SailPoint & IAM Solutions Architect

The Smart
Austin, TX, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
1 year minimum
Working hours
Regular working hours
Job source

Tech stack

Application Integration Architecture Systems Engineering User Authentication Business Software Cloud Computing Security Multi-Factor Authentication Identity and Access Management Information Systems Security Architecture Professional OpenID Performance Tuning Role-Based Access Control Security Assertion Markup Language (SAML)
+5 more
Single Sign-On Scripting Build Management SailPoint Restful APIs

Job description

The Identity and Access Management (IAM) Software Developer designs, implements, and maintains an enterprise-level IAM ecosystem. This role is responsible for establishing a centralized identity provider framework utilizing SAML 2.0 and OIDC for single sign-on (SSO) and multi-factor authentication (MFA). Key responsibilities include building automated Joiner, Mover, and Leaver lifecycle workflows, onboarding applications using REST APIs, implementing role-based access models, and deploying privileged access management tools., IAM Architecture & Engineering

  • Implement a centralized identity provider framework using SAML 2.0 and OIDC protocols to support SSO and MFA.
  • Design and build comprehensive Joiner, Mover, and Leaver (JML) lifecycle workflows to automate identity management.
  • Build and implement Role-Based Access Control (RBAC) models while enforcing separation of duties (SoD).
  • Design and configure automated user access certification campaigns.

Application Integration & Onboarding

  • Integrate and onboard business applications to the IAM system using REST APIs
  • Coordinate with application owners to establish secure identity synchronization pipelines

Privileged Access Management (PAM)

  • Deploy secure credential vaulting, automated password rotation, and just-in-time (JIT) provisioning mechanisms
  • Configure and manage administrative access pathways to secure highly sensitive systems

Operations & Maintenance

  • Perform routine and long-term system maintenance, including performance tuning and resource optimization
  • Troubleshoot complex provisioning errors, authentication connection failures, and directory-sync issues
  • Maintain technical documentation regarding configurations, workflows, and onboarding processes

Requirements

Senior Level (8 or more years of experience), * 8 or more years of experience in IAM platform governance, system engineering, lifecycle automation, and scripting.

  • 8 or more years of experience onboarding and integrating enterprise business applications with centralized IAM systems.
  • 5 or more years of experience designing and implementing RBAC models, enforcing separation of duties, and designing access certification campaigns.
  • 5 or more years of experience managing centralized identity providers, configuring SSO/MFA, and working with federation protocols., * 1 or more years of experience with SailPoint Identity Security Cloud (ISC) implementation and operations., * Robust understanding of directory services, federation protocols, and modern security architectures.
  • Advanced troubleshooting capabilities for investigating integration, authentication, and provisioning errors.
  • High analytical precision for designing security patterns and role hierarchies.
  • Clear technical communication skills to collaborate with application owners, security engineers, and business leaders.

Flexible work from home options available.

Benefits & conditions

  • Competitive salary

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

Videos

See all

Related articles

See all