Key Responsibilities
1. IAM Requirements & Solution Design
- Engage customers and stakeholders to understand business, security and technical requirements.
- Conduct workshops and translate requirements into functional and technical IAM solutions.
- Assess existing identity and access management environments and recommend improvements.
- Develop solution designs, technical specifications and implementation plans.
- Provide recommendations on identity lifecycle management, access governance, authentication, authorisation and privileged access.
- Ensure IAM solutions align with enterprise security architecture, policies and standards.
2. SailPoint Implementation
- Design, configure and implement SailPoint Identity Security Cloud (ISC) and/or SailPoint IdentityIQ (IIQ).
- Implement identity lifecycle management, including Joiner-Mover-Leaver processes and automated provisioning/deprovisioning.
- Configure identity sources, applications, connectors, aggregation and provisioning workflows.
- Implement access requests, approvals, access certifications and role-based access controls.
- Develop and customise SailPoint workflows, rules, policies and integrations.
- Integrate SailPoint with enterprise applications, directories, databases and other identity platforms.
- Troubleshoot and optimise SailPoint environments and resolve technical issues.
3. Ping Identity Implementation
- Design, configure and implement Ping Identity solutions, particularly PingAM and PingDS.
- Configure authentication, authorisation, identity stores and access management policies.
- Integrate Ping Identity with enterprise applications and external identity providers.
- Implement and support SSO, federation, SAML, OAuth 2.0 and OpenID Connect integrations.
- Perform integration testing, troubleshooting and optimisation of Ping Identity environments.
4. End-to-End IAM Project Delivery
- Take ownership of IAM technical workstreams across the project lifecycle.
- Prepare technical documentation, test plans, deployment plans, configuration documents and operational runbooks.
- Coordinate with project managers, architects, infrastructure and application teams to ensure successful delivery.
- Identify and manage technical risks, dependencies and implementation issues.
5. Post-Implementation Support
- Provide L2/L3 technical support for SailPoint and Ping Identity environments.
- Monitor platform health and troubleshoot production incidents.
- Conduct root-cause analysis and implement permanent fixes.
- Support upgrades, patches, enhancements and configuration changes.
- Develop operational procedures, monitoring requirements and troubleshooting guides.
- Identify opportunities to improve platform stability, security and operational efficiency.
6. Security & Continuous Improvement
- Ensure IAM solutions comply with security policies, regulatory requirements and industry best practices.
- Identify identity and access-related security risks and recommend appropriate controls.
- Support IAM maturity assessments and improvement initiatives.
- Stay updated on emerging IAM technologies, identity security practices and product capabilities.
- Contribute to reusable IAM solutions, implementation methodologies and technical accelerators.
Requirements
- Degree or diploma in Cybersecurity, Computer Science, Information Technology, Engineering or a related discipline.
- 3-6 years of relevant experience in cybersecurity, IAM, identity security or security engineering.
- Hands-on experience with SailPoint Identity Security Cloud (ISC) and/or IdentityIQ (IIQ).
- Hands-on experience with Ping Identity, particularly PingAM and PingDS.
- Proven experience delivering IAM projects from requirements gathering and solution design through implementation, testing, deployment and support.
- Strong understanding of:Identity lifecycle management, Joiner-Mover-Leaver processes, Access provisioning and deprovisioning, Access certification and access governance, Role-Based Access Control (RBAC) Authentication and authorisation, Single Sign-On (SSO) Identity federation, Directory services
- Experience integrating IAM platforms with enterprise applications, databases and directories.
- Familiarity with SAML, OAuth 2.0, OpenID Connect and LDAP.
- Strong troubleshooting, analytical and problem-solving abilities.
- Good understanding of cybersecurity principles and enterprise security architecture.
- Strong communication and stakeholder management skills, with the ability to engage directly with customers.
VikConnect Pte Ltd | UEN: 200804439G | EA Licence No: 09C5380 | Reg No: R25158895 (Neo Hui Xin Wendy)