ECS

Identity and Access Management Engineer

ECS$100K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree and 5 years of relevant experience or equivalent job experience
  • Extensive hands-on experience with SailPoint (IdentityIQ or IdentityNow)
  • Strong knowledge of identity lifecycle management and Role-Based Access Control (RBAC)
  • Experience with scripting and automation tools (Python, PowerShell, Bash)
  • Deep understanding of Active Directory, Entra AD, and LDAP systems
  • Excellent problem-solving skills and a proactive approach
  • Strong written and oral communication skills, with ability to work effectively in virtual teams

Responsibilities

  • Implement and configure enterprise SailPoint solutions based on functional specifications
  • Develop custom integrations and modifications for IAM APIs
  • Identify automation opportunities and develop efficient scripting workflows
  • Engineer automated provisioning and de-provisioning services for applications
  • Design and implement Role-Based Access Control models and compliance strategies
  • Support IAM environments through performance tuning and troubleshooting
  • Generate metrics and reporting on identity health and compliance

Benefits

  • Opportunity to work in a collaborative and innovative environment
  • Access to cutting-edge technology and tools
  • Support for professional development and continued education
  • Flexible work arrangements, including virtual collaboration
  • Health and wellness benefits
Full Job Description
ECS is seeking an Identity and Access Management Engineer to work in our Fairfax, VA office.

We are seeking a proactive and technical Identity and Access Management (IAM) Engineer to join our team. In this role, you will be responsible for delivering end-to-end identity governance solutions, serving as a bridge between business objectives and technical implementation.

You will work within infrastructure and engineering teams to advance our Identity Governance and Administration platforms. This position requires a "full-stack" mindset: you will handle everything from technical design and "birthright" access policies to the hands-on development of custom connectors, APIs, and automated provisioning workflows.

Key Responsibilities:

Engineering & Development

Platform Implementation: Implement, configure, and upgrade enterprise SailPoint (IdentityIQ/IdentityNow) solutions based on functional specifications.

Custom Integration: Develop modifications and wrappers for IAM APIs and extend custom connectors, plug-ins, and SCIM/REST integrations for diverse target systems (SaaS, HRMS, IaaS).

Automation: Identify opportunities to automate and create organizational value. Develop efficient scripting and workflows.

Identity Lifecycle: Engineer automated provisioning and de-provisioning services for application on-boarding and off-boarding, ensuring a seamless user experience.

Governance & Security

Access Control: Design and implement Role-Based Access Control (RBAC) models, Separation of Duties (SoD) policies, and organization access review strategies.

Compliance: Ensure solutions adhere to regulatory standards (e.g., NIST 800-53, FedRAMP, ISO 27001) and support access certification campaigns.

Security Best Practices: Apply secure coding practices and maintain a strong understanding of SAML, OIDC, OAuth, and PKI protocols.

Operations & Support

System Maintenance: Support and maintain IAM environments, including performance tuning, health monitoring, and troubleshooting IGA rules and workflows.

Incident Management: Assist in monitoring, troubleshooting, and providing problem resolutions for end-user issues and platform incidents.

Reporting: Generate metrics and reporting on identity health, access reviews, and compliance status.

Collaboration

Team Partnership: Work collaboratively with cross-functional technical leads and business stakeholders to facilitate application integration.

Documentation: Create comprehensive technical documentation, including system diagrams, process flows, and operational procedures.

  • Bachelor's degree and 5 years of experience or the equivalent job experience.
  • Extensive hands-on experience with SailPoint (IdentityIQ or IdentityNow).
  • Strong knowledge of identity lifecycle management, RBAC, and access governance.
  • Experience with scripting and automation (Python, PowerShell, Bash).
  • Deep understanding of Active Directory, Entra AD, and LDAP systems.
  • Strong problem-solving skills with the ability to take initiative (self-starter).
  • Excellent written and spoken English communication skills.
  • Ability to work effectively in a virtual, cross-time-zone environment.
  • Business outcomes mindset with attention to detail.

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

More Information Technology Jobs

Find similar Identity and Access Management Engineer jobs: