What are the responsibilities and job description for the SailPoint Architect position at Ampstek?
Title: SailPoint Architect
Location: Philadelphia, PA (Hybrid)
Job Type: 12 Months Contract
Job Description
Experienced SailPoint Solutions Architect to design, implement, and optimize Identity & Access Management (IAM) solutions using SailPoint IdentityIQ. The ideal candidate will have deep expertise in access governance, lifecycle management, application integration, and automation, with a strong ability to lead technical teams and deliver scalable IAM solutions.
Key Responsibilities
SailPoint IdentityIQ Implementation & Configuration
• Lead end-to-end SailPoint IIQ implementations, including installation, configuration, and customization.
• Design and deploy user provisioning, deprovisioning, and access request workflows.
• Configure role-based (RBAC) and attribute-based (ABAC) access control models.
• Develop and manage entitlements, access policies, and certification campaigns.
Application Integration & Automation
• Integrate SailPoint with HR systems (Workday, SAP), Active Directory (AD), LDAP, SaaS apps (Salesforce, ServiceNow), and custom applications.
• Implement REST/SOAP API-based integrations for automated user lifecycle management.
• Troubleshoot and optimize connector configurations (Flat File, JDBC, Web Services, etc.)
Access Governance & Compliance
• Design and execute access certification campaigns, SOD (Segregation of Duties) policies, and audit reporting.
• Configure out-of-the-box (OOTB) and custom workflows for access reviews.
• Ensure compliance with SOX, GDPR, HIPAA, and other regulatory requirements.
Customization & Advanced Development
• Develop custom rules (BeanShell, JavaScript), workflows, and task definitions to extend SailPoint functionality.
• Optimize identity aggregation, correlation, and reconciliation processes.
• Implement event-driven automation for real-time access management.
Leadership & Collaboration
• Serve as the technical SME for SailPoint, guiding development teams and stakeholders.
• Conduct architectural reviews, performance tuning, and scalability assessments.
• Mentor junior engineers and provide SailPoint best practice guidance.
Required Skills & Qualifications
• 7 years of hands-on experience in SailPoint IdentityIQ (configuration, administration, and deployment).
• In-depth knowledge of IAM concepts (provisioning, RBAC/ABAC, certifications, audit compliance).
Strong expertise in:
• User Lifecycle Management (Joiner-Mover-Leaver processes).
• Entitlement Management & Governance (aggregation, role mining, access policies).
• Application Onboarding (AD, LDAP, JDBC, REST/SOAP APIs).
• Customization (BeanShell, SailPoint workflows, UI customization).
• Experience with SailPoint IdentityNow (Cloud IAM) is a plus.
Certifications:
• SailPoint Certified Architect (preferred).
Soft Skills:
• Strong problem-solving, communication, and leadership abilities.
Preferred Qualifications
• Experience with CI/CD pipelines for SailPoint deployments.
• Knowledge of privileged access management (PAM) and multi-factor authentication (MFA).
• Familiarity with cloud IAM (Azure AD, AWS IAM, Okta).