SailPoint Engineer
About the Role
You know that the user is the last frontier for cybersecurity. It’s where the perimeter is drawn, and securing identities is pivotal in the fight against cybercriminals. As a SailPoint Engineer at Booz Allen, you’ll play a critical role in the world of Identity and Access Management (IAM) and Zero Trust. You’ll support large-scale IAM projects for our clients, interface with stakeholders and engineering teams, and delve into the details and dependencies of critical processes and users’ roles within them.
You’ll analyze the identity lifecycle, articulate access requirements, and define enterprise identity records. Using your IAM experience, you’ll design, deploy, and support systems that verify appropriate user privileges and manage credentials for accessing our clients’ most valuable assets. From single sign-on to privileged access systems, you’ll implement enterprise-class solutions to stop adversaries in their tracks.
Responsibilities
- Support large-scale IAM projects for clients.
- Interface with stakeholders and engineering teams to analyze critical processes and user roles.
- Analyze the identity lifecycle, articulate access requirements, and define enterprise identity records.
- Design, deploy, and support IAM systems that verify user privileges and manage credentials.
- Implement enterprise-class solutions such as single sign-on and privileged access systems.
- Integrate SailPoint IIQ with systems such as ServiceNow, Workday, SAP, Oracle, or cloud platforms (AWS, Azure).
- Provide technical guidance and mentorship to junior engineers and analysts.
Requirements
- Experience with Identity Governance platforms such as SailPoint, Ping, or Virtru, including identity lifecycle management, access certification, entitlement management, file access governance, and unstructured data protection.
- Experience implementing identity lifecycle processes, including provisioning, de-provisioning, access reviews, and certification.
- Knowledge of LDAP, Active Directory, and Azure AD integration with identity systems.
- Ability to provide technical guidance and mentorship to junior engineers and analysts.
- Secret clearance.
- HS diploma or GED.
Nice to Have
- Experience with IAM platforms, including Microsoft Azure AD, CyberArk, BeyondTrust, Oracle, or CA Identity Management product suites.
- Knowledge of Enterprise Directory architectures.
- Knowledge of emerging authentication, authorization, and privilege access management technologies and protocols.
- Knowledge of access control frameworks, including NIST 800-63.
- Ability to lead and coach technical staff.
- Completion of DoD 8140 requirements.
Clearance
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information. Secret clearance is required.
Benefits
Booz Allen offers health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values.
Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet this threshold are only eligible for select offerings, not inclusive of health benefits.
Pay
Salary is determined by various factors, including location, education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $86,800.00 to $198,000.00 (annualized USD).
Schedule
This posting will close within 90 days from the posting date.
Work Model
Our people-first culture prioritizes collaboration, whether in person or virtually. Employees working virtually are generally expected to have their cameras on during meetings.
- Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
- Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
- Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.