Job Summary
The Senior IAM Operations Engineer is responsible for leading and overseeing the end-to-end identity lifecycle, ensuring secure, efficient, and compliant access across the enterprise. This role involves advanced troubleshooting, platform optimization, stakeholder coordination, and driving improvements in IAM processes, automation, and governance. The Sr. Engineer will act as a subject matter expert (SME) for operational IAM activities and guide junior team members.
Key Responsibilities
1. Identity Lifecycle & Access Operations
- Lead and oversee user provisioning, deprovisioning, access modifications, and role assignments across all systems.
- Ensure accurate enforcement of RBAC, birthright access, and defined access policies.
- Manage complex access requests, approval workflows, and escalations.
- Ensure JML processes run smoothly and within SLAs.
2. Monitoring, Troubleshooting & Platform Stability
- Own monitoring of IAM systems, connectors, jobs, and workflows—identify failures, bottlenecks, and recurring issues.
- Perform root-cause analysis for provisioning failures, job errors, and integration issues.
- Coordinate with application, infra, and security teams to resolve high-impact access issues.
3. Access Governance & Compliance
- Lead access review/certification campaigns, including role cleanup, conflict remediation, and attestation follow-ups.
- Identify and eliminate orphaned, inactive, and non-compliant accounts.
- Prepare audit evidence, manage SOX controls, and support external/internal audits.
- Ensure alignment with regulatory standards and enterprise security frameworks.
4. System Administration & Enhancements
- Maintain and optimize IAM platform configurations: roles, access profiles, rules, policies, workflows, SOD policies.
- Drive automation for repeatable tasks using scripts, APIs, or workflow improvements.
- Support onboarding of new applications, connectors, and integrations.
5. Leadership & Stakeholder Management
- Serve as IAM SME for project teams, audits, escalations, and major incidents.
- Mentor junior team members—provide guidance on troubleshooting, IAM concepts, and platform usage.
- Work closely with HR, Security, Application Owners, and Infra teams to streamline IAM processes.
- Proactively identify gaps in process, security, or tooling and drive improvement initiatives.
Required Skills & Qualifications
- 6+ years of hands-on experience in IAM operations, preferably with tools like Saviynt
- Strong knowledge of identity lifecycle, RBAC, SOX controls, access certifications, and compliance frameworks.
- Ability to write and understand SQL queries, analyze logs, and identify provisioning patterns.
- Understanding of directory services, SSO, MFA, authentication/authorization protocols (SAML, OAuth, SCIM).
- Strong incident management, documentation, and communication skills.
Preferred Skills
- Experience with workflow optimization, automation (PowerShell, Python, API), and connector management.
- Involvement in IAM transformation projects or large-scale migrations.
- Certifications such as Security+, CIAM, Azure/AWS Security, or vendor-specific IAM certifications.