project progress right from the app.
Payment simplified
Manage payments in one place with flexible billing options. Only pay for approved work, hourly or by milestone.
Don't just take our word for it
“Upwork provides an umbrella-level of security. I can see a talent’s work history and ratings. I can hold payments in escrow. I can communicate through Upwork Messages instead of working through my email address.”
KD
Kim Darling
Emerald Tiger
“Upwork is the best platform to hire skilled professionals when we're not looking for a full-time employee. All the companies in our portfolio use Upwork to find talent across a wide range of fields.”
DM
David Merry
Kinetic Investments
“Our very specific requirements can be a challenge—With Upwork, we’re able to access a bigger community to ensure the success of our projects.”
KK
Katja Krohn
Summa Linguae
How do I hire a LDAP Specialist near Bengaluru, on Upwork?
You can hire a LDAP Specialist near Bengaluru, on Upwork in four simple steps:
Create a job post tailored to your LDAP Specialist project scope. We’ll walk you through the process step by step.
Browse top LDAP Specialist talent on Upwork and invite them to your project.
Once the proposals start flowing in, create a shortlist of top LDAP Specialist profiles and interview.
Hire the right LDAP Specialist for your project from Upwork, the world’s largest work marketplace.
At Upwork, we believe talent staffing should be easy.
How much does it cost to hire a LDAP Specialist?
Rates charged by LDAP Specialists on Upwork can vary with a number of factors including experience, location, and market conditions. See hourly rates for in-demand skills on Upwork.
Why hire a LDAP Specialist near Bengaluru, on Upwork?
As the world’s work marketplace, we connect highly-skilled freelance LDAP Specialists and businesses and help them build trusted, long-term relationships so they can achieve more together. Let us help you build the dream LDAP Specialist team you need to succeed.
Can I hire a LDAP Specialist near Bengaluru, within 24 hours on Upwork?
Depending on availability and the quality of your job post, it’s entirely possible to sign up for Upwork and receive LDAP Specialist proposals within 24 hours of posting a job description.