
Senior Engineer – Identity Governance & Administration
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Illinois.
• Deliver advanced operational support for a substantial and intricate Identity and Access Management system.
• Design, configure, test, and deploy Identity Governance and Administration functionalities for Joiner, Mover, and Leaver workflows, access provisioning, and lifecycle-driven access controls.
• Create maintainable configurations, integration designs, testing evidence, and implementation documentation.
• Collaborate with the Principal Architect on JML workflows, automated access provisioning, ServiceNow integrations, access request patterns, and certification capabilities.
• Assess design alternatives and document architectural decisions, risks, assumptions, controls, and integration dependencies.
• Design and execute identity lifecycle workflows for account creation, modification, termination, birthright access, role-based access, and policy-driven provisioning.
• Ensure that workflow requirements are testable, auditable, and in compliance with enterprise identity, regulatory, and cybersecurity standards.
• Develop and maintain technical requirements, reference architectures, interface designs, workflow specifications, and acceptance criteria.
• Create scalable integration patterns and automation for access requests, approvals, fulfillment, revocation, and certification outcomes across IGA, ServiceNow, authoritative sources, and target systems.
• Act as a technical authority for IGA solution design among application owners, product teams, cybersecurity, audit, and compliance stakeholders.
• Facilitate the adoption of JML, access provisioning, non-human identity governance, ServiceNow integration, and access certification practices.
• Work both independently and collaboratively to develop and sustain identity management solutions.
• Bachelor's degree is required; a degree in a STEM field is preferred.
• Minimum of 3 years of relevant experience.
• Extensive knowledge of enterprise IAM and IGA, including application onboarding, identity lifecycle management, access provisioning, user access reviews, least privilege, role-based access control, and access governance.
• Experience in implementing, maintaining, engineering, and/or architecting modern IGA platforms such as Saviynt, SailPoint, or similar solutions.
• Direct experience in engineering and architecting solutions within Saviynt.
• Proficient in designing, building, testing, and troubleshooting integrations using APIs, web services, files, databases, directories, cloud services, and other application interfaces.
• Capable of defining technical requirements, architecture diagrams, interface designs, solution patterns, threat models, decision records, test evidence, runbooks, and support procedures.
• Familiarity with automation, scripting, source control, deployment pipelines, monitoring, testing, change management, and reliability practices across both non-production and production environments.
• Strong skills in problem-solving, critical thinking, documentation, relationship-building, and both written and verbal communication.
• Ability to elucidate complex technical and risk-related topics to both technical and non-technical stakeholders.
• Capacity to work independently and collaboratively, prioritize tasks in alignment with enterprise strategy, build consensus, and achieve results without direct supervisory oversight.
• Must possess legal authorization to work in the United States for any employer without sponsorship.
• Successful completion of an interview is required.
• Consistent, punctual attendance is a critical function of this role.
• Preferred: Master's degree in Cybersecurity, Risk Management, or Computer Science.
• Preferred: CISA, CISM, or CISSP certifications.
• Knowledge of NIST, ISO, OWASP, SOX, PCI, FAA, GDPR, and PII obligations.
• Experience with Delinea, Entra, Active Directory, Oracle Access Manager, SailPoint, Saviynt, and related identity technologies.
• Understanding of secure development principles, authentication protocols, encryption, common vulnerabilities, application risk assessment, and security testing.
• Familiarity with cloud and traditional infrastructure, web applications, network and application protocols, DevOps, CI/CD automation, and secure system integration.
• Experience integrating secure development and identity governance practices into agile or waterfall delivery models within a large enterprise.
• Comprehensive health and wellness benefits.
• Parental leave.
• 401(k) plan.
• Space-available travel privileges.
• Medical, dental, and vision insurance.
• Life, accident, and disability coverage.
• Employee assistance program.
• Commuter benefits.
• Paid holidays.
• Paid time off.
• Flight privileges.
• Employee-led Business Resource Group communities.
• Eligibility for bonus and/or long-term incentive compensation.
NationsBenefits
QAVION GROUP
Weflow | getweflow.com
Travoom
Get handpicked remote jobs straight to your inbox weekly.