Senior iam engineer - identity governance
22 hours ago
Madrid
Senior Sailpoint ISC Engineer As a Senior Sailpoint ISC Engineer you will support the evolution of our Identity & Access Management governance platform with a strong focus on implementation, integration and continuous improvement of Sailpoint ISC capabilities. The role will primarily involve application integrations, complex troubleshooting and end‑to‑end implementation of IAM processes, including lifecycle management, least‑privilege access, role modeling, solution design and connector deployment. Responsibilities Execute end‑to‑end onboarding of applications into Sailpoint ISC, including attribute mapping, entitlement modeling, connector configuration (OOTB and custom) and API‑based integrations (SAP integration experience is desirable). Troubleshoot and resolve complex issues related to identity data, provisioning failures and connector performance. Ensure data consistency and quality across identity sources, including troubleshooting data inconsistencies and reconciliation issues. Implement and support identity lifecycle processes (Joiner, Mover, Leaver), ensuring correct automation, data mapping and alignment with downstream provisioning and access processes. Configure, maintain and enhance Sailpoint ISC components: sources, entitlements, roles, access profiles, lifecycles, UAR, rule‑based policies, including identity profiles, transforms, workflows and provisioning policies. Implement and maintain access controls based on the principle of least privilege, including policy configuration (So D, birthright access, dynamic access where applicable). Support testing activities (unit, integration and UAT) ensuring quality of deployments. Coordinate with internal teams and external vendors to ensure high‑quality delivery for integration and troubleshooting activities. Review technical changes within the IAM domain and propose operational improvements within Sailpoint ISC configurations and integrations. Contribute to the definition and maintenance of role models and access policies, including implementation of RBAC roles and support to role‑mining activities. Collaborate with security, compliance and business teams to ensure alignment with regulatory requirements (Gx P, GDPR…). Own and maintain technical documentation related to design changes, configurations and integrations, ensuring documentation is accurate and aligned with implementation. Qualifications University degree or equivalent experience in computer science, engineering, information technology or another relevant field. Certifications in Sailpoint ISC Engineer / Professional or equivalent hands‑on experience. Minimum 5‑7 years of experience in IAM projects, preferably in the pharmaceutical or other highly regulated industries. Minimum 3‑5 years of hands‑on experience with Sailpoint Identity Security Cloud (ISC), including identity profiles, workflows, transforms, provisioning and access certifications. Strong understanding of end‑to‑end IAM processes, including identity lifecycle, role modeling, provisioning, user access review and data reconciliation challenges. Experience working with complex, non‑standard integrations and identity data flows. Hands‑on experience with API‑based integrations, including REST APIs and JSON‑based integrations (SAP integration experience is a plus). Strong analytical skills and ability to debug complex identity and provisioning issues across multiple systems. Ability to translate business requirements into effective IAM solutions and propose technical improvements when needed. Strong problem‑solving skills and excellent communication abilities, with the ability to work in cross‑functional teams. Fluent in written and spoken English. Benefits Compensation is determined by job level, qualifications, niche skills and experience. Full proficiency can expect a starting salary near the market median; the range considers performance, market, and business needs. Annual salary reviews are conducted to maintain alignment. Equal Opportunity Statement We are an equal‑opportunity employer. Hiring decisions are based solely on qualification for the position, regardless of gender, ethnicity, religion, sexual orientation, age, or disability. #J-18808-Ljbffr