Athenix Solutions Group · 6 days ago
IGA Engineer (SailPoint), Zero Trust Program (USSOCOM) - Journeyman
Athenix Special Missions is seeking a highly skilled Identity Governance and Administration (IGA) Engineer to join the Zero Trust execution team at U.S. Special Operations Command (USSOCOM). This role is responsible for building and maintaining the 'source of truth' that governs access to the Command's most critical data, leading the implementation and configuration of SailPoint across various networks.
Software
Responsibilities
Lead the design, deployment, and ongoing management of SailPoint IdentityNow (or IIQ) to automate the full identity lifecycle (Joiner, Mover, Leaver) across hybrid and on-premises environments
Define and manage the schema for 'Trust Attributes' (e.g., Clearance, COI, Project Codes) within SailPoint, ensuring they align with the NIST 8112 metadata standard for consumption by policy decision points
Manage the offline instance of SailPoint on the Top-Secret network, developing the workflows to import 'Attribute Manifests' and ensure that identity data remains synchronized with the low-side source of truth
Configure and execute automated access certification campaigns for critical data repositories and privileged roles, ensuring compliance with DoD audit requirements
Work with mission owners to define Technical Roles and Business Roles within SailPoint, replacing broad, static Active Directory groups with granular, policy-driven access roles
Qualification
Required
Must be a U.S. Citizen
Must have an Active DoD Top Secret Clearance (SCI Eligibility)
Extensive (5+ years) hands-on experience designing, implementing, and administering SailPoint (IdentityNow or IdentityIQ) in a large enterprise environment
Deep understanding of the Joiner-Mover-Leaver (JML) process and experience automating provisioning/deprovisioning workflows connected to HR systems and Active Directory
Strong knowledge of Active Directory, LDAP, and Azure Active Directory (Entra ID) structures and management
Proven experience with Role-Based Access Control (RBAC) modeling, Separation of Duties (SoD) policy creation, and access certification campaigns
BA/BS or MA/MS degree
3-10 years of experience
CompTIA Security+ CE (or higher) to meet DoD 8570 IAT Level II requirements
Preferred
Experience implementing Attribute-Based Access Control (ABAC) strategies
Familiarity with DoD Identity, Credential, and Access Management (ICAM) reference designs
Knowledge of integration protocols such as REST, SCIM, and SOAP
Experience supporting USSOCOM or other DoD agencies
SailPoint Certified IdentityNow Engineer or SailPoint Certified IdentityIQ Engineer
Certified Identity and Access Manager (CIAM) or CISA
Company
Athenix Solutions Group
For Missions That Cannot Fail Athenix Solutions Group is focused exclusively on serving the Intelligence Community, DoD Cyber, Special Operations, and others who operate at the edge.