Information Security Engineer III- Eng (Saviynt PAM & IGA)

UKG

Dadri

On-site

INR 1,800,000 - 2,800,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

UKG is seeking an Information Security Engineer III to join our IAM team, focusing on Saviynt PAM and IGA across on‑premises and cloud environments. You will design, implement, and support identity security solutions while collaborating with cross‑functional teams to strengthen security posture and governance.

The role emphasizes automation, documentation, and continuous improvement. You will mentor junior engineers and contribute to IAM engineering practices to ensure high availability and

Qualifications

  • Bachelor's degree or higher in Computer Science, Information Technology, Cybersecurity, or related field.
  • 5–9 years of IAM/Information Security experience.
  • Hands-on experience with Saviynt PAM/IGA and Identity Cloud.
  • Experience with identity lifecycle management, provisioning, certifications, RBAC, SoD.
  • Strong knowledge of PAM concepts, Zero Trust, least-privilege principles.
  • Experience with REST APIs, SCIM, LDAP, JDBC and web services.
  • Experience with AD, Microsoft Entra ID, Windows, Linux and cloud platforms (AWS/Azure/GCP).
  • Knowledge of authentication and federation standards (SAML 2.0, OAuth 2.0, OIDC, LDAP).
  • Experience with scripting (PowerShell, Python, Shell).
  • Strong analytical and collaboration skills.

Responsibilities

  • Design, implement, and support Saviynt PAM and IGA solutions.
  • Configure privileged account onboarding, credential vaulting, password rotation, and access workflows.
  • Implement identity lifecycle management, provisioning/deprovisioning, and SoD controls.
  • Integrate Saviynt with AD, Entra ID, cloud platforms, databases, and connectors.
  • Develop automation scripts to improve IAM/PAM efficiency.
  • Troubleshoot platform, connector, and integration issues with high availability.
  • Collaborate with Security, Infrastructure, Cloud, Compliance, and Applications teams.
  • Support platform upgrades, audits, and compliance initiatives.
  • Create technical docs and runbooks; mentor juniors.
  • Contribute to continuous IAM engineering improvements.

Skills

Saviynt PAM/IGA
RBAC
SoD
Zero Trust
Identity Governance
REST APIs
SCIM
LDAP
JDBC
PowerShell
Python
Shell scripting
Active Directory
Microsoft Entra ID
Windows
Linux
AWS
Azure
GCP
SAML 2.0
OAuth 2.0
OIDC

Education

Bachelor's degree in Computer Science/Information Technology/Cybersecurity

Tools

Saviynt Identity Cloud

Job description

About The Role

UKG is seeking an experienced Information Security Engineer III to join our Identity & Access Management (IAM) team. The ideal candidate will have hands‑on experience with Saviynt Privileged Access Management (PAM) and Identity Governance & Administration (IGA) to help design, implement, and support enterprise identity security solutions. You will collaborate with cross-functional teams to strengthen UKG's security posture through secure access management, automation, and governance across on-premises and cloud environments.

Key Responsibilities
  • Design, implement, and support Saviynt PAM and IGA solutions.
  • Configure and manage privileged account onboarding, credential vaulting, password rotation, access request workflows, and privileged session management.
  • Implement and support identity lifecycle management, access provisioning/deprovisioning, access certifications, RBAC, and segregation of duties (SoD) controls within Saviynt.
  • Integrate Saviynt with enterprise applications, Active Directory, Microsoft Entra ID, cloud platforms, databases, and infrastructure using connectors, REST APIs, SCIM, LDAP, and JDBC.
  • Develop and maintain automation scripts to improve IAM/PAM operational efficiency.
  • Troubleshoot platform, connector, provisioning, and integration issues while ensuring high availability and performance.
  • Collaborate with Security, Infrastructure, Cloud, Compliance, and Application teams to onboard applications and privileged accounts.
  • Support platform upgrades, release activities, audit requests, and compliance initiatives.
  • Create technical documentation, operational runbooks, and knowledge articles.
  • Mentor junior team members and contribute to continuous improvement of IAM engineering practices.
Required Qualifications
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 5–9 years of experience in Identity & Access Management (IAM), Information Security, or Cybersecurity.
  • Hands‑on experience implementing and administering Saviynt Identity Cloud, including PAM and IGA capabilities.
  • Experience with identity lifecycle management, provisioning, access requests, certifications, RBAC, SoD, and privileged access governance.
  • Strong understanding of PAM concepts, Identity Governance, Zero Trust, and least-privilege principles.
  • Experience integrating enterprise applications using REST APIs, SCIM, LDAP, JDBC, and web services.
  • Experience with Active Directory, Microsoft Entra ID, Windows, Linux, and cloud platforms (AWS, Azure, or GCP).
  • Knowledge of authentication and federation standards, including SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), and LDAP.
  • Experience with SQL and scripting using PowerShell, Python, or Shell.
  • Strong analytical, troubleshooting, communication, and collaboration skills.
Preferred Qualifications
  • Experience integrating ServiceNow and enterprise security tools.
  • Familiarity with Agile methodologies and DevSecOps practices.
  • Knowledge of compliance frameworks such as SOX, SOC 2, ISO 27001, PCI DSS, and GDPR.
  • Relevant certifications such as Saviynt Certified Engineer/Professional, CISSP, Security+ or similar.
Technical Skills
  • Saviynt Identity Cloud (PAM & IGA)
  • Identity Lifecycle Management
  • Access Provisioning & Certifications
  • Privileged Access Management
  • Role-Based Access Control (RBAC)
  • Segregation of Duties (SoD)
  • Active Directory & Microsoft Entra ID
  • REST APIs, SCIM, LDAP, JDBC
  • SQL
  • PowerShell, Python, Shell Scripting
  • Windows & Linux Administration
  • AWS, Azure, or GCP
  • SAML 2.0, OAuth 2.0, OpenID Connect (OIDC)
Why UKG

At UKG, you'll help build and secure enterprise identity solutions that protect millions of users worldwide while working with modern cloud technologies and a collaborative, people-first engineering culture.

Get your free, confidential resume review.
or drag and drop your file here.