
Engineer, Identity and Access Management
Intercontinental Exchange1 month ago
Jacksonville, FL, USAMid Level
H1B sponsor
Responsibilities
- Administer SailPoint ISC across provisioning, deprovisioning, and identity lifecycle management.
- Build and maintain SailPoint workflows, transforms, rules, integrations, connectors, attribute mappings, and entitlement aggregations.
- Support application onboarding and the IdentityIQ-to-Identity Security Cloud migration, including re-onboarding and cutover validation.
- Automate identity processes using SailPoint APIs, REST integrations, and scripting.
- Diagnose and resolve provisioning failures, workflow errors, and connector issues from root cause through resolution.
- Manage the SailPoint-ServiceNow integration for access requests, approvals, and provisioning fulfillment.
- Generate access evidence and reports and support access certification campaigns for audits.
- Maintain runbooks, technical standards, and platform documentation.
- Provide rotational on-call support.
Requirements
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Information Systems, or a related field, or an equivalent combination of education, training, and relevant work experience.
- Hands-on SailPoint ISC experience with platform administration, workflow development, connector configuration, and provisioning rule management; IIQ-only experience is insufficient.
- Strong IAM fundamentals covering joiner/mover/leaver lifecycle management, RBAC, entitlement management, provisioning, and access governance in a large enterprise environment.
- Experience translating business requirements into SailPoint platform logic and owning the full application onboarding lifecycle.
- Scripting and API integration experience for identity automation, such as Python, BeanShell, REST, and JSON.
- Experience integrating SailPoint with ServiceNow for access request and provisioning workflows.
- Experience supporting identity audits, evidence generation, and access certifications in a regulated environment.
- Ability to troubleshoot independently and communicate with technical and non-technical stakeholders.
- Preferred experience leading or supporting IIQ-to-ISC migrations, including configuration mapping, application re-onboarding, and production cutover.
- Preferred exposure to Azure Active Directory, AWS IAM, SQL, Snowflake, SCIM, SAML, OAuth 2.0, OIDC, SailPoint certification, IIQ certification, CISSP, or CISM.
- Preferred background in financial services or another regulated environment and strong analytical, decision-making, problem-solving, documentation, and communication skills.
Benefits
- The role is onsite, as indicated by the posting’s #LI-ONSITE designation.
- Rotational on-call support is required.
About Intercontinental Exchange
ICE (NYSE: ICE) connects people to data, technology and expertise that create opportunity and inspire innovation. For terms of use, visit www.ice.com/privacy-security-center/terms-of-use