Full Job Description
This role builds and maintains complex integrations, develops automation, engineers SailPoint rules and workflows, and ensures scalable, secure identity architecture across the enterprise. The IAM SailPoint Engineer partners with IAM leadership, cybersecurity, HRIS, infrastructure, and application teams to deliver modern identity solutions aligned with HIPAA, NIST, Zero Trust, and internal governance requirements. Department & Role Relationships • HIS Identity and Access Management • Reports to Identity and Access Management Manager Minimum Qualifications • Strong engineering mindset with ability to design scalable identity solutions. • Ability to translate business requirements into technical architecture. • Strong troubleshooting and analytical skills. • Clear communication skills with ability to explain complex technical concepts. • Commitment to secure, compliant, and resilient identity operations. • Ability to collaborate across cybersecurity, infrastructure, HRIS, and application teams. Preferred Qualifications • SailPoint Engineer or Architect certification. • Experience engineering identity integrations with Cerner, Epic or other EMR identity models. • Experience with cloud identity governance (Azure, AWS, GCP). • Experience with Postman, API testing, and integration debugging. • Experience supporting large-scale identity modernization initiatives. Knowledge, Skills, Abilities • Bachelor's degree in Information Technology (IT), Computer Science, Cybersecurity, or a related field OR equivalent experience. • 5+ years of hands-on experience engineering or developing IGA solutions. • Strong experience with SailPoint Identity Security Cloud and/or IdentityIQ. • Demonstrated experience writing SailPoint Rules (BeanShell/Java) and building custom workflows. • Strong scripting experience (PowerShell, JavaScript, Python, BeanShell). • Experience engineering integrations using SCIM, REST APIs, SAML, OAuth2, OIDC. • Strong understanding of identity lifecycle management, RBAC/ABAC, SoD, and identity architecture. • Experience with Active Directory, Entra ID, LDAP, HRIS systems, and cloud identity platforms. • Ability to work in a complex, unionized healthcare environment. Responsibilities & Typical Duties SailPoint Engineering & Development: • Design, develop, and maintain SailPoint Rules (Before/After Provisioning, Aggregation, Correlation, Custom Workflows). • Build and optimize complex provisioning workflows, lifecycle event logic, and identity orchestration. • Engineer and maintain custom connectors, integration logic, and advanced SailPoint configurations. • Develop custom SailPoint transforms, policies, and identity processing logic. • Perform advanced troubleshooting of provisioning, aggregation, and connector failures. Application Onboarding & Integration Engineering: • Lead onboarding of new applications into SailPoint, including: o schema discovery o connector engineering o entitlement modeling o provisioning/deprovisioning logic o aggregation job tuning • Build and support integration using: o SCIM o REST APIs o SAML o OAuth2 o OIDC • Engineer identity data flows between SailPoint, AD, Entra ID, HRIS, EMR systems, and cloud platforms. Automation and Scripting: • Develop automation using PowerShell, BeanShell, JavaScript, Python, or similar languages. • Build scripts to support identity lifecycle operations, data cleanup, and system integrations. • Create API-based automation for identity data exchange and workflow optimization. • Maintain version-controlled code repositories and follow secure development practices. Directory and Cloud Identity Engineering: • Engineer identity integrations with Active