
Platform Engineer, IAM, Identity Governance & Administration
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Poland, +1 more country.
• Evaluate information security risks according to internal policies and external best practices.
• Examine security systems and enforce security standards, policies, and procedures.
• Deploy cybersecurity technologies and offer daily operational support.
• Oversee third-party providers as necessary to ensure compliance with standards.
• Deliver information security training to relevant teams.
• Design, develop, and implement SailPoint IdentityIQ solutions, including workflows, rules, custom connectors, and access models.
• Serve as the primary operational Subject Matter Expert (SME) for the IIQ platform across all environments.
• Monitor platform performance, aggregation, and provisioning issues; conduct root cause analysis, upgrades, and manage ITIL/ITSM change control.
• Execute access certification campaigns utilizing risk-based strategies and AI-driven recommendations.
• Improve Joiner, Mover, and Leaver workflows, encompassing provisioning, de-provisioning, and orphan account cleanup.
• Direct role mining, role engineering, and entitlement rationalization efforts.
• Manage privileged access through PAM integration, enforcement of Separation of Duties (SoD), and Just-In-Time provisioning.
• Ensure IGA processes align with SOX, GDPR, HIPAA, PCI-DSS, NIST 800-53, and ISO 27001, providing audit-ready reporting and evidence.
• Create integrations with ServiceNow/Jira, SIEM/SOAR, and AWS, Azure, and GCP IAM.
• Collaborate with application owners, HR, IT Security, and business teams to promote adoption.
• Present KPIs that showcase platform maturity.
• Proven experience in information security, compliance, and risk management.
• Familiarity with security solutions, strategies, awareness campaigns, policies/standards, and governance.
• Over 10 years of experience in Identity & Access Management, including a minimum of 7 years of hands-on IGA platform engineering.
• Advanced knowledge of SailPoint IdentityIQ, including workflows, rules, connectors, lifecycle events, certifications, and role modeling.
• Proficiency in Java and BeanShell scripting, along with SQL, XML, JSON, REST APIs, and web services.
• Experience with LDAP/Active Directory, Azure AD/Entra ID, and enterprise directory services.
• Knowledge of SCIM, SAML 2.0, OAuth 2.0, OpenID Connect, and CI/CD pipelines (e.g., Git, Jenkins, Ansible).
• Understanding of NIST CSF 2.0, NIST 800-53, ISO 27001/27002, Zero Trust Architecture, and COBIT 2019.
• A Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience.
• SailPoint certifications, along with CISSP, CISM, or CISA credentials preferred.
• Strong communication, analytical, and problem-solving skills, with the ability to work effectively in a team.
• No relocation support available.
• Equal opportunity employment.
CentralReach
Significance
DSA
Bright Vision Technologies
Get handpicked remote jobs straight to your inbox weekly.