Cadre5 · 12 hours ago
IAM Engineer
Cadre5 is a company that provides innovative technical solutions and is seeking an Identity Access Management (IAM) Engineer with SailPoint experience. The role involves engineering and administering SailPoint IdentityIQ, automating joiner-mover-leaver processes, and advancing Zero Trust architecture in identity management.
ComputerSoftware
Responsibilities
Engineer/administer SailPoint (IIQ/IDN): configuration, workflows, rules/policies, testing, deployment, maintenance
Onboard applications: connectors for EntraID, SaaS, on-prem, DBs, directories (AD/LDAP), and HRIS (Workday/SuccessFactors)
Automate JML: provisioning/deprovisioning, birthright/role-based access, movers entitlements
Access governance: entitlements, group management, SOD policies, certification campaigns
Role engineering: business/technical roles aligned to least privilege
Platform ops: patching, upgrades, performance tuning, troubleshooting
Customization: rules/workflows/tasks (Java/Beanshell for IIQ), UI config, reporting, dashboards
Implement identity-first controls: MFA, PKI, conditional access, adaptive/risk-based auth
Integrate with CASB and endpoint posture signals
Align with Zero Trust principles (least privilege, continuous verification)
Build APIs/scripts (PowerShell, Python) for IAM workflows
Support CI/CD for IAM configs and environment promotion
Maintain audit evidence; enforce SOD; reduce identity risk through metrics
Qualification
Required
5–8+ years IAM/IGA, 2–4+ years SailPoint engineering/admin (IIQ)
Strong grasp of Zero Trust; identity protocols (OIDC/OAuth2/SAML); AD/LDAP
Scripting: PowerShell, Python; Java/Beanshell (IIQ); REST APIs
Preferred
SailPoint certifications; SC‑300; CISSP; AZ‑500
Experience with Entra ID/Ping, CASB, ServiceNow
Benefits
3 weeks’ vacation
Excellent medical insurance, up to 100% paid by employer
Full medical, dental, and vision coverage coupled with 401K match
15 days PTO
10 holidays