SailPoint IAM Engineer

MTANew York, NY
Hybrid

About The Position

Join an enterprise cybersecurity team focused on modernizing Identity and Access Management (IAM) across hybrid cloud and on-premises environments. The SailPoint IAM Engineer will provide hands-on engineering and architecture expertise across SailPoint IdentityIQ (IIQ), Identity Security Cloud (ISC), identity lifecycle management, access governance, and ServiceNow integrations.

Requirements

  • Strong hands-on expertise with SailPoint IdentityIQ and SailPoint Identity Security Cloud, including development and administration.
  • Advanced experience with IAM architecture, identity lifecycle automation, access governance, provisioning, and application onboarding.
  • Development experience with BeanShell, Java, REST/SOAP APIs, and SCIM.
  • Experience integrating IAM platforms with ServiceNow, Active Directory, Entra ID/Azure AD, and cloud environments.
  • Strong knowledge of RBAC/ABAC, Zero Trust, least privilege, SAML, OAuth, OIDC, MFA, and identity governance.

Nice To Haves

  • Experience with Okta and Citizen IAM solutions.
  • SailPoint IIQ-to-ISC migration experience.
  • Familiarity with SailPoint Access History, Access Modeling, PAM technologies, and compliance frameworks.
  • Experience with IAM architecture reviews, threat modeling, roadmap planning, and modernization initiatives.

Responsibilities

  • Design, develop, administer, and modernize SailPoint IdentityIQ (IIQ) and Identity Security Cloud (ISC) solutions, including IIQ-to-ISC migration.
  • Develop BeanShell rules, Java components, workflows, lifecycle events, connectors, provisioning adapters, APIs, SCIM integrations, and application onboarding frameworks.
  • Architect joiner/mover/leaver automation, RBAC/ABAC, role modeling, certifications, SoD controls, and entitlement management.
  • Integrate SailPoint with ServiceNow, Active Directory, LDAP, Microsoft Entra ID/Azure AD, PIM, HR systems, PAM platforms, and AWS/Azure/GCP.
  • Engineer ServiceNow access requests, approvals, provisioning/deprovisioning, incident workflows, and change-management integrations.
  • Implement authentication and federation using SAML, OAuth, OIDC, MFA, and Okta, including Citizen IAM use cases.
  • Apply Zero Trust and least-privilege principles while supporting SOX, HIPAA, ISO 27001, and NIST-aligned controls.
  • Support production environments through troubleshooting, patching, upgrades, performance tuning, and root-cause analysis.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service