Sr Systems Engineer - IAM

Early Warning Services LLC

Chicago (IL)

Hybrid

USD 130,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Early Warning Services LLC is seeking a Senior Systems Engineer - IAM to lead the Saviynt EIC platform, controlling identity governance, access certification, and lifecycle management in a regulated fintech environment.

The role focuses on designing scalable IAM solutions, wiring integrations across directories and cloud apps, and collaborating with security, audit, and engineering teams. Hybrid work in major U.S. cities applies.

Qualifications

  • 5+ years of IAM engineering experience.
  • Expertise with Saviynt Enterprise Identity Cloud and identity governance constructs.
  • Experience designing and operating SoD, RBAC, and ABAC models.

Responsibilities

  • Owns Saviynt EIC platform architecture, configuration, and operations.
  • Automates and tunes identity workflows, attestations, and lifecycle management.
  • Partners with audit, risk, and compliance to support regulatory frameworks (SOX, PCI DSS).
  • Designs standards and reference designs for scalable IAM solutions.
  • Mentors junior engineers and drives platform modernization initiatives.

Skills

Saviynt EIC
IAM
Identity governance
Scripting: PowerShell/Python
Cloud integrations
Audit & compliance

Tools

Active Directory
Entra ID
Okta
ServiceNow
Workday
SAP
REST APIs

Job description

At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle, Paze, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.

Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.

Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.

Overall Purpose

The Senior Systems Engineer - IAM sits within the Identity Platform Engineering team, part of the broader Identity and Access Management department, and serves as the technical anchor for Early Warning's Identity Governance and Administration (IGA) platform. This role leads the discovery, design, delivery, and operational health of Saviynt Enterprise Identity Cloud (EIC) and the governance controls that determine how identities are provisioned, certified, and constrained across a regulated financial technology environment.

This is a hands on, deeply specialized position rather than a generalist infrastructure role. The engineer is accountable for architecting access models, hardening segregation of duties controls, maintaining accurate technical documentation of supported systems, participating in audit and compliance activities, and serving as a subject matter expert in identity and access management. The role also carries a mandate to prototype new solutions to identity challenges, optimize existing systems, and evaluate emerging technologies as they become available.

Essential Functions
Platform Ownership and Engineering
  • Owns the architecture, configuration, and operations of the Saviynt EIC platform, including access request, certification, and lifecycle management modules.

  • Provides operational excellence for the identity governance platform including version maintenance, vulnerability management, patching, and overall platform health.

  • Proactively monitors and maintains identity platform security assurances such as threat detection, user behavior analytics, and privileged user monitoring.

  • Builds and manages connectors and integrations across directories, cloud platforms, databases, and enterprise applications, including Active Directory, Entra ID, Okta, ServiceNow, Workday, SAP, cloud infrastructure, and custom REST based endpoints.

  • Authors PowerShell, Python, and other scripts to automate repetitive tasks and extend platform capability.

Governance, Controls, and Risk
  • Designs and maintains identity governance controls including access certification and attestation campaigns, segregation of duties (SoD) rulesets, role based and attribute based access models (RBAC and ABAC), and least privilege enforcement.

  • Automates the full identity lifecycle covering joiner, mover, and leaver events, including provisioning, deprovisioning, and access reconciliation, minimizing manual intervention and standing access.

  • Ensures just in time and just enough access is enforced without hindering productivity or user experience.

  • Develops and tunes workflows, rules, analytics, and reporting to detect access risk and drive remediation.

  • Partners with internal audit, risk, and compliance to support control testing and evidence collection for regulatory frameworks relevant to financial services, including SOX, PCI DSS, GLBA, and related audit obligations.

Design, Delivery, and Quality
  • Gathers requirements from business, security, and audit stakeholders, decomposes them into discrete technical components, and translates them into usable solutions incorporated into platform design.

  • Establishes repeatable and reusable frameworks, patterns, and reference designs so that solutions scale consistently rather than being rebuilt for each use case.

  • Plans and executes both manual and automated testing across configurations, integrations, and workflows, validating that solutions meet functional, security, and compliance requirements before release.

  • Leads root cause analysis and resolution of complex identity issues spanning provisioning failures, entitlement drift, and integration breaks.

  • Defines technical standards, patterns, and documentation that make the platform sustainable and repeatable as it scales.

Collaboration and Leadership
  • Continuously evaluates the IAM organizational structure, system configuration, and application integrations, and provides recommendations for operational and security enhancements.

  • Collaborates with Enterprise Architects, Security Architects, and Application Architects to drive adoption of IAM best practices and to support documentation standards.

  • Develops relationships with business and technology stakeholders to ensure on time delivery.

  • Actively participates in team stand up, technical engineering discussions, change control process, audit activities, business continuity efforts, and on call rotation.

  • Mentors, coaches, and trains junior systems engineers, and models a strong sense of responsibility, ownership, and pride in delivering quality results.

  • Contributes to the broader identity roadmap, advising leadership on platform strategy, emerging risks, and modernization opportunities.

  • Supports the company's commitment to risk management and to protecting the integrity and confidentiality of systems and data.

  • The above job description is not intended to be an all inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.

Identity Governance Focus
  • Progressive experience and advanced proficiency with Saviynt Enterprise Identity Cloud, including connector development, workflow configuration, rule and role engineering, and certification campaign design and execution.

  • Expert understanding of identity governance administration constructs including attestations, analytics, connectors, rules, users, accounts, account ownership, roles, entitlements, entitlement ownership, security systems, and endpoints.

  • DevOps support for IGA solutions to include incident and request management and implementation

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Systems Engineer - IAM
Sr Systems Engineer - IAM

Early Warning • Scottsdale (AZ)

Hybrid
USD 120,000 - 180,000
Saviynt IAM Staff Augmentation - Senior Identity & Access Management Engineer
Saviynt IAM Staff Augmentation - Senior Identity & Access Management Engineer

Vytwo Technologies Inc. • Prosper (TX)

On-site
Flexible work from home
Sr Systems Engineer - IAM
Sr Systems Engineer - IAM

Early Warning • Chicago (IL)

Hybrid
USD 122,000 - 149,000
Healthcare Coverage
401(k) Retirement Plan
Paid Time Off
+2
Saviynt IAM Staff Augmentation - Senior Identity & Access Management Engineer
Saviynt IAM Staff Augmentation - Senior Identity & Access Management Engineer

Vytwo • Prosper (TX)

On-site
USD 100,000 - 130,000
Senior IAM Platform Engineer – Saviynt Specialist
Senior IAM Platform Engineer – Saviynt Specialist

Early Warning • Scottsdale (AZ)

Hybrid
USD 120,000 - 180,000
Lead Identity Governance & Administration (IGA) Engineer
Lead Identity Governance & Administration (IGA) Engineer

Federal Reserve Bank of New York • San Francisco (CA)

On-site
USD 150,000 - 230,000
Medical, Dental, Vision
Matching 401(k)
Paid vacation/holidays
Senior IAM Systems Engineer — Saviynt Expert
Senior IAM Systems Engineer — Saviynt Expert

Early Warning Services LLC • Chicago (IL)

Hybrid
USD 130,000 - 190,000
Identity Security Practice - Director, Professional Services - Chicago
Identity Security Practice - Director, Professional Services - Chicago

Saviynt • Chicago (IL)

On-site
USD 220,000 - 250,000
Competitive total rewards package
Learning and development opportunities
Discretionary bonus plan
Senior IAM Engineer – Saviynt Identity Cloud
Senior IAM Engineer – Saviynt Identity Cloud

Early Warning • Chicago (IL)

Hybrid
USD 122,000 - 149,000
Healthcare Coverage
401(k) Retirement Plan
Paid Time Off
+2
Sr. Solutions Engineer
Sr. Solutions Engineer

Saviynt • Georgia

Remote
USD 100,000 - 130,000
Growth and learning opportunities
Dynamic work environment
Equal opportunity employer