> Markdown version of [/jobs/ext/2171726-lead-security-engineer](https://www.wearedevelopers.com/jobs/ext/2171726-lead-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Security Engineer - **Company:** Genworth Financial, Inc. - **Location:** Lynchburg, VA, United States (Remote available) - **Experience:** Expert - **Salary:** $120,900.0 - $187,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Java (Programming Language), JavaScript (Programming Language), Active Directory, Software as a Service, Cloud Computing, Cloud Computing Security, Cyber Security, Databases, Continuous Integration, DevOps, Multi-Factor Authentication, Identity and Access Management, Java Database Connectivity, JSON, Lightweight Directory Access Protocols (LDAP), OAuth, Systems Development Life Cycle, Role-Based Access Control, Openid Connect, Azure Active Directory, Zero Trust Network Access, Security Assertion Markup Language (SAML), Secure Coding, Single Sign-On, Systems Integration, Web Services, Extensible Markup Language (XML), Enterprise Software Applications, Git, HR Software, Information Technology, SailPoint, Restful APIs, BeanShell - **Published:** August 21, 2026 - **Apply:** https://gnw.wd1.myworkdayjobs.com/GNW/job/Lynchburg-Virginia/Lead-Security-Engineer_REQ-260335 ## About the Role * A security-first mindset with practical experience balancing risk reduction, user experience, operational needs, and regulatory expectations. * A strong understanding of identity governance, access management, least privilege, segregation of duties, access certification, and audit readiness. * A continuous improvement mindset focused on simplification, automation, reliability, and measurable IAM program maturity. Qualities * Strong problem-solving, analytical, and troubleshooting skills with the ability to resolve complex identity, access, data, and integration issues. * Clear written and verbal communication skills, including the ability to explain technical IAM concepts to non-technical stakeholders. * Demonstrated ownership, collaboration, attention to detail, and ability to lead work across multiple teams and priorities., * Bachelor's degree in Cyber Security, Information Security, Computer Science, Information Technology, Engineering, or a related field, or equivalent professional experience. * Relevant SailPoint certifications, cloud security certifications, or IAM/security certifications are preferred., * 5-7 years of professional experience in Identity and Access Management, information security, or security engineering. * Hands-on experience with SailPoint IdentityIQ and SailPoint Identity Security Cloud, including configuration, administration, development, and support. * Experience with SailPoint workflows, rules, connectors, provisioning, certifications, access requests, roles, policies, identity profiles, access profiles, transforms, and source integrations. * Knowledge of Java, BeanShell, JavaScript, XML, JSON, REST APIs, SCIM, JDBC, web services, and related integration patterns. * Experience integrating IAM platforms with Active Directory, Entra ID / Azure AD, LDAP, HR systems, SaaS applications, databases, and enterprise applications. * Understanding of SAML, OAuth, OpenID Connect, MFA, SSO, privileged access concepts, Zero Trust principles, and cloud identity patterns. * Familiarity with SDLC, Agile delivery, change management, DevOps practices, Git, CI/CD pipelines, testing, and production support processes. Competencies * Technical leadership and solution design * Identity governance and administration expertise * Secure engineering and compliance-oriented delivery * Cross-functional collaboration and stakeholder management * Root-cause analysis and production issue resolution * Documentation, audit readiness, and operational excellence Experience * 5-7 years of IAM, hands on SailPoint IdentityIQ and Identity Security Cloud * Experience supporting regulated environments, audit requests, SOX controls, access reviews, and compliance reporting preferred. * Experience leading technical workstreams, mentoring engineers, and delivering IAM capabilities in complex enterprise environments. ## Description As an IT Security team member, you'll play a crucial role in providing hands-on design, best practice implementation, configuration, integration, and deployment of Identity and Access Management products (SailPoint IIQ & other homegrown applications). You will be responsible for adhering to standards and policies for secure implementations, overseeing compliance, and supporting key IT and business stakeholders. As an ideal candidate, you will rely on extensive experience with Identity and Access Management, secure development practices and maintaining and maturing IAM Program. What you will be doing * Design, implementation, and ongoing support of enterprise Identity and Access Management solutions with a primary focus on SailPoint IdentityIQ and SailPoint Identity Security Cloud. * Engineer and enhance identity lifecycle processes, including joiner, mover, leaver, provisioning, deprovisioning, access requests, certifications, role management, and policy enforcement. * Design, configure, and troubleshoot SailPoint workflows, rules, connectors, access profiles, roles, identity profiles, transforms, and integrations with enterprise systems. * Support migration, modernization, or coexistence efforts between SailPoint IdentityIQ and Identity Security Cloud, ensuring secure, scalable, and maintainable solutions. * Partner with application owners, infrastructure teams, HR, compliance, audit, and business stakeholders to onboard applications and improve identity governance controls. Deliverables / Results * Reliable, well-documented IAM solutions that support secure access, operational efficiency, and compliance requirements. * Successful onboarding of applications, data sources, and access models into SailPoint platforms. * Improved automation for identity lifecycle management, access fulfillment, certification campaigns, and policy controls. * Technical documentation, runbooks, test evidence, and implementation notes that support audit readiness and long-term operational support. Impact / Value Add * Strengthen the organization's security posture by ensuring the right people have the right access at the right time. * Reduce access risk through improved governance, automated controls, timely deprovisioning, and clear certification processes. * Enable business agility by simplifying access requests, approval, and fulfillment processes while maintaining strong security and compliance standards. * Contribute to the maturity of the IAM program by identifying opportunities to streamline legacy processes and improve platform reliability. Ownership * Own complex IAM engineering work from requirements and design through build, testing, implementation, and production support. * Take accountability for technical quality, secure configuration, documentation, change readiness, and operational handoff. * Proactively identify risks, dependencies, defects, and blockers, and communicate status clearly to leadership and stakeholders. Collaboration * Work closely with security architecture, IAM operations, application teams, infrastructure, cloud, HR, legal, compliance, audit, and business partners. * Translate business and compliance requirements into practical IAM designs and implementation plans. * Provide technical guidance, mentoring, and knowledge sharing to engineers, administrators, and support teams. ## Related Videos - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) - [Automated Security for the Entire SDLC](https://www.wearedevelopers.com/videos/100323-automated-security-for-the-entire-sdlc) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)