- Страна
- США
Откликайтесь
на вакансии с ИИ

SailPoint Engineer
Привлекательная позиция для узких специалистов по SailPoint с высоким уровнем допуска. Работа над критически важными проектами национального значения в стабильной компании с фокусом на профессиональное развитие.
Сложность вакансии
Высокая сложность обусловлена требованием активного допуска Top Secret/SCI и необходимостью работы с секретными сетями (SIPR/Top-Secret). Роль требует глубокой экспертизы в SailPoint и понимания архитектуры Zero Trust в контексте Министерства обороны США.
Анализ зарплаты
Зарплата в объявлении не указана, но для специалистов с допуском TS/SCI и опытом работы с SailPoint в регионе Тампа рыночные показатели значительно выше средних по ИТ. Специалисты такого уровня в оборонном секторе США получают конкурентоспособную оплату, соответствующую высокому уровню ответственности.
Сопроводительное письмо
I am writing to express my strong interest in the SailPoint Engineer position at Platinum Technologies. With over five years of experience in Identity Governance and Administration, specifically focusing on SailPoint IdentityIQ and IdentityNow, I have a proven track record of automating complex identity lifecycles and implementing robust Attribute-Based Access Control (ABAC) models. My background aligns perfectly with your mission to build a "source of truth" for identity within a Zero Trust architecture.
Throughout my career, I have successfully managed large-scale deployments involving Joiner-Mover-Leaver workflows and integrated diverse systems like Active Directory and Azure AD. I am particularly drawn to this role because of the unique challenge of managing identity data across NIPR, SIPR, and Top-Secret networks. My technical expertise, combined with my active Top Secret/SCI clearance and CompTIA Security+ certification, ensures that I can contribute immediately to your team's success in Tampa.
I am passionate about delivering high-quality work products and thrive in environments that demand technical excellence and thought leadership. I look forward to the possibility of discussing how my skills in RBAC modeling and automated access certification can support Platinum Technologies and your Mission Partners.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в pt78 уже сейчас
Присоединяйтесь к команде экспертов Platinum Technologies и станьте ключевым звеном в обеспечении кибербезопасности национального уровня!
Описание вакансии
Who we are!
Platinum Technologies is a Northern Virginia based integrated solutions firm that specializes in Cybersecurity, Cloud and Digital Services to the Public Sector. Our team solves hard problems and helps our Mission Partners achieve their goals. If you are self-motivated, possess demonstrated learning agility, and are passionate about delivering high-quality work products – we want to hear from you.
We lead with technical expertise, but that is just the tip of the iceberg – the ‘Why’ matters. At Platinum, we don’t hire people to do a job. We provide professional and leadership development to complement our self-motivated domain experts. Our teammates are dot-connecting leaders that operate in a mutually accountable environment to deliver thought leadership, expert technical analysis, and quality execution for our clients.
You.
Platinum Technologies is seeking an IGA Engineer (SailPoint) to join our company. We’re seeking a highly skilled Identity Governance and Administration (IGA) Engineer. In a Zero Trust architecture, identity is the new perimeter, and this role is responsible for building and maintaining the "source of truth" that governs access to the Command's most critical data.
As the IGA Engineer, you will lead the implementation and configuration of SailPoint across the NIPR, SIPR, and Top-Secret networks. You will move beyond basic account provisioning to implement a sophisticated Attribute-Based Access Control (ABAC) model. You will be responsible for defining and managing the lifecycle of "Trust Attributes" (such as clearance level, training status, and job role) that are consumed by downstream enforcement tools like Microsoft Purview and Kiteworks. Your work ensures that when a user’s status changes, their access to sensitive data is updated instantly, even in air-gapped environments.
This role requires an active Top Secret/SCI. The position will be in Tampa, Florida.
What you get to do.
•Lead the design, deployment, and ongoing management of SailPoint IdentityNow (or IIQ) to automate the full identity lifecycle (Joiner, Mover, Leaver) across hybrid and on-premises environments.
•Define and manage the schema for "Trust Attributes" (e.g., Clearance, COI, Project Codes) within SailPoint, ensuring they align with the NIST 8112 metadata standard for consumption by policy decision points.
•Manage the offline instance of SailPoint on the Top-Secret network, developing the workflows to import "Attribute Manifests" and ensure that identity data remains synchronized with the low-side source of truth.
•Configure and execute automated access certification campaigns for critical data repositories and privileged roles, ensuring compliance with DoD audit requirements.
•Work with mission owners to define Technical Roles and Business Roles within SailPoint, replacing broad, static Active Directory groups with granular, policy-driven access roles.
Requirements.
•Active Top-Secret/SCI clearance
•CompTIA Security+ CE (or higher) to meet DoD 8570 IAT Level II requirements.
•Extensive (5+ years) hands-on experience designing, implementing, and administering SailPoint (IdentityNow or IdentityIQ) in a large enterprise environment.
•Deep understanding of the Joiner-Mover-Leaver (JML) process and experience automating provisioning/deprovisioning workflows connected to HR systems and Active Directory.
•Strong knowledge of Active Directory, LDAP, and Azure Active Directory (Entra ID) structures and management.
•Proven experience with Role-Based Access Control (RBAC) modeling, Separation of Duties (SoD) policy creation, and access certification campaigns.
•Journeyman Experience:
oA Journeyman labor category has 3 to 10 years of experience and a BA/BS or MA/MS degree. A Journeyman labor category typically performs all functional duties independently.
•Senior Experience:
A Senior labor category has over 10 years of experience and a MA/MS degree. A Senior labor category typically works on high-visibility or mission critical aspects of a given program and performs all functional duties independently. A Senior labor category may oversee the efforts of less senior staff and/or be responsible for the efforts of all staff assigned to a specific job.
The Company is an Equal Opportunity/Affirmative Action employer. All qualified candidates will receive consideration for employment without regard to disability, protected veteran status, race, color, religious creed, national origin, citizenship, marital status, sex, sexual orientation/gender identity, age, or genetic information.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- Cybersecurity
- Zero Trust
- RBAC
- SailPoint
- Active Directory
- CompTIA Security+
- LDAP
- Azure Active Directory
- IdentityIQ
- IdentityNow
- ABAC
Возможные вопросы на собеседовании
Проверка опыта работы в изолированных средах, что критично для данной вакансии.
Опишите ваш опыт управления инстансами SailPoint в закрытых или 'air-gapped' сетях. С какими основными трудностями вы сталкивались при синхронизации данных?
Вакансия делает упор на переход от статических групп к динамическим атрибутам.
Как бы вы спроектировали модель ABAC (Attribute-Based Access Control) для организации, переходящей от традиционного RBAC в среде SailPoint?
Ключевая задача роли — автоматизация жизненного цикла пользователя.
Расскажите о самом сложном рабочем процессе Joiner-Mover-Leaver, который вы настраивали. Как вы обеспечивали целостность данных между HR-системой и целевыми приложениями?
Позиция требует соответствия стандартам NIST и DoD.
Каков ваш опыт работы со стандартом метаданных NIST 8112 и как вы применяли его при определении атрибутов доверия (Trust Attributes)?
Проверка навыков обеспечения безопасности и соблюдения политик.
Как вы подходите к настройке кампаний по сертификации доступа для привилегированных ролей, чтобы минимизировать 'усталость от подтверждений' у менеджеров, сохраняя при этом требования аудита?
Похожие вакансии
Senior Information Security (ИБ)
Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)
Исследователь безопасности Android
Эксперт по защите периметра (WAF)
DevOps-инженер/ИБ (devops engineer, information security)
Сеньор AppSecOps-инженер
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- США