Cybersecurity Engineer - IAM/SailPoint
Listed on 2026-02-27
-
IT/Tech
Cybersecurity, Systems Engineer
Join the Net Jets Team
Net Jets, the global private aviation leader for more than 60 years, provides the pinnacle of private travel, defined by a signature commitment to unwavering safety, personalised service, and reliable global access. Discover why Net Jets is the ultimate career destination, offering exceptional benefits and growth opportunities.
Purpose of PositionThe Staff Cybersecurity Engineer is the technical authority responsible for architecting, leading, and scaling Net Jets enterprise SailPoint Identity Now implementation. This role defines the cloud‑based identity governance architecture and drives the adoption of automated, secure identity controls across the organisation. This position combines deep hands‑on expertise with broad technical leadership. The engineer owns IAM architecture decisions, establishes identity standards, and leads complex, cross‑functional initiatives that materially improve Net Jets security posture, compliance readiness, and operational maturity.
Tasksand Responsibilities
- Architect and own the enterprise SailPoint Identity Now solution, including lifecycle management, access requests, access certifications, and policy enforcement.
- Define IAM reference architectures, design patterns, and implementation standards for cloud identity governance.
- Establish and evolve the IAM roadmap in alignment with business objectives, security strategy, and regulatory requirements.
- Lead the end‑to‑end delivery of Identity Now capabilities, from design through implementation and ongoing optimisation.
- Serve as the technical escalation point and subject‑matter expert for SailPoint Identity Now.
- Provide technical guidance to IAM engineers, platform teams, and application owners on identity onboarding and access modelling.
- Drive automation‑first solutions using SailPoint connectors, workflows, APIs, and event‑driven integrations.
- Lead role engineering, access policy definition, and segregation of duties controls.
- Own the design and execution of access certifications, including manager and application owner reviews.
- Partner with GRC and other internal teams to support SOX, PCI DSS, and internal security assessments.
- Oversee integrations with enterprise directories, HR platforms, SaaS applications and custom systems.
- Ensure identity data flows are secure, scalable and resilient across cloud and hybrid environments.
- Collaborate with infrastructure, application and security teams to embed identity governance into enterprise platforms and delivery processes.
- Identify identity‑related risks and recommend architectural or control improvements.
- Monitor platform health, control effectiveness and adoption metrics.
- Evaluate new SailPoint capabilities and identity security trends to continuously mature the IAM programme.
Note:
It is not possible to list all required job duties on this form. There may be other important duties assigned, depending on the position. For a list of essential job functions, please refer to the essential functions document for this job.
Bachelor’s in Cognitive Science or Computer Engineering
Certifications and LicencesCISA, CISSP, GSEC, Security+, CEH
Years of Experience8‑10 years of experience
Core CompetenciesAdaptability, Collaboration, Curiosity, Service‑Oriented, Strives for Positive Results
Knowledge, Skills, Abilities and Other (KSAOS)- 8–10+ years of experience in IAM or cybersecurity engineering, with deep hands‑on expertise in SailPoint Identity Now.
- Strong understanding of cloud‑based identity governance, access certifications, lifecycle automation and role‑based access control.
- Proven experience implementing Identity Now integrations using standard connectors, REST APIs and workflows.
- Experience integrating with enterprise directories (e.g. Active Directory, LDAP) and authoritative identity sources.
- Solid understanding of authentication and federation standards (SAML, OAuth 2.0, OIDC).
- Experience operating IAM platforms in regulated environments (SOX, PCI‑DSS, NIST, HIPAA).
- Experience integrating with single‑sign‑on technologies (e.g. Okta, Microsoft Authenticator).
- Demonstrated Staff Engineer impact: architectural ownership, cross‑functional influence and delivery of…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).