We are seeking an experienced IAM Automation Engineer to design, implement, and automate identity lifecycle management processes across enterprise systems. The ideal candidate will have strong experience in identity governance, access provisioning automation, security compliance, and integration of IAM platforms such as Okta, Microsoft Entra ID (Azure AD), and SailPoint.
This role will focus on improving security posture, automating access workflows, and ensuring compliance with regulatory and organizational security policies.
Key Responsibilities
๐น IAM Automation & Identity Lifecycle Management
Design and implement automated user provisioning and deprovisioning workflows.
Develop identity lifecycle automation for joiner, mover, and leaver processes.
Automate role assignments and entitlement management.
Build workflows to reduce manual access management tasks.
๐น IAM Platform Implementation & Integration
Configure and support IAM platforms (Okta, Azure AD, SailPoint, Ping Identity).
Integrate IAM solutions with cloud and on-premise applications.
Implement Single Sign-On (SSO) and federation (SAML, OAuth2, OpenID Connect).
Enable secure authentication across enterprise systems.
๐น Access Governance & Compliance
Implement Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC).
Enforce least-privilege access principles.
Conduct periodic access reviews and certification campaigns.
Ensure compliance with SOX, HIPAA, GDPR, and security policies.
๐น Security & Authentication Controls
Implement Multi-Factor Authentication (MFA) and adaptive authentication.
Integrate LDAP/Active Directory and directory synchronization.
Secure privileged access and administrative accounts.
Monitor authentication events and respond to security risks.
๐น Automation & Scripting
Develop automation scripts using PowerShell, Python, or REST APIs.
Automate access request workflows and approvals.
Integrate IAM with ticketing systems (ServiceNow, Jira).
Build connectors for automated identity provisioning.
๐น Monitoring & Incident Response
Monitor IAM systems for anomalies and unauthorized access.
Troubleshoot authentication and provisioning issues.
Support security incident investigations and remediation.
Required Qualifications
8+ years of experience in Identity & Access Management.
Hands-on experience with IAM platforms such as Okta, Azure AD, SailPoint, or Ping.
Experience implementing SSO, MFA, federation, and directory services.
Strong knowledge of LDAP, Active Directory, and identity federation protocols.
Experience automating IAM workflows using scripting or APIs.
Knowledge of RBAC, least privilege principles, and access governance.
Preferred Qualifications
Experience with Privileged Access Management (PAM) solutions.
Familiarity with cloud platforms such as Amazon Web Services and Microsoft Azure.
Experience integrating IAM with HR systems for identity lifecycle automation.
Security certifications such as CISSP, CISM, or Azure Security Engineer.
Experience with Zero Trust security architecture.
Technical Skills
IAM Tools: Okta, Azure AD, SailPoint, Ping Identity
Protocols: SAML, OAuth2, OpenID Connect, LDAP, SCIM
Automation: PowerShell, Python, REST APIs
Directories: Active Directory, LDAP
Security: MFA, RBAC, PAM, Zero Trust
Cloud: AWS, Azure, Google Cloud
Ticketing & Workflow: ServiceNow, Jira
Soft Skills
Strong analytical and problem-solving abilities
Excellent communication and documentation skills
Ability to work cross-functionally with security, HR, and IT teams
Detail-oriented with strong compliance focus
Typical Projects
IAM onboarding automation using HR system integration
Enterprise SSO & MFA rollout
Privileged access governance implementation
Identity lifecycle automation & compliance reporting