Job Description:**Applicants must be authorized to work in the U.S.; Sponsorship is not available for this position.** This role can be Remote, Hybrid or OnsiteWe are looking for a Senior IAM Security Engineer to own, operate, and continuously improve our Saviynt-based Identity Governance and Administration (IGA) platform. This role is ideal for an engineer who enjoys solving complex identity challenges, leading production support efforts, designing scalable integrations, and improving identity governance capabilities across the enterprise.You will serve as the primary technical owner of our Saviynt implementation , ensuring reliable identity lifecycle management, access governance, and integration with enterprise systems including Oracle, Active Directory, Entra ID, and other critical business applications. This role balances hands-on engineering, operational ownership, governance maturity, and technical leadership.Our IAM program is continuing to mature and expand. This role will play a critical part in improving platform reliability, reducing manual effort, strengthening governance controls, and enabling future identity initiatives and broader enterprise security capabilities.Core Responsibilities:Operate and Own IAM Services (Primary)Own day-to-day operation, support, and reliability of the Saviynt platformTroubleshoot and resolve provisioning, deprovisioning, reconciliation, and identity lifecycle failures across Oracle, Active Directory, Entra ID, and integrated applicationsServe as the primary escalation point for IAM operational incidents and complex access issuesPerform root cause analysis and implement long-term corrective actions to prevent recurring issuesMonitor platform health, job execution, provisioning success rates, and service performanceDevelop and maintain operational runbooks, support documentation, and knowledge articlesParticipate in production support processes, change control, peer reviews, and CAB activitiesEngineer IAM Integrations and Platform CapabilitiesDesign, build, enhance, and support Saviynt connectors, workflows, rules, policies, analytics, and certificationsDevelop and maintain integrations utilizing REST APIs, SOAP services, JDBC connections, and other enterprise integration methodsPartner with application teams to onboard new applications and automate identity lifecycle processesSupport Oracle Cloud, Oracle ERP, Active Directory, Entra ID, and other enterprise identity integrationsLead testing, validation, deployment, and upgrade activities for IAM platform enhancementsEnsure IAM solutions are scalable, maintainable, and aligned with enterprise security requirementsAdvance Identity Governance CapabilitiesSupport and improve Joiner, Mover, Leaver (JML) lifecycle processesImplement and maintain access request workflows, approval processes, and entitlement managementDesign, execute, and improve access certification campaigns and remediation activitiesContribute to role-based and attribute-based access models (RBAC/ABAC)Support Segregation of Duties (SoD) controls, governance policies, and audit requirementsAssist with identity correlation, reconciliation, entitlement cleanup, and governance optimization effortsReduce Toil and Improve the PlatformIdentify manual processes and develop automation solutions to improve efficiency and reliabilityImprove platform observability, monitoring, reporting, and operational metricsDevelop dashboards and reporting that provide insight into platform health and governance effectivenessImprove testing practices, deployment processes, and operational maturityDrive continuous improvement initiatives focused on scalability, reliability, and user experienceProvide Technical Leadership and OwnershipServe as the technical lead for IAM engagements involving application teams and business stakeholdersGuide technical design discussions and recommend IAM best practicesConduct peer reviews and contribute to engineering standards and reusable implementation patternsMentor junior engineers and share knowledge across the IAM teamCommunicate technical concepts, risks, and recommendations clearly to both technical and non-technical audiencesBalance security, operational stability, business requirements, and delivery timelines pragmaticallyCollaborate Across Security DomainsPartner with Infrastructure, Security Operations, Cloud, and Application teams to deliver integrated identity solutionsSupport identity-related security incidents and remediation activities when requiredContribute to IAM strategy, roadmap discussions, and future platform enhancementsAssist with evaluation and adoption of new IAM technologies and capabilitiesRequired Qualifications5+ years of hands-on experience in Identity and Access Management, Information Security, Platform Engineering, or related technical disciplines3+ years of experience delivering Identity Governance and Administration (IGA) capabilitiesExperience administering and supporting enterprise IAM platforms such as Saviynt, SailPoint, Okta, EmpowerID, or similar technologiesStrong troubleshooting and root cause analysis skills in complex production environmentsExperience with identity lifecycle management, access provisioning, deprovisioning, and governance processesExperience developing or supporting integrations utilizing REST APIs, SOAP services, JDBC connections, or similar technologiesWorking knowledge of Active Directory, Entra ID, and enterprise authentication and authorization conceptsExperience with scripting or development technologies such as JavaScript, PowerShell, Python, Java, or similar languagesExperience working within change control, peer review, and production support processesStrong written and verbal communication skillsAbility to work independently while effectively collaborating with cross-functional teamsPreferred QualificationsHands-on experience with Saviynt Enterprise Identity Cloud (EIC)Experience integrating IAM platforms with Oracle Cloud, Oracle ERP, Oracle EBS, SAP, or similar enterprise systemsExperience with access certifications, role engineering, entitlement management, and Segregation of Duties controlsExperience with SAML, OAuth, OpenID Connect (OIDC), MFA, and Single Sign-On technologiesExperience supporting or integrating with Privileged Access Management (PAM) platforms such as Delinea, CyberArk, BeyondTrust, or similar solutionsExperience automating operational processes and improving platform observabilityFamiliarity with cloud identity and hybrid identity architecturesSecurity certifications such as CISSP, CISM, Security+, SSCP, or related credentialsSaviynt certifications or formal Saviynt implementation experienceWhat This Role IsA senior hands-on engineering role with ownership of a critical enterprise IAM platformA position responsible for balancing operational excellence, governance maturity, and engineering improvementsA role that influences IAM architecture and strategy while remaining deeply involved in technical implementationA key contributor to the growth and maturity of Milwaukee Tool's IAM capabilitiesWhat This Role Is NotNot a pure IAM architect positionNot a policy-only or compliance-only roleNot a ticket-processing role without engineering responsibilitiesNot a position that avoids operational ownershipNot a role requiring direction for every task or decisionWe provide these great perks and benefits:Robust health, dental and vision insurance plansGenerous 401 (K) savings planEducation assistanceOn-site wellness, fitness center, food, and coffee serviceAnd many more, check out our benefits site HERE .Milwaukee Tool is an equal opportunity employer.