Lead Saviynt Engineer
Listed on 2026-06-18
-
IT/Tech
Cybersecurity
Job Description
The Lead Saviynt Engineer will own and evolve our Saviynt Enterprise Identity Cloud (EIC) platform, which is the centerpiece of our Identity Governance and Administration program. This role is responsible for supporting day-to-day operations of the Saviynt IGA system and driving enhancements, including managing entitlements, configuring security systems & connectors, setting up endpoints for target systems, and enforcing segregation of duties (SoD) policies.
As a lead, the engineer will guide the IAM team in implementing new capabilities, integrating applications (on‑premises and cloud such as Entra /Azure AD, AWS, GCP), and ensuring the platform meets compliance requirements like SOX.
Team
Collaboration:
Works with the technical IAM team and coordinates with Business Analysts and project managers on identity projects. Works with application owners, database administrators, and IT teams across the enterprise to onboard systems into Saviynt. Frequently collaborates with the Security Compliance/Audit team to support access certification campaigns and SoD controls, and with IT service teams (e.g., HR systems, Service Now team) to integrate identity workflows.
- Saviynt Platform Ownership:
Serve as the primary Architect and Engineer for the Saviynt EIC platform. Manage global configuration settings, identity repositories, and platform upgrades/patches to ensure Saviynt is running optimally and securely. Monitor system health, job queues, and workflows, addressing any issues or performance bottlenecks. - Connector & Integration Management:
Configure and maintain Saviynt connectors and endpoints for various systems: e.g., Active Directory (on‑prem AD), Entra (Azure AD), SaaS applications, databases, and cloud infrastructure (AWS, GCP). Ensure that accounts and entitlements from these systems are being imported and provisioned correctly. Develop new connectors or scripts (using REST APIs or JDBC) for any custom integrations required. Oversee integration with Service Now for access request workflows. - Entitlement Management & SoD:
Define and manage entitlement catalogs and role definitions within Saviynt for applications. Implement Segregation of Duties (SoD) policies and preventative controls in the platform – e.g., set up SoD rules and risk matrices so that access requests and role assignments trigger appropriate SOD conflict checks. Work with business owners to configure certification campaigns and automated access reviews aligning with regulatory requirements (such as periodic SOX user access reviews). - Project Leadership & Enhancements:
Lead Saviynt‑related projects and enhancements (e.g., onboarding new applications, enabling new features like identity analytics or mobile access). Gather requirements from stakeholders and design solutions using Saviynt’s capabilities (e.g., build dynamic roles, create custom workflows, implement identity triggers). For instance, spearhead upcoming integrations for cloud platforms – building connectors for AWS and GCP accounts to manage their lifecycle through Saviynt.
Ensure changes are tested (UAT) and follow change management processes before production rollout. - Compliance & Audit Support:
Oversee the execution of access certification campaigns and onboarding of high‑risk applications to meet compliance needs. Provide technical support during internal and external audits – generating reports on user access, SoD violations, and remediation status from Saviynt. Implement controls and remediation in the Saviynt system as audit findings demand and ensure the platform’s security configuration aligns with industry best practices and SOX controls. - Team Leadership & Knowledge Sharing:
Guide and mentor a small team of IAM engineers working with the Saviynt platform. Establish best practices for configuration management, development (promotion of changes across Dev/UAT/Prod), and incident response for identity services. Document key configurations and train backup personnel to administer Saviynt. Coordinate with the Saviynt vendor support for complex issue resolution and stay updated on new EIC features and releases.
We are a company committed…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).