Principal Cybersecurity Engineer
Job Summary
The Principal Engineer, Identity & Access Management (IAM) is responsible for the design, development, implementation, and optimization of SailPoint IdentityIQ/Identity Security solutions across the enterprise. This role serves as a technical leader for IAM initiatives, partnering with cybersecurity, infrastructure, application, and governance teams to deliver scalable identity governance and access management capabilities while ensuring compliance and security standards.
Essential Functions
Technical Leadership
- Lead architecture reviews, solution design, and technical planning for SailPoint IdentityIQ initiatives.
- Define IAM engineering standards, best practices, and governance controls.
- Provide technical leadership and mentorship to engineers and developers.
SailPoint Engineering & Development
- Design, develop, and maintain SailPoint IdentityIQ solutions.
- Build and support custom connectors, workflows, rules, and integrations using Java, BeanShell, REST APIs, and SailPoint frameworks.
- Integrate SailPoint with Active Directory, Azure AD/Entra ID, HR systems, ServiceNow, CyberArk, databases, and enterprise applications.
- Implement lifecycle management processes including Joiner, Mover, and Leaver workflows.
Identity Governance
- Implement and enhance role-based access control (RBAC).
- Support access certification, segregation of duties (SoD), policy enforcement, and compliance initiatives.
- Ensure effective governance over privileged and non-privileged identities.
Platform Operations
- Lead platform upgrades, performance tuning, and capacity planning activities.
- Troubleshoot complex provisioning, aggregation, and connector-related issues.
- Ensure platform availability, stability, and operational excellence.
Stakeholder Collaboration
- Partner with Security, Infrastructure, Compliance, Audit, and Application teams to define IAM requirements.
- Translate business requirements into scalable IAM solutions.
- Contribute to cybersecurity and identity transformation initiatives.
Required Qualifications
- Bachelor's degree in Computer Science, Information Systems, Engineering, or related field.
- 8+ years of IAM experience with at least 5 years focused on SailPoint IdentityIQ or Identity Security Cloud.
- Strong experience with:
- SailPoint IdentityIQ Architecture
- Java and BeanShell Development
- REST APIs and Web Services
- Active Directory / LDAP
- SQL and Database Integrations
- Access Certifications and Role Management
- RBAC and SoD Controls
- ServiceNow Integrations
- Experience leading technical designs and enterprise-scale IAM implementations.
Preferred Qualifications
- Healthcare industry experience.
- Experience with CyberArk, BeyondTrust, Entra ID, Okta, or other IAM/PAM technologies.
- Cloud IAM experience (Azure/AWS/GCP).
- CISSP, SailPoint Certified Engineer, Security+, or equivalent certifications.
- Experience supporting audit and regulatory requirements.
Knowledge, Skills & Abilities
- Deep understanding of Identity Governance and Administration (IGA).
- Strong troubleshooting and problem-solving skills.
- Excellent stakeholder management and communication abilities.
- Experience driving strategic IAM roadmaps and modernization initiatives.
- Ability to lead cross-functional technical teams and influence architecture decisions.
Principal Engineer Competencies
- Enterprise-wide technical leadership.
- Architecture and design authority.
- Mentoring and capability development.
- Strategic technology planning.
- Continuous improvement and innovation mindset.