Sr Systems Engineer - IAM
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Location: Chicago, with a hybrid work model. The position is based in the United States and requires eligibility to work in the United States for any employer. Visa sponsorship is not available.
Base pay: $122,000–$149,000 USD per year for Phoenix, AZ and Chicago, IL, plus discretionary incentive eligibility and benefits.
Company
develops payment and financial technology solutions, including Zelle and Paze, while helping financial institutions protect transactions and expand access to financial services.
What you will do
- Own the architecture, configuration, operations, maintenance, and security health of the Saviynt Enterprise Identity Cloud platform.
- Build and manage integrations with Active Directory, Entra ID, Okta, ServiceNow, Workday, SAP, cloud platforms, databases, and REST endpoints.
- Design and automate identity lifecycle processes, including provisioning, deprovisioning, reconciliation, access certification, and attestation campaigns.
- Develop RBAC and ABAC models, segregation-of-duties rules, least-privilege controls, workflows, analytics, and risk reporting.
- Plan and execute manual and automated testing, investigate root causes, and resolve provisioning, entitlement, and integration issues.
- Support audit, compliance, change control, business continuity, technical standards, documentation, and on-call activities while mentoring junior engineers.
Requirements
- Bachelor’s degree in computer science, information technology, cybersecurity, or a related field, or equivalent experience.
- At least 5 years of relevant identity and access management experience, including enterprise IGA platforms in production.
- At least 3 years of hands-on production experience with Saviynt EIC or comparable enterprise IGA technology.
- Deep knowledge of access certification, segregation of duties, RBAC, ABAC, entitlement management, least privilege, authentication, federation, SSO, and MFA.
- Proficiency with Python, PowerShell, SQL, REST APIs, and related integration technologies including JSON, XML, SOAP, and Groovy.
- Must be independently eligible to work in the United States; visa sponsorship is unavailable.
Nice to have
- Experience in financial services, fintech, or another highly regulated industry.
- Saviynt certification or equivalent IGA expertise.
- Experience with SailPoint, Oracle Identity Manager, CyberArk, Delinea, Okta, Azure, AWS, or privileged access management.
- Experience with Active Directory PKI, key management, certificate authorities, Agile or SAFe delivery, and CMMI-aligned processes.
Culture & Benefits
- Hybrid collaboration in a normal office environment with occasional on-call responsibilities.
- Medical, dental, and vision coverage, plus HSA and FSA options.
- 401(k) plan with a 100% company Safe Harbor match on the first 6% of deferrals.
- Flexible time off for exempt employees or PTO for non-exempt employees, plus 11 paid holidays and a paid volunteer day.
- 12 weeks of paid parental leave and family-planning support.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →