SailPoint IAM Engineer

Vsg Business Solutions
New York, NY, United States
7 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Access Java (Programming Language) Active Directory Application Programming Interfaces (APIs) Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Multi-Factor Authentication Identity and Access Management Lightweight Directory Access Protocols (LDAP)
+16 more
OAuth OpenID Performance Tuning Role-Based Access Control Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Cloud Platform System Okta SOAPAPI HybridCloud HR Software SailPoint Restful APIs BeanShell Servicenow

Job description

Join an enterprise cybersecurity team focused on modernizing Identity and Access Management (IAM) across hybrid cloud and on-premises environments. The SailPoint IAM Engineer will provide hands-on engineering and architecture expertise across SailPoint IdentityIQ (IIQ), Identity Security Cloud (ISC), identity lifecycle management, access governance, and ServiceNow integrations. SailPoint IAM Engineer Responsibilities

  • Design, develop, administer, and modernize SailPoint IdentityIQ (IIQ) and Identity Security Cloud (ISC) solutions, including IIQ-to-ISC migration.
  • Develop BeanShell rules, Java components, workflows, lifecycle events, connectors, provisioning adapters, APIs, SCIM integrations, and application onboarding frameworks.
  • Architect joiner/mover/leaver automation, RBAC/ABAC, role modeling, certifications, SoD controls, and entitlement management.
  • Integrate SailPoint with ServiceNow, Active Directory, LDAP, Microsoft Entra ID/Azure AD, PIM, HR systems, PAM platforms, and AWS/Azure/GCP.
  • Engineer ServiceNow access requests, approvals, provisioning/deprovisioning, incident workflows, and change-management integrations.
  • Implement authentication and federation using SAML, OAuth, OIDC, MFA, and Okta, including Citizen IAM use cases.
  • Apply Zero Trust and least-privilege principles while supporting SOX, HIPAA, ISO 27001, and NIST-aligned controls.
  • Support production environments through troubleshooting, patching, upgrades, performance tuning, and root-cause analysis., Title: Cybersecurity IAM Engineer / SailPoint IdentityIQ Location: NYC NY On-site/Remote/Hybrid: Hybrid (3 days onsite/2 days remote) Duration: 12 Months Interview Process: Web…
  • 18 days ago +

Requirements

  • Strong hands-on expertise with SailPoint IdentityIQ and SailPoint Identity Security Cloud, including development and administration.
  • Advanced experience with IAM architecture, identity lifecycle automation, access governance, provisioning, and application onboarding.
  • Development experience with BeanShell, Java, REST/SOAP APIs, and SCIM.
  • Experience integrating IAM platforms with ServiceNow, Active Directory, Entra ID/Azure AD, and cloud environments.
  • Strong knowledge of RBAC/ABAC, Zero Trust, least privilege, SAML, OAuth, OIDC, MFA, and identity governance.

Preferred / Nice-to-Have Qualifications

  • Experience with Okta and Citizen IAM solutions.
  • SailPoint IIQ-to-ISC migration experience.
  • Familiarity with SailPoint Access History, Access Modeling, PAM technologies, and compliance frameworks.
  • Experience with IAM architecture reviews, threat modeling, roadmap planning, and modernization initiatives.

The SailPoint IAM Engineer will play a key role in delivering secure, scalable, and compliant enterprise identity solutions. We look forward to reviewing your application!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all