IAM SailPoint Engineer

ITBrainiac Inc
Chicago, IL, United States
23 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cerner Java (Programming Language) JavaScript (Programming Language) Active Directory Application Programming Interfaces (APIs) Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Software Debugging Electronic Data Interchange (EDI)
+25 more
Human Resources Information System (HRIS) Identity and Access Management Python (Programming Language) Lightweight Directory Access Protocols (LDAP) OAuth OpenID Windows PowerShell Role-Based Access Control Zero Trust Network Access Security Assertion Markup Language (SAML) Secure Coding Data Streaming Systems Integration Scripting Google Cloud Postman Power Platform Integration Electronic Medical Records HR Software Information Technology Enterprise Integration SailPoint Restful APIs BeanShell Api Management

Job description

The IAM SailPoint Engineer is responsible for the design, development, customization, and advanced technical support of our Identity Governance & Administration (IGA) platforms, including SailPoint Identity Security Cloud (ISC) and Non-Employee Risk Management (NERM). This role builds and maintains complex integrations, develops automation, engineers SailPoint rules and workflows, and ensures scalable, secure identity architecture across the enterprise.

The IAM SailPoint Engineer partners with IAM leadership, cybersecurity, HRIS, infrastructure, and application teams to deliver modern identity solutions aligned with HIPAA, NIST, Zero Trust, and internal governance requirements., SailPoint Engineering & Development:

  • Design, develop, and maintain SailPoint Rules (Before/After Provisioning, Aggregation, Correlation, Custom Workflows).
  • Build and optimize complex provisioning workflows, lifecycle event logic, and identity orchestration.
  • Engineer and maintain custom connectors, integration logic, and advanced SailPoint configurations.
  • Develop custom SailPoint transforms, policies, and identity processing logic.
  • Perform advanced troubleshooting of provisioning, aggregation, and connector failures.

Application Onboarding & Integration Engineering:

  • Lead onboarding of new applications into SailPoint, including:

  • schema discovery
  • connector engineering
  • entitlement modeling
  • provisioning/deprovisioning logic
  • aggregation job tuning

  • Build and support integration using:

  • SCIM
  • REST APIs
  • SAML
  • OAuth2
  • OIDC

  • Engineer identity data flows between SailPoint, AD, Entra ID, HRIS, EMR systems, and cloud platforms.

Automation and Scripting:

  • Develop automation using PowerShell, BeanShell, JavaScript, Python, or similar languages.
  • Build scripts to support identity lifecycle operations, data cleanup, and system integrations.
  • Create API based automation for identity data exchange and workflow optimization.
  • Maintain version controlled code repositories and follow secure development practices.

Directory and Cloud Identity Engineering:

  • Engineer identity integrations with Active Directory, Entra ID, LDAP, and cloud identity platforms.
  • Troubleshoot complex directory synchronization issues, attribute conflicts, and provisioning logic.
  • Engineer cloud identity governance for Azure, AWS, and/or Google Cloud Platform.
  • Support identity federation, SSO, MFA, and authentication architecture.

Operational Support:

  • Serve as the escalation point for complex SailPoint and identity issues.
  • Perform root cause analysis and implement long term technical fixes.
  • Maintain technical documentation, integration patterns, and engineering standards.
  • Support after-hours maintenance windows.

Requirements

  • Bachelor s degree in Information Technology (IT), Computer Science, Cybersecurity, or a related field OR equivalent experience.
  • 7+ years of hands on experience engineering or developing IGA solutions.
  • Strong experience with SailPoint Identity Security Cloud and/or IdentityIQ.
  • Demonstrated experience writing SailPoint Rules (BeanShell/Java) and building custom workflows.
  • Strong scripting experience (PowerShell, JavaScript, Python, BeanShell).
  • Experience engineering integrations using SCIM, REST APIs, SAML, OAuth2, OIDC.
  • Strong understanding of identity lifecycle management, RBAC/ABAC, SoD, and identity architecture.
  • Experience with Active Directory, Entra ID, LDAP, HRIS systems, and cloud identity platforms.
  • Ability to work in a complex, unionized healthcare environment., * SailPoint Engineer or Architect certification.
  • Experience engineering identity integrations with Cerner, Epic or other EMR identity models.
  • Experience with cloud identity governance (Azure, AWS, Google Cloud Platform).
  • Experience with Postman, API testing, and integration debugging.
  • Experience supporting large scale identity modernization initiatives.

Key Competencies:

  • Strong engineering mindset with ability to design scalable identity solutions.
  • Ability to translate business requirements into technical architecture.
  • Strong troubleshooting and analytical skills.
  • Clear communication skills with ability to explain complex technical concepts.
  • Commitment to secure, compliant, and resilient identity operations.
  • Ability to collaborate across cybersecurity, infrastructure, HRIS, and application teams.

Best regards

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

Videos

See all

Related articles

See all