Senior IAM Engineer
centene.wd5.myworkdayjobs.com
Position Purpose: The Senior IAM Engineer designs, develops, implements, and supports enterprise Identity and Access Management solutions. This role operates as an independent technical expert and combines strong IAM engineering depth with a developer mindset. The engineer must be able to understand existing code, troubleshoot complex behavior, modify and test code safely, and build scalable solutions that meet business, security, and regulatory needs.
The role leads technical integrations, serves as an escalation point for other engineers, and contributes to future-state IAM architecture and roadmap planning. Key Details: Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Sponsorship and future sponsorship are not available for this opportunity, including employment-based visa types H-1B, L-1, O-1, H-1B1, F-1, J -1, OPT, or CPT.
Design, develop, configure, test, implement, and support advanced IAM capabilities, including identity lifecycle management, identity governance, provisioning, SSO, MFA, PAM, RBAC, access certification, and policy enforcement. Read, analyze, troubleshoot, and modify application or integration code; develop scripts, APIs, connectors, workflows, and automation using languages and tools such as Java, BeanShell, Python, PowerShell, REST APIs, JSON, XML, SQL, and Git-based version control.
Lead technical integrations between IAM platforms and enterprise applications, directories, cloud services, infrastructure, and security tools. Diagnose and resolve complex, non-standard IAM engineering issues across code, configuration, data, APIs, connectors, workflows, and dependent systems. Create and enforce IAM engineering standards, technical procedures, deployment practices, and controls aligned with identity lifecycle management and security best practices.
Produce accurate technical requirements, solution designs, test plans, implementation plans, support documentation, and operational runbooks. Serve as a senior escalation point and mentor current team through technical guidance, code review, troubleshooting, and hands-on problem resolution. Partner with security architects, application owners, developers, system administrators, infrastructure teams, risk partners, and business stakeholders to deliver end-to-end IAM solutions.
Evaluate system performance, reliability, security, and supportability; recommend and implement improvements that increase delivery speed, quality, resilience, and operational efficiency. Contribute to IAM strategy, platform roadmaps, future-state architecture, cloud IAM, Zero Trust, DevSecOps, and automation opportunities. Ensure solutions comply with corporate policies, ethical standards, security requirements, and applicable regulatory obligations, including SOX, HIPAA, PCI-DSS, and privacy requirements.
Lead or contribute to cross-functional implementations from requirements and design through testing, deployment, stabilization, and transition to support. Performs other duties as assigned. Complies with all policies and standards. Education/Experience: A Bachelor's degree in a quantitative or business field (e.g., statistics, mathematics, engineering, computer science) and Requires 4 – 6 years of related experience.
Or equivalent experience acquired through accomplishments of applicable knowledge, duties, scope and skill reflective of the level of this position. Technical Skills: Required: Hands-on IAM engineering experience with SailPoint IdentityIQ or a comparable identity governance platform; Active Directory and Microsoft Entra ID; REST/SOAP APIs; scripting or software development; source control; testing; troubleshooting; and production support.
Strongly preferred: SailPoint IdentityIQ development using Java, BeanShell, connector and workflow development, Python, PowerShell, SQL, JSON/XML, CI/CD, cloud identity, Okta or Ping, CyberArk or other PAM platforms, and healthcare or highly regulated industry experien