> Markdown version of [/jobs/ext/3465489-iam-sailpoint-administrator](https://www.wearedevelopers.com/jobs/ext/3465489-iam-sailpoint-administrator). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IAM SailPoint Administrator - **Company:** RL Canning, Inc. - **Location:** Chicago, IL, United States - **Experience:** Experienced - **Salary:** $115,000.0 - $125,000.0 - **Contract:** Permanent contract - **Skills:** Cerner, Active Directory, Cloud Computing Security, Cyber Security, Human Resources Information System (HRIS), Identity and Access Management, Lightweight Directory Access Protocols (LDAP), OAuth, OpenID, Windows PowerShell, Role-Based Access Control, Zero Trust Network Access, Security Assertion Markup Language (SAML), Data Streaming, Enterprise Software Applications, Postman, HR Software, Information Technology, SailPoint, Api Management, User Administration - **Published:** September 16, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=9bb988532f2adc95 ## About the Role * Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent experience. * 3-5+ years of experience supporting Identity & Access Management or IGA platforms. * Hands-on experience with SailPoint Identity Security Cloud and Non-Employee Risk Management (NERM). * Strong understanding of IGA methodologies, IAM best practices, identity lifecycle management, RBAC/ABAC, SoD, and access governance. * Experience with Active Directory user administration, Entra ID, LDAP, SCIM, SSO, MFA, and HRIS systems. * Experience with cloud identity platforms, including Entra ID, AWS IAM, and GCP IAM. * Strong analytical and troubleshooting skills with close attention to detail and data accuracy. * Ability to manage multiple priorities in a fast-paced, complex environment, including unionized healthcare settings. * Experience with PowerShell for light operational automation and scripting. * Experience with Postman for API testing and support. * Experience with Cerner, Epic, or other EMR identity models preferred. * Familiarity with healthcare regulatory requirements, including HIPAA and HITECH. * Experience supporting identity operations in regulated industries such as healthcare or financial services. * Clear, professional communication skills with the ability to explain IAM concepts to both technical and non-technical audiences. * Collaborative mindset for cross-functional teamwork, with a commitment to secure, compliant, and efficient identity operations; SailPoint Identity Security Administrator certification preferred. * Willingness to travel as needed to support client projects and corporate responsibilities. ## Description * Administer and maintain SailPoint ISC configurations, including Identity Profiles, Access Profiles, Roles, Policies, and Lifecycle Event triggers. * Configure and support provisioning workflows, approval chains, and automated Joiner-Mover-Leaver (JML) lifecycle events. * Develop and maintain SailPoint Rules for Before/After Provisioning, Aggregation, and Correlation processes. * Maintain identity attribute mappings, correlation logic, authoritative source configurations, and overall identity data quality. * Monitor and troubleshoot provisioning failures, connector alerts, and identity synchronization issues. * Support connector configuration and maintenance for Active Directory, Entra ID, Epic, FreshService, HRIS, and other enterprise applications across cloud and on-prem environments. * Assist with onboarding new applications into SailPoint, including schema review, entitlement harvesting, connector configuration, and collaboration with application owners to define entitlements, roles, and access policies. * Validate provisioning, deprovisioning, and access governance readiness for onboarded applications, including support for testing SAML, OAuth2, OIDC, SCIM, and REST-based integrations. * Configure and support access certification campaigns, including manager, application owner, and role-based reviews. * Maintain RBAC/ABAC models, support role lifecycle activities, and monitor identity risks such as orphaned accounts, excessive access, and stale entitlements. * Support audit and compliance activities-including HIPAA, SOX, PCI, and ISO 27001-through evidence collection, reporting, and remediation tracking, ensuring IAM processes align with governance, regulatory, and Zero Trust requirements. * Manage user-access-level AD and Entra ID operations, including account provisioning/deprovisioning, group membership updates, and directory attribute maintenance. * Support identity data flows between SailPoint, AD, Entra ID, HRIS, and downstream systems, troubleshooting user-level directory synchronization issues and access discrepancies. * Maintain clean, accurate directory structures to support identity lifecycle operations, and monitor SailPoint system health, job schedules, queue performance, and connector throughput. * Maintain dashboards and reporting for identity lifecycle metrics and operational KPIs, and document configurations, workflows, troubleshooting steps, and operational procedures. * Perform other tasks as necessary to support and achieve business objectives. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)