In-person interview is required
Join an enterprise cybersecurity team focused on modernizing Identity and Access Management (IAM) across hybrid cloud and on-premises environments. The SailPoint IAM Engineer will provide hands-on engineering and architecture expertise across SailPoint IdentityIQ (IIQ), Identity Security Cloud (ISC), identity lifecycle management, access governance, and ServiceNow integrations.
SailPoint IAM Engineer Responsibilities
- Design, develop, administer, and modernize SailPoint IdentityIQ (IIQ) and Identity Security Cloud (ISC) solutions, including IIQ-to-ISC migration.
- Develop BeanShell rules, Java components, workflows, lifecycle events, connectors, provisioning adapters, APIs, SCIM integrations, and application onboarding frameworks.
- Architect joiner/mover/leaver automation, RBAC/ABAC, role modeling, certifications, SoD controls, and entitlement management.
- Integrate SailPoint with ServiceNow, Active Directory, LDAP, Microsoft Entra ID/Azure AD, PIM, HR systems, PAM platforms, and AWS/Azure/GCP.
- Engineer ServiceNow access requests, approvals, provisioning/deprovisioning, incident workflows, and change-management integrations.
- Implement authentication and federation using SAML, OAuth, OIDC, MFA, and Okta, including Citizen IAM use cases.
- Apply Zero Trust and least-privilege principles while supporting SOX, HIPAA, ISO 27001, and NIST-aligned controls.
- Support production environments through troubleshooting, patching, upgrades, performance tuning, and root-cause analysis.
SailPoint IAM Engineer Qualifications
Critical Qualifications
- Strong hands-on expertise with SailPoint IdentityIQ and SailPoint Identity Security Cloud, including development and administration.
- Advanced experience with IAM architecture, identity lifecycle automation, access governance, provisioning, and application onboarding.
- Development experience with BeanShell, Java, REST/SOAP APIs, and SCIM.
- Experience integrating IAM platforms with ServiceNow, Active Directory, Entra ID/Azure AD, and cloud environments.
- Strong knowledge of RBAC/ABAC, Zero Trust, least privilege, SAML, OAuth, OIDC, MFA, and identity governance.
Preferred / Nice-to-Have Qualifications
- Experience with Okta and Citizen IAM solutions.
- SailPoint IIQ-to-ISC migration experience.
- Familiarity with SailPoint Access History, Access Modeling, PAM technologies, and compliance frameworks.
- Experience with IAM architecture reviews, threat modeling, roadmap planning, and modernization initiatives.
The SailPoint IAM Engineer will play a key role in delivering secure, scalable, and compliant enterprise identity solutions.
We look forward to reviewing your application!