> Markdown version of [/jobs/ext/2855112-cybersecurity-iam-engineer-sailpoint-developer-architect](https://www.wearedevelopers.com/jobs/ext/2855112-cybersecurity-iam-engineer-sailpoint-developer-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity IAM Engineer | SailPoint Developer & Architect - **Company:** Stellent IT LLC - **Location:** New York, NY, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Access, Java (Programming Language), Active Directory, Artificial Intelligence, Amazon Web Services, Authentication Protocols, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Multi-Factor Authentication, Identity and Access Management, JSON, Lightweight Directory Access Protocols (LDAP), OAuth, Object-Oriented Software Development, OpenID, Role-Based Access Control, Azure Active Directory, Zero Trust Network Access, Security Assertion Markup Language (SAML), Simple Object Access Protocol (SOAP), SQL Databases, Software Vulnerability Management, Extensible Markup Language (XML), Okta, Power Platform Integration, IT Architecture, HR Software, Cloud Migration, SailPoint, Restful APIs, BeanShell, Servicenow - **Published:** September 11, 2026 - **Apply:** https://www.careerjet.com/jobad/us0797b57b54f35fea56319d80aa1f4af8 ## About the Role * Strong experience in IAM engineering and SailPoint IdentityIQ development. * Strong proficiency in Java, BeanShell, XML, JSON, SQL, and REST APIs. * Deep understanding of the SailPoint IIQ object model, connector frameworks, workflow engine, and plugin architecture. * Hands-on experience integrating SailPoint IIQ with ServiceNow. * Strong knowledge of directory services, identity stores, and authentication protocols. * Experience with Microsoft Entra ID/Azure AD and PIM. * Knowledge of RBAC/ABAC, SoD, identity governance, and policy enforcement. * Familiarity with NIST and other security/compliance principles. * This role combines hands-on SailPoint engineering, IAM architecture, enterprise integrations, ServiceNow workflow engineering, and cybersecurity governance. Nice to Have: * Okta experience, particularly Citizen IAM. * Experience with AWS, Azure, or GCP. * SailPoint Identity Security Cloud experience. * Experience with PAM tools, Access History, and Access Modeling. * Experience leading IAM modernization and architecture initiatives. ## Description * Design, implement, and maintain SailPoint IdentityIQ (IIQ) and Identity Security Cloud (ISC) solutions. * Develop workflows, connectors, application onboarding, and lifecycle automation. * Build and maintain BeanShell rules, custom workflows, lifecycle events, and plugins. * Develop custom connectors, aggregation jobs, reconciliation logic, and provisioning adapters. * Design IAM architecture supporting joiner/mover/leaver automation and attribute-based access. * Integrate SailPoint with ServiceNow, Active Directory, LDAP, Entra ID/Azure AD, HR systems, and cloud applications. * Develop REST/SOAP integrations and SCIM connectors. * Implement authentication and federation using SAML, OAuth, OIDC, and MFA. * Support RBAC/ABAC, role mining, access modeling, SoD controls, and governance reporting. * Integrate and optimize ServiceNow SailPoint downstream system workflows. * Support IAM security, Zero Trust, least privilege, compliance, and vulnerability remediation. * Participate in the upcoming IdentityIQ Identity Security Cloud migration. * Provide technical leadership, architecture guidance, and production support., Senior Staff Engineer, AI Compute (Remote Eligible) At Capital One, we are creating responsible and reliable AI systems, changing banking for good. For years, Capital One has been … + 2 days ago ## Related Videos - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Our GitOps approach for deploying an Identity Provider and an API Gateway in a SaaS company](https://www.wearedevelopers.com/videos/776-our-gitops-approach-for-deploying-an-identity-provider-and-an-api-gateway-in-a-saas-company) - [Introducing JSON Structure](https://www.wearedevelopers.com/videos/100219-introducing-json-structure) - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 139 - Soft and hard queries](https://www.wearedevelopers.com/magazine/487-dev-digest-139-soft-and-hard-queries) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)