CrawlJobs Logo

Senior IGA Engineer

citizensbank.com Logo

Citizens Bank

Location Icon

Location:
United States , Plano

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

114000.00 - 152000.00 USD / Year

Job Description:

Senior IGA Engineer IAM Role Summary: We are seeking a highly motivated, self starting Senior IGA Engineer to design, build, and support Identity Governance and Administration solutions with a strong emphasis on privileged access controls and automation. This role is hands on and delivery focused, partnering closely with security, infrastructure, and application teams to implement scalable and secure IGA capabilities. The Senior IGA Engineer will lead technical execution, contribute to standards and best practices, and mentor others, but will not be accountable for enterprise wide IAM architecture ownership.

Job Responsibility:

  • Design, implement, and support IGA and privileged access management solutions in alignment with established security standards
  • Lead technical execution of IGA initiatives, including onboarding applications, workflows, certifications, and access controls
  • Contribute to the definition and improvement of standards, processes, and documentation supporting IAM and IGA solutions
  • Identify and implement opportunities for automation across identity lifecycle and access governance processes
  • Build and enhance IGA environments, including greenfield or expansion implementations
  • Collaborate with security architecture, engineering, and operations teams to ensure solutions integrate cleanly across platforms
  • Provide technical guidance and knowledge sharing with peers and junior engineers
  • Troubleshoot complex identity, access, and integration issues across platforms and environments
  • Effectively manage multiple priorities in a fast paced and evolving environment

Requirements:

  • Strong systems engineering experience with emphasis on IGA, IDM, BPM, workflow, and process engineering
  • Experience supporting cloud based and hybrid deployments including AWS and Azure
  • Seven or more years of hands on experience with one or more IGA platforms such as SailPoint, Saviynt, ForgeRock IDM, Okta IGA, Omada, Entra ID, or similar tools
  • Strong understanding of Active Directory and Entra ID identity and access models
  • Hands on development experience with Java and JavaScript
  • Experience with CI CD pipelines and source controlled code deployments
  • Strong Bash or shell scripting skills
  • Experience integrating systems via APIs, including building custom integrations using Spring Boot or Node.js
  • Strong foundation in Linux and Windows systems administration
  • Experience working with relational databases, with strong preference for PostgreSQL
  • Ability to debug complex issues, analyze logs, and resolve production incidents efficiently
  • Intermediate to advanced PowerShell experience, with PowerShell 7 preferred
  • Strong communication skills with the ability to explain technical concepts clearly
  • Proven ability to balance competing priorities and meet deadlines in a dynamic environment
  • Bachelor’s degree required in a related technical field

Nice to have:

  • Master’s degree preferred
  • Cloud or IAM related certifications preferred
What we offer:
  • comprehensive medical, dental, and vision coverage
  • retirement benefits
  • maternity and paternity leave
  • flexible work arrangements
  • education reimbursement
  • wellness programs
  • Citizens paid time off exceeds local and state requirements
  • eligibility for an annual discretionary bonus

Additional Information:

Job Posted:
April 11, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Senior IGA Engineer

Senior Security Engineer, Sailpoint Development Lead - IAM

We are seeking an experienced and motivated Sr. Engineer to lead the Sailpoint d...
Location
Location
United States , Bethesda
Salary
Salary:
108300.00 - 176300.00 USD / Year
https://www.marriott.com Logo
Marriott Bonvoy
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science, information systems, cybersecurity or a related field or equivalent experience/certification
  • 7+ years of progressive Information Technology/Information Security experience in engineering and development of IGA features & Application integration including at least 4 years of experience in SailPoint IIQ Implementation, Configuration, Customization, and deployment in an enterprise environment
  • 4 + years of experience in technologies such as Java, JavaScript, JSON, XML, Python and REST development
  • 4 + years of experience in writing and troubleshooting rules, workflows, custom connectors
  • 4 + years of developing/understanding of requirements, design, implementation, integration, testing
  • 2+ years’ experience working in agile methodologies
Job Responsibility
Job Responsibility
  • Makes decisions on the architecture and design of software projects, validating that the system design meets scalability, reliability, and performance requirements
  • Provides technical direction, mentoring, and support to team members
  • Solves complex technical issues and functions as an escalation for the team in problem-solving
  • Leads code reviews to ensure high-quality, maintainable, and efficient code
  • Establishes and ensures compliance with coding standards
  • Exercises strong interpersonal/relationship/communication skills, with the ability to convey technical concepts to non-technical stakeholders
  • Contributes to the codebase, particularly for critical or complex components
  • Participates in project planning, including estimation of tasks, defining milestones, and ensuring realistic timelines
  • Assigns tasks to team members based on their skills and project requirements
  • Monitors progress and adjusting plans as necessary
What we offer
What we offer
  • Bonus program
  • Comprehensive health care benefits
  • 401(k) plan with up to 5% company match
  • Employee stock purchase plan at 15% discount
  • Accrued paid time off (including sick leave where applicable)
  • Life insurance
  • Group disability insurance
  • Travel discounts
  • Adoption assistance
  • Paid parental leave
  • Fulltime
Read More
Arrow Right

Senior System Security and Information Assurance Engineer

The Senior PAM Engineer will play a critical role within Line of Effort 2, respo...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD Top Secret clearance with SCI eligibility
  • Master’s degree (MA/MS) in Cybersecurity, Information Technology, Computer Science, Engineering, or related field
  • 10+ years of professional experience in cybersecurity, systems engineering, or information assurance
  • Meets Cyber Engineer – Senior labor category requirements, including independent execution of all functional duties and support to mission-critical program elements
  • DoD 8570 IAT Level II certification or higher (e.g., Security+ CE, CCNA Security)
  • Deep expertise in Privileged Access Management (PAM) architectures and Zero Standing Privilege concepts
  • Hands-on experience implementing Just-In-Time (JIT) access workflows
  • Experience integrating PAM solutions with Active Directory, SIEM platforms (Splunk), and Identity Governance (IGA) tools
  • Experience producing technical documentation to support RMF and ATO processes (LLDs, SSPs, SOPs)
  • Ability to lead or oversee the efforts of less senior staff as required by program needs
Job Responsibility
Job Responsibility
  • Lead the installation, configuration, and technical implementation of an enterprise Privileged Access Management (PAM) solution (Delinea-focused) across multiple network enclaves
  • Discover, inventory, and onboard privileged user, administrator, and service accounts into a secure credential vault
  • Design and enforce policies for Just-In-Time (JIT) access, session monitoring, and session recording to achieve zero standing privileges
  • Develop scripts and API-based integrations between the PAM solution, Splunk SIEM, and Identity Governance (IGA) platforms
  • Support RMF accreditation activities by developing Low-Level Design (LLD) documents, System Security Plans (SSPs), and Standard Operating Procedures (SOPs)
  • Support Authority to Operate (ATO) efforts through security control implementation and technical validation
  • Lead enterprise rollout of PAM policies from pilot groups to full operational enforcement
  • Collaborate with Zero Trust architects, identity teams, and cyber engineers to ensure alignment with enterprise security architecture
Read More
Arrow Right

Senior System Information Assurance and Security Engineer

Barbaricum is seeking a highly skilled System Information Assurance and Security...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD TS/SCI Clearance
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field (Master’s preferred)
  • 10+ years of experience in enterprise identity and access management architecture
  • Demonstrated expertise with Zero Trust frameworks and DoD ICAM standards
  • Hands-on experience with SAML, OAuth2.0, OpenID Connect, PKI, and certificate management
  • Experience with DoD enterprise solutions such as Radiant Logic, Okta, Ping Identity, SailPoint, ForgeRock, Microsoft Entra ID (Azure AD), or equivalent
  • Deep knowledge of Privileged Access Management and Identity Governance & Administration solutions
  • Strong understanding of DoD cybersecurity compliance frameworks (RMF, NIST SP 800-53, 800-207, 8140/8570)
  • IAM / DoD Certification IAT Level II (e.g., Security+ CE, SSCP, GSEC)
Job Responsibility
Job Responsibility
  • Execute engineering solutions for identity credential and access management for Zero Trust implementation across enterprise systems
  • Design and maintain an enterprise-wide identity and access management strategy aligned with DoD Zero Trust principles, NIST 800-207, and DoD ICAM Reference Design
  • Lead integration of federated identity, single sign-on (SSO), and multi-factor authentication (MFA) across cloud and on-prem environments
  • Develop and maintain policies, standards, and reference architectures to enforce least-privilege and attribute-based access control (ABAC)
  • Conduct the implementation of Privileged Access Management (PAM) and Identity Governance and Administration (IGA) solutions
  • Collaborate with cybersecurity, network, and cloud teams to align ICAM solutions with Zero Trust pillars (identity, device, network, application, and data)
  • Ensure compliance with DoD 8140/8570, RMF, FedRAMP, and other applicable frameworks
  • Lead proof-of-concepts (POCs) and technology evaluations for emerging identity
Read More
Arrow Right

Senior Engineer – Identity Governance & Administration

Beacon Technologies is seeking a Senior Engineer – Identity Governance & Adminis...
Location
Location
United States , Appleton
Salary
Salary:
Not provided
beacontechinc.com Logo
Beacon Technologies
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Information Systems, or equivalent experience
  • 7+ years in engineering environments delivering complex integrations and software solutions
  • 3+ years hands-on with IGA platforms (preferably Saviynt), including role mining, lifecycle governance, SoD policy design, and campaign configuration
  • Strong proficiency in SQL and scripting (PowerShell/Bash/Python)
  • Experience integrating HRIS (e.g., Workday) and directories (AD/AAD)
Job Responsibility
Job Responsibility
  • Lead engineering of RBAC/ABAC models in Saviynt, including naming conventions, hierarchical role taxonomies, inheritance, and lifecycle controls
  • Translate Segregation of Duties requirements into enforceable Saviynt policies, risk models, and control rules
  • design analytics and alerting to detect violations
  • Define source-of-truth and reconciliation strategies
  • model identity attributes and entitlement relationships to support clean access patterns
  • Architect and document integrations with HRIS (e.g., Workday), directories (AD/AAD), and key SaaS applications using APIs and standardized connectors
  • Build and maintain ETL/ELT pipelines for identity data
  • implement data quality checks and schema evolution strategies
  • Develop scripts (PowerShell/Bash/Python) and Saviynt workflows to automate provisioning, role assignments, certifications, and evidence collection
  • Configure roles, entitlements, policies, approval flows, and campaigns in Saviynt
What we offer
What we offer
  • Career advancement opportunities
  • Extensive training
  • Excellent benefits including paying for health and dental premiums for salaried employees
  • Fulltime
Read More
Arrow Right

IAM Business Analyst

IAM Business Analyst for an initial 6 month contract.
Location
Location
United Kingdom , Cheshire
Salary
Salary:
Not provided
whitehallresources.com Logo
Whitehall Resources Ltd
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Senior Business Analyst with deep expertise in IAM / IGA
  • Strong understanding of IAM governance, control ownership
  • Eligible to work in the specified country/location
Job Responsibility
Job Responsibility
  • Drive end to end delivery and implementation of IAM capabilities
  • Work closely with IAM architects, Product Owners, Engineers and senior stakeholders to gather and validate requirements and define end to end solutions
  • Develop and maintain process flows
  • Support System integration, user adoption and training related to IGA Product uplifts
Read More
Arrow Right

Senior Security Engineer - IAM

As a Senior Security Engineer, you will be responsible for the design and develo...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
uber.com Logo
Uber
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ Years of experience in development, Design and consulting for developing, designing SailPoint IIQ or similar IGA solutions, and Authentication platforms at large organizations
  • Experience with developing complex software systems scaling to millions of users with production quality deployment, monitoring, and reliability
  • Experience with large-scale distributed storage and database systems (SQL e.g. MySQL)
  • Ability to decompose complex business problems and help lead multiple teams in solving them
  • Understand Role-Based Access Control, Policy-Based Access Control, Attribute based access control, Governance, Access Certification in SailPoint
  • Experience in Web and Middleware technologies such as Nginx, Tomcat, Weblogic
  • Skill set in traffic management, Service and Session Load balancing skills primarily on HAProxy, NLB and F5 are added benefits
  • Leveraged tools like Cursor, GitHub Copilots to improve developer productivity
Job Responsibility
Job Responsibility
  • Design and development of Identity and Access Governance systems and microservices responsible for authentication, authorization, and single sign-on app integrations
  • Build new Features, APIs, Rules, Workflows, Analytics, Tasks and Reports for the Information Security org
  • Providing and assisting in defining Identity Security controls, best practices, compliance controls for Uber’s internal workforce and services
  • Identification and adoption of security trends, software engineering best practices defined by Uber engineering
  • Design and Build extensible access governance features, centralized and adaptive access management system, and Risk Models for the organization
  • Provide technical leadership in designing, implementing, testing, and rolling out the Identity platform (e.g. SailPoint IIQ, Cloud Identity, LDAP, MFA, SSO, etc.) at Uber
  • Practice Software engineering best practices while writing or reviewing code
  • Develop high quality engineering design documents for new integrations and initiatives
  • Engineer, Configure, Implement and maintain Identity and Access Management solutions and services
  • Resolve bugs through strong programming, critical problem solving, database query skills
Read More
Arrow Right

Identity Governance and Administration (IGA) Engineer

Barbaricum is seeking an Identity Governance and Administration (IGA) Engineer t...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD Top Secret clearance with SCI eligibility
  • Bachelor’s or Master’s degree in Cybersecurity, Information Technology, Computer Science, or related field
  • 3–10 years of relevant experience (Journeyman) or 10+ years of experience (Senior)
  • Hands-on experience implementing and administering SailPoint identity governance solutions
  • Strong knowledge of Active Directory, LDAP, and Azure Active Directory structures and management
  • Experience implementing Role-Based Access Control (RBAC), Separation of Duties (SoD), and access certification processes
  • Required: CompTIA Security+ CE (DoD 8570 IAT Level II)
Job Responsibility
Job Responsibility
  • Deploy and administer SailPoint IdentityNow or IdentityIQ across enterprise environments
  • Design and automate identity lifecycle processes including Joiner, Mover, and Leaver (JML) workflows
  • Define and manage identity attribute schemas supporting Attribute-Based Access Control (ABAC) models
  • Implement access certification campaigns and governance processes to maintain compliance with audit requirements
  • Develop and maintain role-based and attribute-based access models within SailPoint
  • Integrate SailPoint with Active Directory, Azure Active Directory (Entra ID), and enterprise applications
  • Support synchronization of identity data across classified and unclassified networks
Read More
Arrow Right

Zero Trust IGA Engineer

We are seeking an IGA Engineer to support USSOCOM’s Zero Trust execution efforts...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD Top Secret clearance with SCI eligibility
  • DoD 8570 / 8140 compliant (Security+ CE or higher – IAT Level II)
  • 5+ years of hands-on experience implementing and administering SailPoint (IdentityNow or IdentityIQ) in an enterprise environment
  • Strong understanding of identity lifecycle management (Joiner-Mover-Leaver automation)
  • Experience integrating SailPoint with Active Directory, LDAP, and Microsoft Entra ID
  • Experience implementing access governance concepts, including RBAC, separation of duties (SoD), and access certification
  • Ability to operate independently in complex, mission-critical environments
  • Labor Category Alignment: Journeyman: 3–10 years of experience
  • BA/BS or MA/MS
  • Senior: 10+ years of experience
Job Responsibility
Job Responsibility
  • Design, deploy, and maintain SailPoint IdentityNow or IdentityIQ to automate Joiner-Mover-Leaver (JML) identity lifecycle processes
  • Define and manage identity attributes (e.g., clearance, role, COI, project codes) used to support attribute-based access control (ABAC) models
  • Configure and execute automated access certification campaigns for privileged roles and critical systems
  • Develop and maintain SailPoint role models, including technical and business roles, to replace static group-based access
  • Support identity governance operations across disconnected and air-gapped environments, including Top Secret networks
  • Ensure identity data integrity and synchronization between low-side and high-side environments
  • Collaborate with ICAM, Zero Trust, and integration teams to ensure identity attributes are consumed correctly by downstream enforcement tools
  • Support audit and compliance requirements related to access governance and identity lifecycle management
Read More
Arrow Right