Description :
Position : IAM Engineer - Saviynt & Identity Provisioning Specialist
Experience : 3+ Years in IAM; 3 Years in Saviynt
Education : Bachelors degree or equivalent in Engineering, CIS, or Cyber Security / IT.
Job Summary :
We are seeking a Detail-Oriented and dedicated IAM Engineer with a minimum of 3 years of hands-on experience specifically with Saviynt as a primary Identity Governance and Administration (IGA) tool. This role is crucial for supporting the client's IAM infrastructure, requiring expertise in IAM frameworks, RBAC models, and complex integration with an internally developed provisioning platform. The Engineer will be responsible for architecture, operations, and incident management across the identity lifecycle, leveraging strong problem-solving skills to ensure robust and compliant access controls.
Job Description :
Saviynt Development and Operations :
- Serve as the subject matter expert (SME) for all operational and support activities within the Saviynt IGA platform, ensuring high uptime, performance, and data integrity.
- Design, configure, and maintain connectors, workflows, and policies within Saviynt to manage the full identity lifecycle, including onboarding, access requests, certification, and offboarding.
- Provide expert-level Support and Incident Management for the IAM infrastructure, diagnosing and resolving complex issues related to access provisioning, reconciliation, and policy enforcement.
- Contribute to the ongoing development and enhancement of the Saviynt platform, ensuring it aligns with evolving security requirements and compliance mandates.
Access Control Model and Provisioning Integration :
Apply a strong understanding of RBAC (Role-Based Access Control), ABAC (Attribute-Based Access Control), and PBAC (Policy-Based Access Control) concepts to design and refine the client's access governance model.Integrate Saviynt with an internally developed identity provisioning platform, ensuring seamless and secure flow of user and access data across the enterprise landscape.Work hands-on with enterprise directory services, specifically Active Directory (AD) and Microsoft Entra (Azure AD), for synchronization, group management, and authentication protocol integration.Configure and secure cloud and enterprise application integration using standard security protocols (e.g., SAML, OAuth 2.0, SCIM) to extend the reach of the IGA platform.Architecture, Documentation, and Compliance :
Contribute to IAM Architecture planning, ensuring solutions are scalable, resilient, and adhere to security best practices and regulatory requirements.Develop and maintain clear, high-quality project documentation (e.g., design documents, operational runbooks, process flows) for the IAM environment.Participate in IAM audit and compliance activities, providing data and evidence required for access reviews and governance reports.Demonstrate strong collaboration skills and proficiency in communication to effectively work with application owners, security teams, and end-users globally.Required Skills & Qualifications :
Experience : Mandatory 3+ years in IAM solutions with a dedicated focus on RBAC model design and implementation; 3 years of hands-on experience with Saviynt.
Core IAM : Experience in IAM Architecture, Operations, Support, and Incident Management.Access Concepts : Strong understanding of RBAC, ABAC, and PBAC concepts and implementation.Directories : Mandatory experience with Active Directory and Microsoft Entra (Azure AD).Integration : Experience with security protocols (e.g., SAML, OAuth) and cloud / enterprise application integration.Soft Skills : Proficiency in project documentation and strong communication skills.Education : Bachelors degree or equivalent in Engineering, CIS, or Cyber Security / IT.Preferred Skills :
Certification : Saviynt Certification (e.g., Saviynt Certified IGA Professional).Scripting : Experience with scripting languages (e.g., Python, PowerShell) for automation and customization.Databases : Knowledge of SQL and database connectivity for custom integration purposes.Cloud : Familiarity with cloud infrastructure (AWS / Azure / GCP) security and access services.(ref : hirist.tech)