JD North America - Engineer, Identity Governance & Administration jobs in United States
cer-icon
Apply on Employer Site
company-logo

JD Finish Line · 2 months ago

JD North America - Engineer, Identity Governance & Administration

JD Finish Line is a retail company looking for a hands-on, senior-level Identity Governance & Administration Engineer to design, implement, and manage their identity governance platform. This role requires expertise in SailPoint Identity Security Cloud and involves collaborating with various teams to ensure secure and compliant access governance systems.

ApparelRetail
check
H1B Sponsor Likelynote

Responsibilities

Own the Identity & Access Management (IAM) architecture roadmap with a strong focus on SailPoint ISC, authoritative data sources, and core directory services (Active Directory, Entra ID)
Design and govern identity lifecycle and access governance solutions for employees, contractors, vendors and service accounts
Architect and oversee implementations between IAM platforms and enterprise systems including POS, ERP, e-commerce platforms and cloud workloads
Define and implement robust a RBAC model, automated provisioning/deprovisioning and identity workflows within SailPoint
Provide guidance and architectural support for directory service modernization ensuring security and role modelling across hybrid IT estates
Lead the secure integration of Authentication & Authorization mechanisms (e.g. SAML, OIDC, OAuth2) for internal and customer facing applications
Support audit and compliance initiatives including PCI-DSS, GDP and internal policy enforcement
Evaluate new IAM technologies, tools and capabilities to maintain a forward-looking, strategic identity architecture
Collaborate with business and technical stakeholders to gather requirements and translate them into scalable SailPoint configurations
Integrate SailPoint ISC with enterprise systems and applications (both on-prem and cloud) via out of the box connectors or custom-built connectors
Implement identity governance policies, role models, access reviews and segregation of duties (SoD) controls
Monitor and maintain the health of the SailPoint ISC platform, troubleshoot issues and implement enhancements
Automate provisioning and de-provisioning for user access across multiple systems
Participate in security audits and contribute to compliance efforts by providing evidence and supporting documentation
Stay current with SailPoint updates, new features and industry best practices in identity and access management
Support hybrid environments by integrating Privilege Cloud with on-prem infrastructure and identity sources (e.g. Active Directory)
Collaborate with internal colleagues and teams to maintain optimal configuration, availability and performance
Participate in security reviews and support audit-related activities related to privileged account governance
Provide integration support across ITSM ticket systems, SIEMs and CI/CD pipelines to ensure secure DevOps practices
Perform regular health checks, maintenance and upgrades, and incident resolution for the SailPoint platform
Provide level 2/3 support for SailPoint related issues and alerts
Document architecture, procedures and incident response playbooks
Work with Technology, Security and Application teams to understand access needs across the organization’s systems and cloud environments
After hours support required
Perform other identity Governance tasks as assigned

Qualification

SailPoint Identity Security CloudIdentityAccess ManagementRBAC model implementationIntegration with enterprise systemsSecurity certificationsDirectory services knowledgeScripting languagesProblem-solving skillsCommunication skillsAttention to detail

Required

SailPoint certification (e.g. SailPoint IdentityNow Engineer or Architect)
Proven experience within Identity and Access Management, with significant hands-on experience with SailPoint (preferably ISC)
Strong understanding of identity lifecycle management, JML, RBAC/ABAC/PBAC, access certification and provisioning
Experience with SailPoint features such as: IdentityNow configuration and deployment, Custom connector development, REST APIs and web services, Rules, roles, policies and workflows in SailPoint ISC
Familiarity with directory services (AD, Entra ID), HR systems and enterprise applications
Solid understanding of Windows/Linux systems, and cloud platforms (AWS, Azure, GCP)
Proficient in scripting and development languages such as PowerShell, Java or Python and experienced at utilizing SailPoint's own REST APIs
Excellent problem-solving skills and attention to detail
Strong written and verbal communication and collaboration skills
Detail-oriented with a strong security mindset and ability to think proactively

Preferred

Background in broader IAM concepts such as PAM, SSO, or MFA
Security certifications such as CISSP, CISM or CCSP are a plus
Knowledge of security frameworks, regulatory requirements and compliance standards (e.g. NIST, PCI DSS, GDPR)
Technical Exposure: Directory services (Active Directory, Entra ID/Azure AD), Authentication protocols: SAML, OAuth2, OIDC, Privileged Access Management (PAM) and Single Sign-On (SSO), Hybrid and cloud environments (Azure, AWS), Security frameworks: NIST, PCI-DSS, GDPR compliance
Soft Skills: Strategic mindset (roadmap ownership), Strong cross-team communication, Ability to operate under pressure in a fast-paced retail environment, Willingness to provide after-hours support

Company

JD Finish Line

company-logo
We are JD Finish Line, a premium retailer providing the latest and most exclusive athletic sneakers, apparel and accessories since 1976.

H1B Sponsorship

JD Finish Line has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (5)
2024 (3)
2023 (4)
2022 (3)
2021 (5)
2020 (2)

Funding

Current Stage
Public Company
Total Funding
unknown
2018-03-26Acquired
1992-06-21IPO

Leadership Team

leader-logo
Michael Grimes
Senior Vice President, Chief Marketing Officer JD NORTH AMERICA
linkedin
leader-logo
Adela Zyniak
Talent Acquisition Partner
linkedin
Company data provided by crunchbase