×
Register Here to Apply for Jobs or Post Jobs. X

Sailpoint IDN Engineer - Hybrid in Plano, TX

Job in Plano, Collin County, Texas, 75086, USA
Listing for: NTT America, Inc.
Full Time position
Listed on 2026-07-28
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Salary/Wage Range or Industry Benchmark: 89300 - 124000 USD Yearly USD 89300.00 124000.00 YEAR
Job Description & How to Apply Below

Req : 373979

NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward‑thinking organization, apply now.

We are currently seeking a SailPoint IDN Engineer - Hybrid in Plano, TX to join our team in Plano, Texas (US-TX), United States (US).

Eligibility & Requirements
  • Must be a US citizen or Green card holder to proceed with applying.
  • Must be willing to work in a hybrid setting (2-3 days in the office) in Plano, TX.
  • Pay transparency details are available in the compensation section below.

This SailPoint‑Focused L3 Senior User Provisioning Engineer is a technical leader for identity lifecycle, entitlement engineering, and privileged access across enterprise IGA/PAM and cloud identity platforms. This role owns complex SailPoint and Cyber Ark integrations, designs Entra  flows, manages PKI and certificate automation, and drives reliability, auditability, and automation across provisioning processes. The L3 engineer resolves escalated incidents, leads root‑cause remediation, and mentors L2/L1 staff.

Key Responsibilities
  • Technical ownership of user lifecycle and entitlement engineering across Active Directory, Entra , SaaS apps, and custom systems.
  • SailPoint IGA leadership: design, implement, and tune connectors, provisioning policies, role engineering, reconciliation, and certification campaigns.
  • Cyber Ark PAM stewardship: onboard targets, manage vault policies, implement credential rotation, and support privileged session controls.
  • PKI and certificate lifecycle: architect and operate certificate issuance, renewal, revocation, and automation for service identities and TLS endpoints.
  • Cloud identity engineering: design Entra l access, cross‑tenant syncs, and entitlement models; coordinate with AWS/GCP IAM as needed.
  • Automation and infrastructure as code: develop and maintain SCIM/SAML/OIDC connectors, Power Shell/Python scripts, and Terraform/IaC for repeatable provisioning patterns.
  • Incident response and RCA: lead Tier‑3 troubleshooting for provisioning failures, perform root‑cause analysis, implement permanent fixes, and reduce recurrence.
  • Governance and audit readiness: lead access reviews, entitlement remediation, evidence collection, and support external/internal audits.
  • Mentorship and documentation: create runbooks, operational playbooks, and train L1/L2 engineers to improve throughput and reduce manual errors.
Required Qualifications
  • 5+ years of hands‑on IAM experience with progressive responsibility in provisioning and identity engineering.
  • Proven, practical experience with SailPoint (IGA) and Cyber Ark (PAM) implementations.
  • Deep operational knowledge of Entra  / Azure AD and identity synchronization patterns.
  • Strong understanding of PKI concepts and hands‑on certificate management.
  • Proficient with identity protocols: SCIM, SAML, OAuth/OIDC, MFA.
  • Advanced scripting and automation skills:
    Power Shell, Python, Bash; experience with Terraform or Cloud Formation.
  • Experience with ITSM/ticketing tools (Service Now, Jira) and SLA management.
  • Demonstrated ability to perform complex troubleshooting and deliver durable engineering fixes.
Preferred Qualifications
  • Experience integrating HR systems (Workday, Success Factors) with IGA.
  • Familiarity with Kubernetes RBAC, secrets management (Vault, Key Vault), and Dev Sec Ops  CI/CD integration.
  • Certifications:

    SailPoint, Cyber Ark, Microsoft Identity/Entra, CISSP, or equivalent.
Soft Skills and Logistics
  • Analytical and detail oriented with strong problem‑solving and RCA discipline.
  • Effective communicator able to influence engineering, security, and business stakeholders.
  • Proven mentor and team player who improves operational maturity.
  • Employment type:

    Full‑time or contract.

    Location:

    Remote / Hybrid / On‑site.

    Reports to:

    IAM Operations or Security Architecture Lead.

Where required by law, NTT DATA provides a reasonable range of compensation for specific roles. The starting pay range for this remote role is $89,300 – $124,000. This range reflects the minimum and maximum target compensation for the position across all US locations. Actual compensation will depend on a number of factors,…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary