Sr. SailPoint Engineer- ISC & IIQ | Remote, USA

<p><i>This position will be fully remote and can be hired anywhere in the continental U.S. </i><br> <br>Our Advanced Fusion Center Identity practice runs and improves clients’ SailPoint ISC/IIQ programs day-to-day. As a Sr. Sailpoint Engineer, you will handle escalations from Tier 1, stabilize and optimize production, and drive small/medium enhancements. The Sr. Sailpoint Engineer will keep identity lifecycle, access requests, certifications, and policy enforcement humming— with operational discipline, measurable SLAs, and crisp client communication. CyberArk and Okta integrations are nice-to-have. <br><br><b>How you’ll make an impact</b></p><ul><li><p>Keep Sources, Identity Profiles, Access Profiles, Entitlements, Roles, Lifecycle events, Access Requests, Approvals, and Certifications healthy and on-schedule. </p></li><li><p>Build and optimize workflows, transforms, and policies (SoD, RBAC) in IIQ and ISC.</p></li><li><p>Monitor and resolve aggregations, account correlations, provisioning failures, and campaign anomalies, tune schedules and thresholds. </p></li><li><p>Maintain and troubleshoot Virtual Appliance (VA) health, connector upgrades, and connectivity (e.g., AD/Entra, HRIS, SaaS apps, databases). </p></li><li><p>Build and maintain Workflows (low code), Transforms, policies (SoD, separation of function), and request/catalog items. </p></li><li><p>Run monthly health checks and deliver operational reports (KPIs, trendlines, incidents, changes, and risk/compliance signals). </p></li><li><p>Act as escalation for Tier 1: triage, contain, and restore; perform root cause analysis and implement durable fixes. </p></li><li><p>Create and improve runbooks/SOPs; automate recurring fixes and checks. </p></li><li><p>Plan and execute low-risk changes (connector tuning, attribute mappings, workflow edits, catalog updates) within ITSM guardrails. </p></li><li><p>Contribute to release readiness: sandbox validation, UAT coordination, deployment notes, and rollback plans. </p></li><li><p>Translate operational signals into clear actions for client IAM owners and app teams. </p></li><li><p>Advise on access modeling (Access Profiles vs. Roles), campaign design, and birthright vs. requestable access. </p></li><li><p>Provide backlog intake sizing for Tier-3/architecture where code or complex redesigns are required. </p></li><li><p>Okta/Entra ID Integration experience: Govern downstream via SCIM/API targets; align joiner/mover/leaver flows; validate group/entitlement posture. </p></li><li><p>CyberArk (PAM) Integration experience: Support governance integrations (e.g., safe/platform entitlement visibility, request/approval via SailPoint); assist with out-of-band privilege variance findings and clean-up campaigns. </p></li><li><p>Feed events and metrics to SIEM/SOC (webhooks/API), enrich tickets with context, and contribute to correlation use-cases (e.g., excessive privilege anomalies, orphan/rogue accounts). </p></li><li><p>Partner with compliance teams on attestation evidence, control testing cadence, and audit responses. </p></li></ul><p> <br><b>What we’re looking for</b></p><ul><li><p>5+ years of verifiable IAM <span style="overflow-wrap: break-word; display: inline; text-decoration: inherit; hyphens: auto;">operations/consulting</span> experience, with at least 2 years hands-on in SailPoint IIQ and ISC in production. </p></li><li><p>Recent (≤12 months) hands-on experience with SailPoint ISC/IDP in a production setting.</p></li><li><p>Proven Tier-2 ownership of aggregations, correlation, provisioning, certifications, workflow/transform tuning, catalog & access model hygiene, and VA/connector health. </p></li><li><p>Solid grasp of identity lifecycle <span style="overflow-wrap: break-word; display: inline; text-decoration: inherit; hyphens: auto;">(joiner/mover/leaver),</span> request/approval patterns, SoD policy design, and RBAC in large, distributed environments. </p></li><li><p>Comfortable with logs, metrics, and MTTR/SLAs; can turn noisy failures into stable automation. </p></li><li><p>Strong written/verbal communication—clear incident timelines, executive-level status, and precise change plans. </p></li><li><p>Familiarity with Entra ID/AD, HR sources, and common SaaS targets from an IIQ connector perspective. </p></li><li><p>SailPoint IIQ (Workflows, Access Requests, Certifications, Identity & Access Profiles, Transforms, Policies, Reports) </p></li><li><p>Virtual Appliances, connector logs, account activity, and provisioning task views </p></li><li><p>ITSM (ServiceNow/Jira), Confluence/knowledge base, basic API tooling (Postman/Curl) for IIQ v3 endpoints </p></li><li><p>Basic scripting for ops automation (PowerShell or Python) and CSV/data fixes where appropriate </p></li><li><p>Okta (governance targets via SCIM/API; SSO basics helpful but not the focus)- preferred</p></li><li><p>CyberArk governance integration (safe/platform entitlement visibility and request flows)- preferred</p></li><li><p>Cloud platforms (AWS/GCP) as identity sources/targets- preferred</p></li><li><p>Security/compliance context: SOC 2, SOX, HIPAA, PCI; evidence packaging for audits- preferred</p></li><li><p>Certifications (SailPoint, Microsoft, ISC²)- preferred</p></li></ul><p></p><p>#LI-TW1</p><p>#LI-Remote</p><p style="text-align:left !important"></p><p style="text-align:left !important"><b>What you can expect from Optiv</b></p><ul><li><p>A company committed to our inclusive value through our <a href="https://www.optiv.com/company/impact-report/inclusion-and-belonging" target="_blank" rel="noopener noreferrer"><span style="color:#0000ff"><u>Employee Resource Groups</u></span></a></p></li><li><p>Work/life balance</p></li><li><p>Professional training resources</p></li><li><p>Creative problem-solving and the ability to tackle unique, complex projects</p></li><li><p>Volunteer Opportunities. “Optiv Chips In” encourages employees to volunteer and engage with their teams and communities.</p></li><li><p>The ability and technology necessary to productively work remotely/from home (where applicable)</p></li></ul><p></p><p><b>EEO Statement</b></p><p><span>Optiv is an equal opportunity employer. All qualified applicants for employment will be considered without regard to race, color, religion, sex, gender identity or expression, sexual orientation, pregnancy, age 40 and over, marital status, genetic information, national origin, status as an individual with a disability, military or veteran status, or any other basis protected by federal, state, or local law.</span></p><p></p><p><span>Optiv respects your privacy. </span>By providing your information through this page or applying for a job at Optiv, you acknowledge that Optiv will collect, use, and process your information, which may include personal information and sensitive personal information, in connection with Optiv’s selection and recruitment activities.  For additional details on how Optiv uses and protects your personal information in the application process, click here to view our <a href="http://www.optiv.com/job-applicant-privacy-notice" target="_blank" rel="noopener noreferrer">Applicant Privacy Notice</a>. If you sign up to receive notifications of job postings, you may unsubscribe at any time.</p>

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...