Identity & Access Management (IAM) Engineer

Xcel Engineering

Not Interested
Bookmark
Report This Job

profile Job Location:

Oak Ridge, TN - USA

profile Monthly Salary: Not Disclosed
Posted on: Yesterday
Vacancies: 1 Vacancy

Job Summary

COMPANY OVERVIEW

XCEL Engineering Inc. is an award-winning small business that provides trusted information technology engineering consulting and project management solutions and services to federal agencies and organizations. Originally founded in 1971 by professional engineers at the University of Tennessee XCEL was acquired in 2003 by U.S. Army and Navy veterans and in 2023 became a MartinFed company.

XCEL Engineering is a part of IT Lab Partners (ITLP) which was created to support a leading research facility in the East Tennessee region in recruiting the best and the brightest technical talent. Considering joining our impressive team today!

JOB OVERVIEW

XCEL Engineering is seeking a qualified applicant for a highly skilled IAM professional to engineer and administer SailPoint IdentityIQ and advance our Zero Trust architecture in the identity pillar. This role owns joiner-mover-leaver (JML) automation access governance role modeling and certification campaigns partnering closely with Cyber Security and Policy to embed least privilege continuous verification and risk-based access.

ESSENTIAL FUNCTIONS

SailPoint Engineering & Administration

  • Engineer/administer SailPoint (IIQ/IDN): configuration workflows rules/policies testing deployment maintenance.
  • Onboard applications: connectors for EntraID SaaS onprem DBs directories (AD/LDAP) and HRIS (Workday/SuccessFactors).
  • Automate JML: provisioning/deprovisioning birthright/role-based access movers entitlements.
  • Access governance: entitlements group management SOD policies certification campaigns.
  • Role engineering: business/technical roles aligned to least privilege.
  • Platform ops: patching upgrades performance tuning troubleshooting.
  • Customization: rules/workflows/tasks (Java/Beanshell for IIQ) UI config reporting dashboards.

Zero Trust Architecture

  • Implement identity-first controls: MFA PKI conditional access adaptive/risk-based auth.
  • Integrate with CASB and endpoint posture signals.
  • Align with Zero Trust principles (least privilege continuous verification).

Integration & Automation

  • Build APIs/scripts (PowerShell Python) for IAM workflows.
  • Support CI/CD for IAM configs and environment promotion.

Governance & Compliance

  • Maintain audit evidence; enforce SOD; reduce identity risk through metrics.

BASIC QUALIFICATIONS

  • United States citizen with the ability to obtain a security clearance.
  • Bachelors degree in Information Technology IT Operations Management or a related field.
  • 5-8 years IAM/IGA 2-4 years SailPoint engineering/admin (IIQ).
  • Strong grasp of Zero Trust; identity protocols (OIDC/OAuth2/SAML); AD/LDAP.
  • Scripting: PowerShell Python; Java/Beanshell (IIQ); REST APIs.

DESIRED QUALIFICATIONS

  • SailPoint certifications; SC300; CISSP; AZ500.
  • Experience with Entra ID/Ping CASB ServiceNow.

PHYSICAL REQUIREMENTS & ENVIRONMENTAL CONDITIONS

  • Inside office environment.
  • Working on a computer for long periods of time.
  • May involve long period of sitting at a desk.
  • The work environment is fast-paced and sometimes involves extreme deadline pressures.

OTHER DUTIES

This job description is not designed to cover or contain a comprehensive listing of activities duties or responsibilities that are required of the employee for this job. Duties responsibilities and activities may change at any time with or without notice.

Xcel Engineering is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regards to race color religion religious creed gender sexual orientation gender identity gender expression transgender pregnancy marital status national origin ancestry citizenship status age disability protected Veteran Status genetics or any other characteristics protected by applicable federal state or local law.

If you are a qualified individual with a disability or disabled veteran you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access Xcel Engineerings current openings as a result of your disability. You can request reasonable accommodations by calling 855.212.1810. Thank you for your interest in Xcel Engineering.

All positions at Xcel Engineering Inc. are contingent upon passing both a background check and drug screening prior to a start date and are subject to random drug screenings during the employment addition Xcel Engineering is an E-Verify employer.


Required Experience:

IC

COMPANY OVERVIEWXCEL Engineering Inc. is an award-winning small business that provides trusted information technology engineering consulting and project management solutions and services to federal agencies and organizations. Originally founded in 1971 by professional engineers at the University of ...
View more view more

Key Skills

  • Active Directory
  • Identity & Access Management
  • LDAP
  • SAFe
  • Assistive Technologies
  • Authentication
  • Pediatrics Experience
  • NVDA
  • Sailpoint
  • SSH
  • SSO
  • Oracle