Job Closed

This listing is no longer active.

Optiv logo
Optiv

Secure greatness™

Senior SailPoint Engineer – ISC, IIQ

EngineerEngineerFull TimeRemoteSeniorTeam 1,001-5,000Since 2012H1B SponsorCompany SiteLinkedIn

Location

Arizona + 3 moreAll locations: Arizona | Kansas | Texas | Utah

Posted

6 days ago

Salary

0

Seniority

Senior

Job Description

Senior SailPoint Engineer – ISC, IIQ

Optiv

• This position will be fully remote and can be hired anywhere in the continental U.S. • Handle escalations from Tier 1, stabilize and optimize production, and drive small/medium enhancements. • Keep identity lifecycle, access requests, certifications, and policy enforcement humming— with operational discipline, measurable SLAs, and crisp client communication. • Build and optimize workflows, transforms, and policies (SoD, RBAC) in IIQ and ISC. • Monitor and resolve aggregations, account correlations, provisioning failures, and campaign anomalies, tune schedules and thresholds. • Maintain and troubleshoot Virtual Appliance (VA) health, connector upgrades, and connectivity (e.g., AD/Entra, HRIS, SaaS apps, databases). • Build and maintain Workflows (low code), Transforms, policies (SoD, separation of function), and request/catalog items. • Run monthly health checks and deliver operational reports (KPIs, trendlines, incidents, changes, and risk/compliance signals). • Act as escalation for Tier 1: triage, contain, and restore; perform root cause analysis and implement durable fixes. • Create and improve runbooks/SOPs; automate recurring fixes and checks. • Plan and execute low-risk changes (connector tuning, attribute mappings, workflow edits, catalog updates) within ITSM guardrails. • Contribute to release readiness: sandbox validation, UAT coordination, deployment notes, and rollback plans. • Translate operational signals into clear actions for client IAM owners and app teams. • Advise on access modeling (Access Profiles vs. Roles), campaign design, and birthright vs. requestable access. • Provide backlog intake sizing for Tier-3/architecture where code or complex redesigns are required. • Okta/Entra ID Integration experience: Govern downstream via SCIM/API targets; align joiner/mover/leaver flows; validate group/entitlement posture. • CyberArk (PAM) Integration experience: Support governance integrations (e.g., safe/platform entitlement visibility, request/approval via SailPoint); assist with out-of-band privilege variance findings and clean-up campaigns. • Feed events and metrics to SIEM/SOC (webhooks/API), enrich tickets with context, and contribute to correlation use-cases (e.g., excessive privilege anomalies, orphan/rogue accounts). • Partner with compliance teams on attestation evidence, control testing cadence, and audit responses.

Job Requirements

  • 5+ years of verifiable IAM operations/consulting experience, with at least 2 years hands-on in SailPoint IIQ and ISC in production.
  • Recent (≤12 months) hands-on experience with SailPoint ISC/IDP in a production setting.
  • Proven Tier-2 ownership of aggregations, correlation, provisioning, certifications, workflow/transform tuning, catalog & access model hygiene, and VA/connector health.
  • Solid grasp of identity lifecycle (joiner/mover/leaver), request/approval patterns, SoD policy design, and RBAC in large, distributed environments.
  • Comfortable with logs, metrics, and MTTR/SLAs; can turn noisy failures into stable automation.
  • Strong written/verbal communication—clear incident timelines, executive-level status, and precise change plans.
  • Familiarity with Entra ID/AD, HR sources, and common SaaS targets from an IIQ connector perspective.
  • SailPoint IIQ (Workflows, Access Requests, Certifications, Identity & Access Profiles, Transforms, Policies, Reports)
  • Virtual Appliances, connector logs, account activity, and provisioning task views
  • ITSM (ServiceNow/Jira), Confluence/knowledge base, basic API tooling (Postman/Curl) for IIQ v3 endpoints
  • Basic scripting for ops automation (PowerShell or Python) and CSV/data fixes where appropriate
  • Okta (governance targets via SCIM/API; SSO basics helpful but not the focus)- preferred
  • CyberArk governance integration (safe/platform entitlement visibility and request flows)- preferred
  • Cloud platforms (AWS/GCP) as identity sources/targets- preferred
  • Security/compliance context: SOC 2, SOX, HIPAA, PCI; evidence packaging for audits- preferred
  • Certifications (SailPoint, Microsoft, ISC²)- preferred

Benefits

  • A company committed to our inclusive value through our Employee Resource Groups
  • Work/life balance
  • Professional training resources
  • Creative problem-solving and the ability to tackle unique, complex projects
  • Volunteer Opportunities. “Optiv Chips In” encourages employees to volunteer and engage with their teams and communities.
  • The ability and technology necessary to productively work remotely/from home (where applicable)

Related Categories

Related Job Pages

More Engineer Jobs

Role Description Estamos buscando um(a) Machine Learning Engineer com forte visão de engenharia de software e arquitetura de dados. Você será a ponte entre a Ciência de Dados e a Engenharia, responsável por arquitetar, produtizar e escalar modelos de IA (clássicos e generativos) dentro de ecossistemas corporativos baseados em Microsoft Azure e Databricks. Se você gosta de construir pipelines robustos, automatizar deploys e garantir que modelos performem com estabilidade em uma arquitetura Lakehouse, esse é o seu lugar. Qualifications - Experiência sólida em Python, SQL e PySpark; - Experiência comprovada em MLOps, criação de APIs e produtização de modelos; - Experiência com o ecossistema Databricks (Workspace, Jobs, Clusters); - Experiência com MLflow para versionamento e rastreamento de modelos; - Experiência com esteiras de CI/CD (Azure DevOps); - Experiência com Docker e orquestração com Kubernetes/AKS; - Vivência com serviços em nuvem Microsoft Azure. Requirements - Conhecimento em arquitetura Lakehouse e governança de dados com Unity Catalog; - Experiência na implementação de soluções com IA Generativa e desenvolvimento de agentes (LangChain, CrewAI, Databricks Genie); - Experiência com os serviços cognitivos do Azure. Benefits - Política de Home Office; - Plano de saúde, com cobertura nacional; - Plano odontológico; - Convênio com Sesc; - Wellhub; - Vale refeição ou alimentação; - Auxílio creche; - Participação nos resultados; - Licença parental estendida; - Plano de desenvolvimento individual/anual com subsídio para capacitação; - Treinamento do idioma inglês; - Programa de intercâmbio (USA).

Brazil
Full TimeRemoteTeam 10,001+Since 1954H1B Sponsor

Title: Identity Management Engineer Location: Any Location / Remote Full Part/Time: Full time Job Req: RQ220544 Type of Requisition: Regular Clearance Level Must Currently Possess: None Clearance Level Must Be Able to Obtain: None Public Trust/Other Required: NACI (T1) Job Family: IT Infrastructure and Operations Job Qualifications: - Skills: Identity Management (IdM), Oracle Identity Manager (OIM), Role Based Access Control (RBAC), Single Sign-On (SSO) - Certifications: None - Experience: 5 + years of related experience US Citizenship Required: No Job Description: GDIT is seeking a Identity Management Engineer for our Healthcare General Ledger Accounting System (HIGLAS) program at the Centers for Medicare & Medicaid Services (CMS). Role Description: - Functional administration and maintenance of our 12c Oracle Identity Management application including Oracle Access Manager (OAM), Oracle Internet Directory (OID), and Oracle Identity Governance (OIG). - Provide support to and participate in IAM continuous monitoring activities including monitoring new and removed identities, access and permissions changes, privilege escalation, bot activity, and other related activities. - Support user access provisioning, authentication, and access management processes. - Actively participate in troubleshooting sessions for OIG/OAM in Prod and Non-Prod. - Develop and maintain system documentation, including standard operating procedures (SOPs) and configuration guides. - Having a strong affinity toward security-oriented practices - including coding, to avoid creating vulnerabilities. - Coordinate and collaborate with technical subject matter experts (SMEs) to ensure technical and operational security controls are operating as expected. Requirements/Experience: - 5+ years' experience in the Identity & Access Management domain. - Expertise in implementing, maintaining, and migrating OIG, OAM 12c components (WebLogic, OIM, SOA, BI, OAM, OAA, OARM), and OID 12c. - Strong Java coding skills with proficiency in OIG/OAM APIs (REST and Java APIs) for custom development of webpages, scheduled job deployments, automations. - Thorough understanding of authentication and authorization mechanisms, including Single Sign-On (SSO), Identity Federation, Multi-Factor Authentication (MFA), Entitlements, Security Assertion Markup Language (SAML), Open Authorization (OAuth), etc. - Extensive exposure to SSO integrations - designing and implementing SSO solutions using OOTB and custom options with OAM or other Identity tools. - Strong knowledge of identity and access management, role- and attribute-based access controls (RBAC/ABAC), segregation of duties, least privilege, privilege escalation, etc. - Hands on development experience with Scheduled jobs, Adapters, Event handlers, Notifications, plugins and custom connectors (ICF/CI), web pages (for custom page development). - Ability to troubleshoot, identify and resolve issues related to OIG/OAM in Prod, non-prod environments. - Strong understanding of SQL queries - ability to write custom queries to support custom functionalities, create reports, resolve any issues with existing SQL objects. - Experience with BI Publisher reports creation/updates/migration/maintenance. - Ability to manage multiple deliverables simultaneously, without impacting deadlines. It is critical for you to be a highly motivated contributor who can track items to completion without constant reminders. - Experience with LDAP directories (like OID, AD, etc.) and LDAP queries, and an ability to troubleshoot & resolve any issues (data or otherwise). - Experience with BI Publisher reports creation/updates/migration/maintenance. - Strong analytical, written, and verbal communication skills with the ability and comfort level to conduct presentations for existing customer audiences. Additional Qualifications: - Upgrade experience from FMW 12c to 14c - Knowledge of WebAuthn / FIDO2, device-level signaling, and other relevant Zero Trust identity functions. - Relevant identity and access management certifications (e.g., CIAM, CIGE, etc.). - Hands-on implementation experience with Oracle Access Manager (OAM) 12c - incl. WebGate config/deployment and SAML, OIDC, OAUTH protocols. - Experience in addressing audit requirements - specifically related to Certifications, user operations, access grants, request approvals, etc. - Knowledge of Splunk, including the ability to independently investigate any logs for relevant issues. .Location: Remote Clearance: Ability to pass CMS background check and meet the residency requirement for having resided in the US at least (3) three out of the last (5) five years. What GDIT Can Offer You: - Full-flex work week to own your priorities at work and at home, with core work hours Monday - Friday 9:00 AM ET - 3:00 PM ET - 401K with company match - Comprehensive health and wellness packages - Internal mobility team dedicated to helping you own your career - Professional growth opportunities including paid education and certifications - Cutting-edge technology you can learn from - Rest and recharge with paid vacation and holidays - Challenging work that makes a real impact on the world around you - Remote work #GDITFedHealthJobs The likely salary range for this position is $112,840 - $146,050. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Scheduled Weekly Hours: 40 Travel Required: Less than 10% Telecommuting Options: Remote Work Location: Any Location / Remote Additional Work Locations: Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee's date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most. We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology. Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Worldwide
$112.8K - $146.1K / year
Exerizon logo

Senior QA Engineer

Exerizon

A fair warning: This is not a comfortable role to coast through. Most of this work involves intense thinking on hard problems, rapidly learning new business contexts, taking responsibility for recommendations, and delivering tangible results in an environment where the client expects value from day one. It's not for everyone. But if you recognize yourself in this description — please take a chance to apply.

Engineer6 days ago

Role Description Stanowisko związane jest z trwającym wdrożeniem nowego systemu w firmie ubezpieczeniowej i obejmuje m.in. - Opracowanie scenariuszy testowych i kryteriów akceptacji. - Współpraca z interesariuszami biznesowymi przy przeglądzie, przebudowie i tworzeniu scenariuszy testowych (pair-testing) — zarówno regresyjnych, jak i dla nowych funkcjonalności. - Walidacja danych i kalkulacji. Weryfikacja poprawności wyliczeń w nowym systemie w oparciu o zanonimizowane dane produkcyjne (weryfikacja SQL, opracowanie skryptów rekoncyliacyjnych). - Automatyzacja testów. Projektowanie scenariuszy w sposób umożliwiający ich automatyzację oraz samodzielne wdrażanie testów automatycznych, przy kluczowym wsparciu narzędzi AI. Budowanie i utrzymanie zestawów testów regresyjnych wspierających ciągłą walidację systemu. - Zarządzanie testami i raportowanie. Prowadzenie test managementu w środowisku Jira (Xray/Zephyr), zapewnienie traceability do wymagań oraz bieżące raportowanie pokrycia testowego i postępów prac. Qualifications - 5+ lat w QA, w tym prowadzenie planów i strategii testów na projektach wdrożeniowych lub utrzymaniowych. - Testowałaś/testowałeś systemy, które liczą: kalkulacje, rozliczenia, ETL, raporty finansowe. - SQL na poziomie zaawansowanym. - Test management w Jira (Xray, Zephyr lub podobne). - Swobodna współpraca z analitykami biznesowymi i biznesem przy testach UAT. - Bierzesz odpowiedzialność za delivery. - Polski w mowie i piśmie. Requirements - Doświadczenie na platformach ICM/SPM (Incentive Compensation Management / Sales Performance Management) lub w systemach wyliczających prowizje i wynagrodzenia zmienne. - Znajomość pojęć z domeny prowizj w ubezpieczeniach: plany prowizyjne, sieć agencka, clawbacki, APE, i inne. Benefits - Full Remote: Pracuj z dowolnego miejsca w Polsce. - Kultura Seniority: Praca w gronie ekspertów z doświadczeniem w największych firmach doradczych i technologicznych. - Ciekawy projekt: Uczestnicz w złożonym projekcie dla dużej instytucji ubezpieczeniowej. - Atrakcyjne wynagrodzenie: W Exerizon cenimy konkretne rezultaty, dlatego nasze stawki odzwierciedlają najwyższy rynkowy standard.

Poland
PLN18K - PLN24K / month

Role Description Chelsea Avondale is looking for a Reliability Engineer with a background in infrastructure system engineering to support the growth of a secure, dynamic, and scalable IT environment across the group. The Reliability Engineer will play a crucial role in ensuring the reliability, scalability, and performance of our systems, enabling the continuous delivery of our products and services. They will be accountable for ensuring overall availability, as well as enhancing Engineering teams’ capability to design, build and operate robust systems at scale. This position is ideal for candidates who have an extraordinary sense of responsibility and are not afraid to roll up their sleeves. Our IT environment is not toolkit rich. We take pride in maintaining a fundamental stack of technologies, much of it in Python, and we are looking for someone who shares this mentality. If you thrive in a high-performance culture and are eager for work that is both challenging and constantly evolving, this role is perfect for you. We strongly encourage and help our team members to improve and enhance their personal skill sets within our organization. On your journey with us, you will have the ability to learn and grow rapidly, taking on more responsibilities. Responsibilities - Play an integral role in the design, implementation & maintenance of AWS cloud server environments. - Design, implement, and maintain robust monitoring and alerting systems in Python to detect and respond to incidents in a timely manner. - Collaborate with cross-functional teams to enhance reliability of our systems and services. - Design, configure, deploy, and maintain infrastructure on AWS using best practices and industry standards. - Conduct post-incident analysis to identify root causes, implement corrective actions, and prevent similar issues in the future. - Assist in capacity planning & optimize services to provide scalable, stable, & secure systems. - Implement high availability and disaster recovery solutions to provide data redundancy, resilience, and data loss prevention. - Assist with the implementation of select network engineering solutions including firewalls, load balancing, VPNs & LANs, where necessary. Qualifications - Bachelor’s degree in Computer Science, Computer Engineering, Electrical Engineering, or related field. - 1+ years of experience as a Reliability Engineer or similar role, with a focus on maintaining high-performance, scalable, and reliable web systems. - Highly motivated new grads are encouraged to apply. - Hands-on experience with AWS cloud environments – instances, CloudWatch, EFS, etc. - Proficiency in Python is a must. - Experience using NGINX for reverse proxy, load balancing, and caching. - Experience with Unix / Windows server configuration, administration, performance tuning and troubleshooting. - Working knowledge of web technologies (web servers, DNS, SSL, Browsers). - Working knowledge of web development processes (source control, deployment, etc.). - Experience load testing, pen testing, and providing security for cloud resources is beneficial. Benefits - Skynet Software welcomes and encourages applications from people with disabilities. - Accommodations are available on request for candidates taking part in all aspects of the selection process.

Canada