SailPoint Support Engineer (REMOTE)

Koniag Services, Inc.
United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

JavaScript (Programming Language) Active Directory Application Programming Interfaces (APIs) Amazon Web Services JIRA Microsoft Azure Cloud Computing Security CompTIA Security+ Cyber Security Continuous Integration Identity and Access Management Python (Programming Language)
+18 more
Lightweight Directory Access Protocols (LDAP) Windows PowerShell Role-Based Access Control Zero Trust Network Access Runbook Systems Integration Scripting Google Cloud Enterprise Software Applications Okta Cyberark SC Clearance Information Technology SailPoint Restful APIs BeanShell Devsecops Servicenow

Job description

Koniag IT Systems, LLC, a Koniag Government Services company, is seeking an experienced ICAM SailPoint Support Engineer to join a team supporting Identity, Credential, and Access Management (ICAM) solutions for our government customers. The ideal candidate is a technically skilled professional with a strong background in identity and access management technologies, particularly within the SailPoint platform, and is passionate about delivering secure and reliable solutions in a federal environment.

The ICAM SailPoint Support Engineer will provide technical support, configuration, administration, and maintenance of SailPoint-based Identity, Credential, and Access Management solutions in a federal government environment. The engineer will work closely with security teams, system administrators, and government stakeholders to ensure the integrity, availability, and security of identity governance and access management systems.

Principal responsibilities will include but are not limited to:

  • Provide day-to-day administration, configuration, and support of the SailPoint platform, including identity lifecycle management, role management, access certifications, and provisioning workflows.
  • Troubleshoot and resolve ICAM-related incidents, service requests, and problems in a timely manner, adhering to established SLAs.
  • Configure and maintain SailPoint Identity Security Cloud (ISC) or IdentityIQ (IIQ) features including access certifications, role-based access control (RBAC), separation of duties (SoD) policies, and automated provisioning/deprovisioning.
  • Integrate SailPoint with enterprise applications, directories, and third-party services using REST APIs, SCIM, and connector frameworks.
  • Support the onboarding and offboarding of users, roles, and applications within the SailPoint environment.
  • Monitor system health, review logs, and proactively identify and address potential issues within the ICAM ecosystem.
  • Collaborate with security and compliance teams to ensure IAM configurations meet federal security standards and frameworks, including NIST guidelines and Zero Trust principles.
  • Assist in the development and maintenance of technical documentation, standard operating procedures (SOPs), and runbooks related to ICAM and SailPoint operations.
  • Participate in change management processes, including planning, testing, and implementing changes to the SailPoint environment.
  • Support audits and compliance reviews by generating access reports, certification campaigns, and configuration documentation.
  • Work with cross-functional teams to evaluate and implement new SailPoint features and capabilities that align with mission requirements.
  • Provide Tier 2/Tier 3 support for escalated identity governance and access management issues.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field from an accredited college or university; equivalent work experience may be considered in lieu of a degree.
  • 3+ years of hands-on experience administering and supporting SailPoint IdentityIQ (IIQ) or SailPoint Identity Security Cloud (ISC), or a comparable Identity Governance and Administration (IGA) platform.
  • Active Secret Clearance required.
  • Relevant SailPoint certification(s) required (e.g., SailPoint Certified IdentityIQ Engineer, SailPoint Identity Security Cloud Engineer, or SailPoint Certified Administrator)., * Exceptional communication skills in English - both written and oral - with the ability to communicate effectively with technical and non-technical stakeholders.
  • Hands-on experience administering the SailPoint platform, including identity lifecycle management, access certifications, role management, provisioning workflows, and SoD policy enforcement.
  • Strong understanding of Identity Governance and Administration (IGA) concepts including joiner/mover/leaver processes, RBAC, and entitlement management.
  • Experience integrating SailPoint with Active Directory (AD), LDAP, and enterprise applications via native connectors or REST/SCIM APIs.
  • Familiarity with ICAM frameworks, principles, and federal identity management standards (e.g., NIST SP 800-63, FICAM).
  • Experience supporting users and applications in a ticketing/ITSM environment (e.g., ServiceNow, Jira).
  • Ability to analyze and interpret system logs to diagnose and resolve identity governance and provisioning issues.
  • Knowledge of role-based access control (RBAC) and attribute-based access control (ABAC) models and their implementation within SailPoint.
  • Knowledge of Zero Trust Architecture principles and their application to identity governance and access management.
  • Ability to create and maintain clear technical documentation, SOPs, and runbooks.
  • Demonstrated ability to work both independently and collaboratively in a team environment.

Clearance Requirement:

  • Active Secret Clearance

Desired Skills and Competencies:

  • Experience working in a federal government IT environment supporting ICAM programs.
  • SailPoint Certified IdentityIQ Architect or SailPoint Identity Security Cloud Architect certification.
  • Experience with SailPoint BeanShell/Java scripting for custom rule development and workflow configuration.
  • Familiarity with Privileged Access Management (PAM) solutions and concepts, such as CyberArk or BeyondTrust.
  • Experience with DevSecOps practices and CI/CD pipeline integrations involving identity services.
  • Knowledge of cloud platforms such as AWS, Azure, or Google Cloud and their native IAM services.
  • Experience with scripting languages (e.g., Python, PowerShell) for automation of identity management and provisioning tasks.
  • Familiarity with additional IAM/ICAM platforms such as Okta, Ping Identity, or ForgeRock.
  • Understanding of PIV/CAC authentication and its integration within federal environments.
  • Experience supporting ATO (Authority to Operate) processes and contributing to security documentation such as System Security Plans (SSPs).
  • CISSP, Security+, or other relevant cybersecurity certifications.

Benefits & conditions

We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.

About the company

Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a SailPoint Support Engineer with a Secret Security clearance to support KITS and our government customer. The position is remote., Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com .

Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

2:50 min

Introduction and the value of runbooks

Hila Fish · WWC 2023

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

1:32 min

Structuring automated incident workflows between runbooks and raw models

Aram Hakobyan Aram Hakobyan +1 · WWC Europe 2026

5:47 min

Integrating user stories and test automation via Jira tools

Christoph Ruggenthaler · LIVE

Videos

See all

Related articles

See all