This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Identity & Access Management (IAM) Cybersecurity Engineer is responsible for the design, deployment, integration, and ongoing administration of the organization’s IAM platform, with a primary focus on implementing and managing SailPoint Identity Security Cloud. This role will ensure secure, scalable identity lifecycle management across on-premises and cloud environments, including Microsoft Azure Active Directory and on-premises Active Directory, while supporting future integrations with enterprise systems such as Workday. The ideal candidate combines strong IAM engineering expertise with hands-on experience in SailPoint deployment, identity governance, and enterprise directory services.
Job Responsibility:
Lead the implementation, configuration, and deployment of SailPoint IAM solutions
Design identity governance processes including provisioning, deprovisioning, access requests, certifications, and role-based access control (RBAC)
Integrate SailPoint with enterprise systems (Active Directory, Azure AD, ERP systems, SaaS platforms)
Develop and maintain connectors, workflows, and policies within SailPoint
Administer and support the SailPoint platform post-deployment
Monitor system performance, troubleshoot issues, and implement enhancements
Manage identity lifecycle processes including joiner, mover, and leaver workflows
Conduct periodic access reviews and certifications
Manage and integrate identity systems across on-premises Active Directory and Azure AD / Entra ID
Implement and enforce strong authentication controls (MFA, conditional access)
Support hybrid identity architecture and synchronization strategies
Ensure IAM controls align with security frameworks (e.g., NIST, least privilege, zero trust)
Support audits by providing identity governance reports and evidence
Identify and remediate access risks, orphaned accounts, and privilege creep
Support or lead integration of IAM with Workday for identity lifecycle automation
Collaborate with HR and IT teams to align identity processes with HR-driven events
Assist in designing just-in-time (JIT) provisioning and automated onboarding workflows
Requirements:
Bachelor’s degree in Cybersecurity, Information Systems, or related field (or equivalent experience)
3+ years of experience in Identity & Access Management
Hands-on experience deploying and/or administering SailPoint (IdentityIQ or IdentityNow)
Strong experience with Active Directory (on-premises)
Strong experience with Azure AD / Microsoft Entra ID
Experience with identity lifecycle management and RBAC models
Understanding of authentication protocols (SAML, OAuth, OpenID Connect, LDAP)
Experience with scripting or automation (PowerShell, Java, or similar)
Nice to have:
Experience integrating IAM solutions with Workday ERP/HCM
Familiarity with complex multi-user ecosystems
Experience with identity governance, certification campaigns, and audit support
Knowledge of Zero Trust architecture and modern IAM best practices
Relevant certifications (e.g., SailPoint Certified Engineer, Microsoft Identity certifications)