Lead IGA Solutions Engineer; remote
Louisville, Jefferson County, Kentucky, 40201, USA
Listed on 2026-06-22
-
IT/Tech
Systems Engineer, Cybersecurity
Become a part of our caring community. Selected candidate must reside within 60 minutes commute to one of the following cities or be willing to relocate:
Louisville KY; NYC Metro;
Dallas Metro;
Charlotte NC Metro;
South Florida (Tampa/Miami/Fort Lauderdale);
Washington DC metro;
Chicago;
Boston;
Atlanta;
Nashville.
The Lead IGA Solutions Engineer is the senior technical execution owner responsible for designing, implementing, and sustaining Identity Governance & Administration (IGA) solutions across the organization. Working closely with the Lead IGA Solutions Architect, this role translates architectural strategy, reference designs, and governance models into scalable, supportable, and operational IGA implementations—primarily within SailPoint Identity Security Cloud (ISC).
Responsibilities- Translate enterprise IGA architecture into reliable, scalable, and operationally sound solutions while providing technical leadership across delivery, platform operations, and engineering maturity.
- Own the IGA solution delivery and platform execution in partnership with the Lead IGA Solutions Architect.
- Ensure engineering solutions align with enterprise architecture, standards, and reference patterns.
- Lead implementation of identity lifecycle and governance capabilities (joiner/mover/leaver workflows, birthright access, certifications, access requests, RBAC/ABAC, separation‑of‑duties controls).
- Translate regulatory, audit, and risk requirements into enforceable technical controls.
- Lead engineering for integrations across HR systems, directories, cloud platforms, and enterprise applications.
- Own platform reliability, technical health, automation, and engineering standards (deployment, version control, change management).
- Partner with cross‑functional teams to align design, delivery, and roadmap priorities across IGA initiatives.
- Mentor and coach engineers on implementation standards, integration practices, and operational excellence.
- SailPoint Certified Identity Now Engineer certification.
- 5+ years of hands‑on experience in identity engineering, security engineering, or software solution delivery.
- Strong hands‑on experience with SailPoint Identity Security Cloud (ISC), including lifecycle workflows, access governance, and integrations.
- Proven experience engineering system and application integrations using APIs, SCIM, and enterprise data flows.
- Demonstrated ability as technical owner for a platform or domain, with accountability for delivery quality and operational outcomes.
- Experience developing automation, scripts, or tooling to support identity onboarding, migrations, or operational processes.
- Proficiency with version control and structured deployment or release workflows.
- Strong independent problem‑solving capability with minimal oversight.
- Excellent written and verbal communication skills.
- Advanced SailPoint ISC experience, including custom connectors, complex workflows, and policy‑driven access models.
- Experience implementing RBAC, ABAC, birthright access policies, certifications, and separation‑of‑duties controls at enterprise scale.
- Background integrating IGA platforms with HR systems, ERP platforms, SaaS applications, and cloud environments (Azure, AWS, GCP).
- Familiarity with identity standards and protocols (SAML, OAuth, OIDC, SCIM, REST APIs, event‑driven architectures).
- Experience supporting IGA platforms in regulated environments (SOX, HIPAA, PCI, ISO, NIST).
- Exposure to Dev Ops or platform engineering practices relevant to identity systems.
- Professional certifications such as CISSP, CISM, cloud security certifications, or advanced SailPoint certifications.
- Demonstrated ability to influence engineering practices and lead technical outcomes across teams.
- Must provide a high‑speed DSL or cable modem for a home office.
- California residents will receive internet expense reimbursement for home‑office DSL/cable modem.
- Minimum standard speed for optimal performance: 25
Mbps download ×10
Mbps upload. - Satellite and wireless Internet service is NOT allowed.
- A dedicated space lacking interruptions to protect PHI / HIPAA information.
While this is a…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).