Senior Systems Engineer - IAM Services

10 - 15 years

9 - 14 Lacs

Posted:Just now| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

The Opportunity:

The Senior Identity Access Management (IAM) Engineer will lead the implementation, administration, and optimization of IAM systems across enterprise environments. This role is essential for maintaining security, compliance, and operational efficiency in unregulated, government-regulated, and cloud-based environments. The Engineer will collaborate with cross-functional teams, provide expert guidance on IAM and PAM practices, and ensure secure management of identities, accounts, and privileged access.

The Senior IAM Engineer will provide global 3rd level support and troubleshooting for Saviynt, CyberArk, Active Directory services, EntraID services, related AD management tools and cloud single sign-on integrations.

What were looking for

Education: Bachelor's degree in Computer Science, Information Systems, or related field (or equivalent experience).

Certification:

  • Active CyberArk Defender and Sentry certifications are a plus.
  • Additional certifications (e.g., Microsoft, AWS, Azure, CISSP) are a plus.

Experience:

  • 10+ years of IT experience with a focus on IAM and security solutions.
  • 5+ years of experience with IAM Tools like Saviynt implementations and management.

Preferred Qualifications:

  • Proven expertise in Active Directory, Azure AD, LDAP, PKI, SSO, and 2FA systems.
  • Hands-on experience with scripting (PowerShell, Python, Java or other) for automation and system integration.
  • Deep understanding of privileged access management principles, including least privilege enforcement and session monitoring.
  • Strong knowledge of Active Directory services, group policies, DNS, and certificate services.
  • Proficiency in integrating IAM tools with cloud environments (e.g., AWS, Azure).
  • Excellent troubleshooting, analytical thinking, and communication skills.
  • Ability to define and drive projects from concept to completion, ensuring alignment with deadlines.

How will you thrive and create an impact:

Saviynt Identity Governance Administration (IGA)

  • Design, implement, and optimize Identity Governance Administration (IGA) workflows, access policies, and role-based access controls (RBAC).
  • Automates Joiner/leaver/mover (JLM) operations across applications.
  • Review orphaned accounts, excessive privileges, and policy violations.
  • Manages identity attributes, entitlements, and access rights.
  • Automates identity synchronization across cloud and on-premises systems.
  • Implements approval workflows to enforce security policies before granting access.
  • Enables access delegation and emergency access (Break Glass Accounts) when needed.
  • Uses Role Mining & Role Engineering to define least-privileged access.
  • Automates periodic access certifications for user accounts and entitlements.
  • Provides review campaigns for managers, application owners, and auditors.
  • Tracks all user access changes, requests, and approvals for auditability.
  • Generates detailed audit reports to meet compliance requirements.
  • Support self-service portal for users to request access to applications, roles, and entitlements.

CyberArk Privileged Access Management

  • Design, deploy, and maintain CyberArk solutions, including Enterprise Password Vault (EPV), Privileged Session Manager (PSM), and Central Policy Manager (CPM).
  • Develop privileged access policies, procedures, and standards aligned with industry best practices and regulatory compliance (e.g., CMMC, PCI-DSS, HIPAA).
  • Monitor, audit, and optimize CyberArk configurations and policies to mitigate security risks.
  • Integrate CyberArk with identity providers (e.g., Active Directory, Azure AD, LDAP) and other IT infrastructure.
  • Automate PAM processes using scripting languages like PowerShell or Python.
  • Lead incident response activities for privileged access abuse or unauthorized access attempts.

Identity and Access Management

  • Support and enhance IAM tools and services, focusing on secure user privileges, credential management, and access control.
  • Configure and optimize identity systems, including Active Directory, Azure AD, LDAP, PKI, and SSO/2FA solutions.
  • Lead IAM-related projects, including domain consolidations, decommissioning, and cloud migrations.
  • Develop processes for IAM governance, compliance, and reporting.
  • Define and implement workflows for user provisioning, deprovisioning, and role management.
  • Troubleshoot and resolve IAM and PAM-related issues.

Collaboration and Leadership

  • Collaborate with IT, security, and compliance teams to design and implement IAM and PAM strategies.
  • Act as a subject matter expert on Saviynt and IAM technologies, providing training and mentorship to team members.
  • Ensure alignment of IAM solutions with organizational security and compliance requirements.
  • Represent the IAM function during audits, assessments, and stakeholder discussions.

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now
Avantor logo
Avantor

Life Sciences, Chemical Manufacturing

Radnor

RecommendedJobs for You

pune, chennai, bengaluru