RESPONSIBILITIES:
Kforce has a client that is seeking a SailPoint Security Architect/Engineer in San Antonio, TX.
Summary:
We are seeking a skilled SailPoint Security Architect/Engineer to design, implement, integrate, and support enterprise Identity Governance and Administration (IGA) solutions. This role will be responsible for developing and maintaining SailPoint solutions that support identity lifecycle management, access governance, compliance, and automated provisioning across a complex enterprise environment.
Key Responsibilities:
* Design, architect, configure, and implement SailPoint IdentityIQ and/or IdentityNow solutions
* Develop and manage identity lifecycle processes, including Joiner, Mover, and Leaver (JML) workflows
* Configure and maintain access certifications, role-based access controls, access requests, policies, and approvals
* Integrate SailPoint with enterprise applications, directories, databases, and security platforms
* Develop and support provisioning and deprovisioning workflows
* Build and maintain connectors for systems such as Active Directory, LDAP, databases, APIs, and enterprise applications
* Troubleshoot and resolve complex integration, provisioning, and identity governance issues
* Work with security, application, infrastructure, and business teams to gather requirements and translate them into scalable identity solutions
* Support integrations with other security and identity platforms, such as CyberArk, Active Directory, LDAP, and enterprise IAM systems
* Develop technical documentation, architecture diagrams, and implementation standards
* Participate in upgrades, migrations, performance tuning, and production support
* Ensure solutions align with security, compliance, and enterprise architecture standards
REQUIREMENTS:
* 5+ years of experience in Identity and Access Management (IAM)
* Strong hands-on experience with SailPoint IdentityIQ and/or IdentityNow
* Experience with identity lifecycle management, provisioning, deprovisioning, access requests, and certifications
* Experience integrating SailPoint with enterprise applications and identity sources
* Experience with Java, BeanShell, JavaScript, REST APIs, XML, JSON, and SQL
* Experience with directory services such as Active Directory and LDAP
* Strong understanding of RBAC, least privilege, access governance, and identity security
* Strong troubleshooting and problem-solving skills
* Excellent communication skills and the ability to work with both technical and business stakeholders
Preferred Qualifications:
* SailPoint certifications
* Experience with SailPoint IdentityNow/Identity Security Cloud
* Experience with CyberArk, PAM, or other IAM security platforms
* Experience with cloud platforms such as AWS, Azure, or Google Cloud Platform
* Experience with API-based integrations and modern identity architectures
* Experience in a large enterprise or highly regulated environment
* Experience with IAM data ingestion, identity correlation, aggregation, and reconciliation
For the Architect level, the ideal candidate will additionally have experience with:
* Defining enterprise IAM and IGA architecture and strategy
* Designing scalable SailPoint solutions across complex enterprise environments
* Leading technical architecture and design sessions
* Establishing integration patterns, security standards, and technical roadmaps
* Providing technical leadership to SailPoint engineers and development teams
* Evaluating current-state IAM environments and recommending future-state solutions
* Leading SailPoint implementations, migrations, upgrades, and modernization initiatives
The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.
We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.
Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.
This job is not eligible for bonuses, incentives or commissions.
Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
By clicking ?Apply Today? you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
- Dice Id: kforcecx
- Position Id: ITTND2183473
- Posted 2 days ago