Source description
About the role
Running and monitoring User Access Review and certification campaigns in SailPoint Identity Security Cloud (ISC) end-to-end - scoping, launch, reviewer assignment, reminders, escalation, and closure - with support from the IAM Manager and IAM Engineering. ? Driving reviewers to SLA, escalating to line managers and skip-level managers when campaigns stall, and scrutinizing low-quality or default "rubber-stamp" approvals so that review decisions are meaningful. ? Investigating and remediating policy violations surfaced by access governance, including the "active individuals without an assigned manager" policy and segregation-of-duties (SoD) conflicts. ? Tracking each campaign's revocations and access changes through to confirmed closure in the target systems, and evidencing outcomes in the Remediation Report. ? Monitoring account provisioning and de-provisioning across SailPoint and Okta, and resolving exceptions, joiner-mover-leaver gaps, and synchronization errors. ? Working with system and application owners to correctly map non-human, service-account, and machine-identity ownership in SailPoint. ? Providing ad hoc IAM support to DevOps on Teleport, who own ongoing maintenance of Teleport resources and policies. ? Partnering with other technical stakeholders to roll out and operationalize Teleport within their teams. ? Onboarding new services and servers into Teleport, enabling secure access for both human users and machine identities. ? Monitoring the integration health between SailPoint and connected source systems, and escalating connector, aggregation, and data-quality issues to senior team members where needed. ? Acting as second-level support to the L1 ticket queue for IAM troubleshooting. ? Generating standard and ad-hoc access-governance reports and metrics for IAM leadership, Security leadership, and external auditors. ? Packaging evidence for compliance-automation platforms (e.g., Drata) and external reviews (e.g., EY service-account reviews), and validating that controls are operating as designed. ? Documenting and maintaining IAM Standard Operating Procedures, reviewer guides, operational playbooks, and end-user FAQs. ? Supporting audit readiness by collecting evidence, validating control operation, and documenting access-governance activities across the IAM estate (SailPoint ISC, Okta, Microsoft Entra ID, and other SaaS applications). ? Researching improvements to access-review processes, policies, and automation, and translating them into practical, repeatable operational practices. ? Providing technical input to the IAM Manager on access-governance risks, control gaps, exceptions, and process-improvement opportunities. ? Running access reviews and certification campaigns over AI and generative-AI tools (e.g., Microsoft 365 Copilot, approved LLM platforms) and the entitlements, connectors, and data sources they can reach. ? Governing identities, entitlements, and least-privilege access for AI agents, copilots, and agentic/autonomous workloads - including their service accounts, API scopes, and tool-calling permissions - in SailPoint and Okta. Running and monitoring User Access Review and certification campaigns in SailPoint Identity Security Cloud (ISC) end-to-end - scoping, launch, reviewer assignment, reminders, escalation, and closure - with support from the IAM Manager and IAM Engineering. ? Driving reviewers to SLA, escalating to line managers and skip-level managers when campaigns stall, and scrutinizing low-quality or default "rubber-stamp" approvals so that review decisions are meaningful. ? Investigating and remediating policy violations surfaced by access governance, including the "active individuals without an assigned manager" policy and segregation-of-duties (SoD) conflicts. ? Tracking each campaign's revocations and access changes through to confirmed closure in the target systems, and evidencing outcomes in the Remediation Report. ? Monitoring account provisioning and de-provisioning across SailPoint and Okta, and resolving exceptions, joiner-mover-leaver gaps, and synchronization errors. ? Working with system and application owners to correctly map non-human, service-account, and machine-identity ownership in SailPoint. ? Providing ad hoc IAM support to DevOps on Teleport, who own ongoing maintenance of Teleport resources and policies. ? Partnering with other technical stakeholders to roll out and operationalize Teleport within their teams. ? Onboarding new services and servers into Teleport, enabling secure access for both human users and machine identities. ? Monitoring the integration health between SailPoint and connected source systems, and escalating connector, aggregation, and data-quality issues to senior team members where needed. ? Acting as second-level support to the L1 ticket queue for IAM troubleshooting. ? Generating standard and ad-hoc access-governance reports and metrics for IAM leadership, Security leadership, and external auditors. ? Packaging evidence for compliance-automation platforms (e.g., Drata) and external reviews (e.g., EY service-account reviews), and validating that controls are operating as designed. ? Documenting and maintaining IAM Standard Operating Procedures, reviewer guides, operational playbooks, and end-user FAQs. ? Supporting audit readiness by collecting evidence, validating control operation, and documenting access-governance activities across the IAM estate (SailPoint ISC, Okta, Microsoft Entra ID, and other SaaS applications). ? Researching improvements to access-review processes, policies, and automation, and translating them into practical, repeatable operational practices. ? Providing technical input to the IAM Manager on access-governance risks, control gaps, exceptions, and process-improvement opportunities. ? Running access reviews and certification campaigns over AI and generative-AI tools (e.g., Microsoft 365 Copilot, approved LLM platforms) and the entitlements, connectors, and data sources they can reach. ? Governing identities, entitlements, and least-privilege access for AI agents, copilots, and agentic/autonomous workloads - including their service accounts, API scopes, and tool-calling permissions - in SailPoint and Okta. BDPIML01-5-1 Running and monitoring User Access Review and certification campaigns in SailPoint Identity Security Cloud (ISC) end-to-end - scoping, launch, reviewer assignment, reminders, escalation, and closure - with support from the IAM Manager and IAM Engineering. ? Driving reviewers to SLA, escalating to li... ... Running and monitoring User Access Review and certification campaigns in SailPoint Identity Security Cloud (ISC) end-to-end - scoping, launch, reviewe... Sailpoint
More at Happiest Minds Technologies
Related open roles
LEAD INFORMATION TECHNOLOGY - Vulnerability Assessment
Delhi NCR
OT Security Architect
Bangalore · Mumbai · Delhi NCR
TECHNICAL LEAD - Vulnerability Mitigation
Bangalore
SENIOR EXECUTIVE INFORMATION SECURITY - Vulnerability Assessment
Delhi NCR
TECHNICAL LEAD - SOC Monitoring
Bangalore
MODULE LEAD - ServiceNow
Bangalore