SailPoint ISC

Kaygen Inc.
Los Angeles, CA, United States
19 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

JavaScript (Programming Language) Active Directory Application Programming Interfaces (APIs) Cloud Computing Security Data Normalization Microsoft Exchange Server Identity and Access Management Microsoft Office OAuth Windows PowerShell Azure Active Directory Data Streaming
+10 more
Systems Integration User Provisioning Software Scripting Enterprise Integration SailPoint BeanShell Api Management Workday Servicenow User Accounts

Job description

  • The contractor will manage, implement, and improve the identity and asset ecosystem across the following core platforms:
  • SailPoint Identity Security Cloud (ISC) and NERM
  • Active Directory (AD) On-Premises
  • Azure Active Directory (Azure AD / Microsoft Entra ID)
  • Microsoft Exchange Online / Exchange Server Hybrid Messaging, Microsoft Exchange Online / Hybrid Messaging Operational Tasks Automate non-employee identity creation, sponsor tracking, lifecycle transitions, and downstream birthright access provisioning. Support automated onboarding and offboarding processes. Implement workflow enhancements for employee status changes. Monitor and manage the entire SailPoint ISC environment including integrations with Workday, Active Directory, Azure AD, and SailPoint. Create and update approval workflows and policies. Review and resolve identity lifecycle processing errors. Monitor account aggregation jobs and connector health. Troubleshoot provisioning and deprovisioning failures. Integrate an inbound data feed driven directly by a ServiceNow Request payload into SailPoint NERM to automate Contractor onboarding. SailPoint ISC Architect, configure, and deploy the native SailPoint Azure AD direct connector to replace or augment legacy synchronization pathways. Configure secure OAuth 2.0 API integrations via Microsoft Graph API. Establish data aggregation schedules, attribute mappings, and account correlation rules to ensure zero downtime. Azure AD Direct Connector Deployment to SailPoint ISC Health & Directory Maintenance: Monitor, troubleshoot, and remediate health issues within the on-premises AD environment related to object corruption, duplication, or sync latencies affecting downstream IAM tools. Organizational Unit (OU) & Object Management: Restructure, cleanup, and standardize OU architecture, managed service accounts (MSAs), and security groups to facilitate accurate automated provisioning. Group Policy Object (GPO) Alignment: Review and adjust GPOs impacting user provisioning, login scripts, and local profile creation to eliminate conflicts with SailPoint-driven access models. Nested Group Rationalization: Audit and remediate highly nested security groups causing token bloat or unmapped access privileges during automated SailPoint entitlement aggregations. Sid-History and Schema Attribute Audits: Remediate legacy security identifier (SID) histories and validate schema extensions required for advanced attribute matching across hybrid infrastructures. Scope of Work:

The contractor will focus on high-complexity implementation, onboarding new platform modules, and root-cause analysis of systemic integration friction. Day-to-day work involves minimal low-volume ticket queues, prioritizing long-term stabilization over transactional ticket closure.

Requirements

Experience with SailPoint (or any other Identity Governance and Administration solution) and Microsoft Entra. Experience managing Joiner-Mover-Leaver (JML) processes. Experience troubleshooting provisioning and aggregation failures. Strong understanding of identity lifecycle management and security frameworks. Familiarity with hybrid Exchange environments and Office 365 services. Deep operational expertise with Microsoft Active Directory Services (Forest/Domain architecture, GPO application, trust relationships) and Azure AD/Microsoft Entra ID schemas. Hands-on experience administering Microsoft Exchange Online and hybrid Exchange environments, including mailbox management, distribution groups, mail flow, transport rules, delegation, retention, archive, and PowerShell automation. Proven implementation history with SailPoint Identity Security Cloud (ISC) and NERM. Strong capabilities in scripting languages (PowerShell, JavaScript, or BeanShell) used for building custom enterprise integration

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

6:22 min

Eliminating HR bureaucracy and trusting employees

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:08 min

Managing complex structures and corporate guidelines

Alexandra Petri · World Congress 2023

5:06 min

Primary reasons for capability gaps in modern recruitment systems

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all