Shoe Palace · 2 months ago
JD North America - Engineer, Identity Governance & Administration
Shoe Palace Corporation is seeking an Identity Governance & Administration (IGA) Engineer to deliver best-in-class design, implementation, and management of their IGA solution in a fast-paced retail environment. The role requires deep expertise in SailPoint Identity Security Cloud and involves working across security, infrastructure, application, and business teams to ensure secure and compliant identity governance systems.
ApparelCustomer ServiceFashionRetailShoes
Responsibilities
Own the Identity & Access Management (IAM) architecture roadmap with a strong focus on SailPoint ISC, authoritative data sources, and core directory services (Active Directory, Entra ID)
Design and govern identity lifecycle and access governance solutions for employees, contractors, vendors and service accounts
Architect and oversee implementations between IAM platforms and enterprise systems including POS, ERP, e-commerce platforms and cloud workloads
Define and implement robust a RBAC model, automated provisioning/deprovisioning and identity workflows within SailPoint
Provide guidance and architectural support for directory service modernization ensuring security and role modelling across hybrid IT estates
Lead the secure integration of Authentication & Authorization mechanisms (e.g. SAML, OIDC, OAuth2) for internal and customer facing applications
Support audit and compliance initiatives including PCI-DSS, GDP and internal policy enforcement
Evaluate new IAM technologies, tools and capabilities to maintain a forward-looking, strategic identity architecture
Collaborate with business and technical stakeholders to gather requirements and translate them into scalable SailPoint configurations
Integrate SailPoint ISC with enterprise systems and applications (both on-prem and cloud) via out of the box connectors or custom-built connectors
Implement identity governance policies, role models, access reviews and segregation of duties (SoD) controls
Monitor and maintain the health of the SailPoint ISC platform, troubleshoot issues and implement enhancements
Automate provisioning and de-provisioning for user access across multiple systems
Participate in security audits and contribute to compliance efforts by providing evidence and supporting documentation
Stay current with SailPoint updates, new features and industry best practices in identity and access management
Support hybrid environments by integrating Privilege Cloud with on-prem infrastructure and identity sources (e.g. Active Directory)
Collaborate with internal colleagues and teams to maintain optimal configuration, availability and performance
Participate in security reviews and support audit-related activities related to privileged account governance
Provide integration support across ITSM ticket systems, SIEMs and CI/CD pipelines to ensure secure DevOps practices
Perform regular health checks, maintenance and upgrades, and incident resolution for the SailPoint platform
Provide level 2/3 support for SailPoint related issues and alerts
Document architecture, procedures and incident response playbooks
Work with Technology, Security and Application teams to understand access needs across the organization’s systems and cloud environments
After hours support required
Perform other identity Governance tasks as assigned
Qualification
Required
SailPoint certification (e.g. SailPoint IdentityNow Engineer or Architect)
Proven experience within Identity and Access Management, with significant hands-on experience with SailPoint (preferably ISC)
Strong understanding of identity lifecycle management, JML, RBAC/ABAC/PBAC, access certification and provisioning
Experience with SailPoint features such as: IdentityNow configuration and deployment, Custom connector development, REST APIs and web services, Rules, roles, policies and workflows in SailPoint ISC
Familiarity with directory services (AD, Entra ID), HR systems and enterprise applications
Solid understanding of Windows/Linux systems, and cloud platforms (AWS, Azure, GCP)
Proficient in scripting and development languages such as PowerShell, Java or Python and experienced at utilizing SailPoint's own REST APIs
Excellent problem-solving skills and attention to detail
Strong written and verbal communication and collaboration skills
Detail-oriented with a strong security mindset and ability to think proactively
Preferred
Background in broader IAM concepts such as PAM, SSO, or MFA
Security certifications such as CISSP, CISM or CCSP are a plus
Knowledge of security frameworks, regulatory requirements and compliance standards (e.g. NIST, PCI DSS, GDPR)
2 year(s): Information Security
2 year(s): Firewall; SonicWall, Ruckus switches, Security Camera Systems
2 year(s): Servers; Windows 2012-2019 Server
2 year(s): Help Desk
Team Player: Works well as a member of a group
Loyal: Shows firm and constant support to a cause
Innovative: Consistently introduces new ideas and demonstrates original thinking
Functional Expert: Considered a thought leader on a subject
Enthusiastic: Shows intense and eager enjoyment and interest
Detail Oriented: Capable of carrying out a given task with all details necessary to get the task done well
Dedicated: Devoted to a task or purpose with loyalty or integrity
Self-Starter: Inspired to perform without outside help
Peer Recognition: Inspired to perform well by the praise of coworkers
Job Security: Inspired to perform well by the knowledge that your job is safe
Growth Opportunities: Inspired to perform well by the chance to take on more responsibility
Goal Completion: Inspired to perform well by the completion of tasks
Entrepreneurial Spirit: Inspired to perform well by an ability to drive new ventures within the business
Ability to Make an Impact: Inspired to perform well by the ability to contribute to the success of a project or the organization
Company
Shoe Palace
Shoe Palace is one of the most-trusted athletic footwear and apparel retail chains in the United States.
Funding
Current Stage
Late StageTotal Funding
unknown2020-12-15Acquired
Recent News
2025-08-29
Seattle TechFlash
2025-08-21
Company data provided by crunchbase