×
Register Here to Apply for Jobs or Post Jobs. X

SailPoint ISC, Active Directory, Azure AD, and Exchange Contractor

Job in Los Angeles, Los Angeles County, California, 90016, USA
Listing for: Kaygen Inc.
Full Time, Contract position
Listed on 2026-08-20
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Specialist, Systems Administrator
Job Description & How to Apply Below
Job Title:

SailPoint ISC, Active Directory, Azure AD, and Exchange Contractor

Location:

Los Angeles, CA Duration: 6 Months Plus

Job Description:

The contractor will manage, implement, and improve the identity and asset ecosystem across the following core platforms:
SailPoint Identity Security Cloud (ISC) and NERM Active Directory (AD) On-Premises Azure Active Directory (Azure AD / Microsoft Entra ) Microsoft Exchange Online / Exchange Server Hybrid Messaging Qualifications :

Experience with SailPoint (or any other Identity Governance and Administration solution) and Microsoft Entra. Experience managing Joiner-Mover-Leaver (JML) processes. Experience troubleshooting provisioning and aggregation failures. Strong understanding of identity lifecycle management and security frameworks. Familiarity with hybrid Exchange environments and Office 365 services. Deep operational expertise with Microsoft Active Directory Services (Forest/Domain architecture, GPO application, trust relationships) and Azure AD/Microsoft Entra .

Hands-on experience administering Microsoft Exchange Online and hybrid Exchange environments, including mailbox management, distribution groups, mail flow, transport rules, delegation, retention, archive, and Power Shell automation. Proven implementation history with SailPoint Identity Security Cloud (ISC) and NERM. Strong capabilities in scripting languages (Power Shell, JavaScript, or Bean Shell) used for building custom enterprise integration paths. Prior work with public sector or large-scale IT operations.

Vendor certification in AD, AAD, SailPoint, Exchange is highly preferred. Exchange Automation and Service Now Integration :
Build or refine Power Shell-based automation and Service Now fulfillment processes for mailbox, group, delegation, and lifecycle requests with appropriate auditability and error handling. Compliance and Retention Coordination :
Support mailbox hold, retention, archive, eDiscovery support, and access review processes in coordination with security, records, and compliance stakeholders. Mailbox Lifecycle Management:
Administer mailbox provisioning, modification, deactivation, shared mailbox conversion, mailbox delegation, and retention-related transitions aligned with identity lifecycle events. Distribution Group and Mail-Enabled Security Group Governance:
Standardize ownership, membership review, naming conventions, and request fulfillment for Microsoft Exchange distribution groups and mail-enabled security groups. Hybrid Exchange Attribute Alignment:
Validate mail attributes, proxy addresses, aliases, target addresses, remote mailbox properties, and directory synchronization dependencies between on-premises AD, Exchange, and Microsoft Entra  Flow and Transport Rule Support:
Troubleshoot delivery issues, connector behavior, allowed/blocked sender configuration, transport exceptions, and rule conflicts that affect business operations. Microsoft Exchange Online / Hybrid Messaging Operational Tasks Automate non-employee identity creation, sponsor tracking, lifecycle transitions, and downstream birthright access provisioning. Support automated onboarding and offboarding processes. Implement workflow enhancements for employee status changes. Monitor and manage the entire SailPoint ISC environment including integrations with Workday, Active Directory, Azure AD, and SailPoint.

Create and update approval workflows and policies. Review and resolve identity lifecycle processing errors. Monitor account aggregation jobs and connector health. Troubleshoot provisioning and deprovisioning failures. Integrate an inbound data feed driven directly by a Service Now Request payload into SailPoint NERM to automate Contractor onboarding. SailPoint ISC Architect, configure, and deploy the native SailPoint Azure AD direct connector to replace or augment legacy synchronization pathways.

Configure secure OAuth 2.0 API integrations via Microsoft Graph API. Establish data aggregation schedules, attribute mappings, and account correlation rules to ensure zero downtime. Azure AD Direct Connector Deployment to SailPoint ISC Health & Directory Maintenance:
Monitor, troubleshoot, and remediate health issues within the on-premises AD environment related to object corruption, duplication, or sync latencies affecting downstream IAM tools. Organizational Unit (OU) & Object Management:
Restructure, cleanup, and standardize OU architecture, managed service accounts (MSAs), and security groups to facilitate accurate automated provisioning. Group Policy Object (GPO) Alignment:
Review and adjust GPOs impacting user provisioning, login scripts, and local profile creation to eliminate conflicts with SailPoint-driven access models. Nested Group Rationalization:
Audit and remediate highly nested security groups causing token bloat or unmapped access privileges during automated SailPoint entitlement aggregations. Sid-History and Schema Attribute Audits:
Remediate legacy security identifier (SID) histories and validate…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary