Lead IAM Engineer
Job Description – IAM Engineering Lead
Role Overview
The IAM Engineering Lead is responsible for providing hands-on technical leadership across enterprise Identity and Access Management (IAM) platforms. This role leads the design, build, integration, and operational stability of IAM solutions while acting as a senior technical escalation point (L3) for complex engineering issues.
The role works closely with IAM Operations, Security Architecture, GRC, HR, and application teams to deliver secure, scalable, and compliant identity services across on‑prem, cloud, and SaaS environments.
Key Responsibilities – IAM Engineering Leadership
Provide hands-on technical leadership for IAM platforms, including design, development, configuration, and production support.
Act as the L3 escalation point for complex IAM engineering and platform issues.
Perform technical design reviews, solution validation, and engineering decision-making.
Mentor and guide IAM engineers through code reviews, design walkthroughs, and knowledge sharing.
Identity Platforms & Engineering
Engineer and support Active Directory and Azure AD / Entra ID services.
Design, implement, and support Identity Governance & Administration (IGA) platforms such as SailPoint or equivalent.
Lead application onboarding and integration into IAM platforms using secure patterns.
Implement and optimize Joiner–Mover–Leaver (JML) workflows, RBAC models, and access policies.
Architecture, Design & Standards
Define and implement IAM engineering standards, patterns, and best practices.
Contribute to IAM architecture blueprints and target-state designs in collaboration with Security Architecture teams.
Ensure solutions align with Zero Trust, least privilege, and compliance requirements.
Create and maintain technical documentation, design artifacts, SOPs, and runbooks.
Operational Excellence & Stability
Ensure reliability, performance, and scalability of IAM platforms.
Support production operations including incident response, root cause analysis, and remediation.
Partner with IAM Operations teams to improve automation and reduce manual effort.
Drive continuous improvement initiatives and technical debt reduction.
Delivery & Stakeholder Collaboration
Work with application owners, platform teams, and business stakeholders to translate requirements into IAM solutions.
Support Agile and DevOps delivery models, including sprint planning and execution.
Provide technical inputs on IAM risks, dependencies, and roadmap initiatives.
Required Skills & Experience
5–8 years of experience in IAM engineering, identity platforms, or access security.
Strong hands-on expertise with Active Directory and Azure AD / Entra ID.
In-depth understanding of IAM protocols including SAML, OAuth 2.0, OpenID Connect, and SCIM.
Experience with identity lifecycle workflows (Joiner–Mover–Leaver).
Working knowledge of scripting and automation using PowerShell or REST APIs.
Preferred Qualifications
Experience with IGA platforms such as SailPoint, Saviynt, or One Identity.
Exposure to PAM, EPM, or strong authentication solutions.
Experience working in regulated environments such as healthcare or financial services.
Relevant IAM or cloud security certifications.
Behavioral & Leadership Competencies
Strong technical judgment and analytical problem-solving skills.
Ability to lead by influence without formal people-management responsibility.
Clear and effective communication with technical and non-technical stakeholders.
Ownership mindset with focus on engineering quality, resilience, and scalability.