> Markdown version of [/jobs/ext/2272796-senior-iga-engineer-saas-identity-governance-administration-saviynt-engineer](https://www.wearedevelopers.com/jobs/ext/2272796-senior-iga-engineer-saas-identity-governance-administration-saviynt-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior IGA Engineer / SaaS Identity Governance & Administration (Saviynt) Engineer - **Company:** Federal Reserve Bank of Atlanta - **Location:** San Francisco, CA, United States - **Experience:** Expert - **Salary:** $146,700.0 - $190,500.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Active Directory, Application Programming Interfaces (APIs), Amazon Web Services, Application Integration Architecture, User Authentication, Automation of Tests, Microsoft Azure, Software as a Service, Cloud Computing, Cyber Security, Information Systems, Databases, Continuous Integration, Data Mapping, Data Transformation, Groovy, Identity and Access Management, Java Database Connectivity, JSON, Python (Programming Language), Lightweight Directory Access Protocols (LDAP), Log Analysis, PCI Data Security Standards, Windows PowerShell, Role-Based Access Control, Release Management, Runbook, SQL Databases, Systems Integration, User Provisioning Software, Web Services, Diagnostic Tools, Scripting, Google Cloud, Enterprise Software Applications, HR Software, Information Technology, SailPoint, Restful APIs, Devsecops, Workday - **Published:** August 27, 2026 - **Apply:** https://rb.wd5.myworkdayjobs.com/FRS/job/San-Francisco-CA/Senior-IGA-Engineer---SaaS-Identity-Governance---Administration--Saviynt--Engineer_R-0000032397-1 ## About the Role * Hands-on Saviynt EIC development and configuration experience delivering production IGA capabilities at enterprise scale. * Ability to independently develop, configure, test, troubleshoot, and support Saviynt-not solely gather requirements, administer campaigns, or provide program governance. * Demonstrated experience building Saviynt application integrations and resolving connector, API, data mapping, reconciliation, import, and provisioning issues. * Hands-on implementation of identity lifecycle automation, including JML events, account creation, access changes, deprovisioning, and termination processing. * Hands-on experience with access requests, approval workflows, certifications, entitlement governance, and provisioning workflows. * Strong REST API, JSON, SQL, and integration troubleshooting skills. * Production support experience, including incident diagnosis, log analysis, root-cause analysis, defect remediation, and controlled releases. * Strong understanding of IAM/IGA principles including least privilege, RBAC, SoD, access governance, authoritative sources, identity correlation, and lifecycle controls., * Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Information Systems, Engineering, or a closely related technical discipline or equivalent relevant experience * 5+ years of professional experience in IAM, IGA, security engineering, application integration, or related identity engineering disciplines. * 2+ years of recent, hands-on Saviynt engineering/development experience, preferably with Saviynt EIC. * Experience integrating heterogeneous applications, including SaaS applications, directories, databases, cloud platforms, and custom/internal systems. * Proficiency with RESTful APIs, JSON, SQL, data transformations, authentication methods, and API troubleshooting tools. * Experience with SCIM and common identity integration patterns; familiarity with LDAP/Active Directory concepts is expected. * Experience with source-of-truth / authoritative identity feeds such as HR systems and with identity correlation and data quality remediation. * Ability to analyze complex technical problems across identity data, IGA platform configuration, target applications, and downstream provisioning components. * Experience working through software/engineering lifecycle activities: requirements refinement, design, build, test, peer review, deployment, documentation, and production support. * Strong written and verbal communication skills with the ability to work effectively across security, engineering, application, audit, and business teams. Preferred skills: * Current Saviynt technical certification or formal Saviynt implementation training. * Experience with another enterprise IGA platform (for example SailPoint) in addition to Saviynt. * Experience with major cloud platforms such as AWS, Microsoft Azure, or Google Cloud and their identity/security integration patterns. * Experience integrating HR platforms such as Workday or other authoritative identity sources. * Experience with Privileged Access Management (PAM), non-human/service identities, or machine identity governance. * Experience with CI/CD, Infrastructure-as-Code, automated testing, or DevSecOps practices applied to IAM/IGA engineering. * Experience with Java/Groovy/Python/PowerShell or comparable scripting/programming used for integrations and automation. * Experience supporting regulatory or audit-driven access controls in environments subject to SOX, PCI DSS, HIPAA, financial-services, or similar requirements. * Experience with enterprise role engineering, access modeling, entitlement rationalization, and SoD rule design. * Experience leading complex application onboarding initiatives or mentoring IGA engineers. ## Description The Senior IGA Engineer is responsible for designing, developing, integrating, testing, deploying, and supporting enterprise Identity Governance & Administration capabilities, with primary emphasis on Saviynt EIC. The role requires strong hands-on development skills across identity lifecycle management, access requests, provisioning, certifications, role/access modeling, application onboarding, APIs, connectors, workflows, and production troubleshooting. The engineer will translate security and business requirements into scalable, supportable IGA solutions across SaaS, cloud, and enterprise applications., * Design, configure, develop, test, deploy, and maintain Saviynt EIC solutions supporting enterprise IGA use cases. * Build and enhance Joiner/Mover/Leaver (JML) lifecycle processes, birthright access, automated provisioning/deprovisioning, and termination controls. * Configure and develop access request workflows, approval chains, entitlement governance, access policies, roles, user manager structures, and delegated administration. * Develop and maintain access certification campaigns, reviewer logic, escalation paths, remediation workflows, and certification reporting. * Onboard SaaS, cloud, database, directory, and enterprise applications using Saviynt connectors and custom integration patterns. * Develop integrations using REST APIs, SCIM, JDBC/SQL, web services, file-based feeds, scripting, and other supported integration methods. * Create and troubleshoot Saviynt workflows, rules, analytics, jobs, tasks, connection configurations, imports, provisioning actions, and technical controls. * Implement and support RBAC, role engineering, entitlement structures, access policies, Segregation of Duties (SoD) controls, and least-privilege patterns. * Diagnose complex identity data, provisioning, reconciliation, connector, API, workflow, and performance issues across non-production and production environments. * Create reusable engineering patterns, technical documentation, configuration standards, runbooks, test evidence, and deployment procedures. * Partner with IAM architecture, cybersecurity, application owners, infrastructure, HR, audit, and engineering teams to deliver end-to-end identity solutions. * Participate in code/configuration reviews, release management, incident/problem management, root-cause analysis, and continuous platform improvement. * Mentor engineers and provide technical leadership on Saviynt implementation patterns, troubleshooting, and engineering quality. ## Related Videos - [Our GitOps approach for deploying an Identity Provider and an API Gateway in a SaaS company](https://www.wearedevelopers.com/videos/776-our-gitops-approach-for-deploying-an-identity-provider-and-an-api-gateway-in-a-saas-company) - [Destigmatizing the Workplace: Building Real Inclusion](https://www.wearedevelopers.com/videos/1492-destigmatizing-the-workplace-building-real-inclusion) - [Give your build some love, it will give it back!](https://www.wearedevelopers.com/videos/514-give-your-build-some-love-it-will-give-it-back) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [How to govern Vibe Coding for the Enterprise](https://www.wearedevelopers.com/videos/100290-how-to-govern-vibe-coding-for-the-enterprise) - [WeAreDevelopers LIVE - How DevRel Makes Tech More Human](https://www.wearedevelopers.com/videos/2149-wearedevelopers-live-how-devrel-makes-tech-more-human) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud)