Saviynt IAM Engineer

Posted 4 Hours Ago
Be an Early Applicant
12 Locations
In-Office
120K-192K Annually
Senior level
Fintech • Information Technology • Payments • Sharing Economy • Financial Services • Cryptocurrency
Boston Fed works to promote sound growth and financial stability
The Role
Design, develop, configure, integrate, test, deploy, and support Saviynt EIC identity governance solutions. Build lifecycle automation, access workflows, certifications, RBAC, SoD controls, application integrations, APIs, connectors, and provisioning processes. Troubleshoot production identity and integration issues, support releases and incident management, document engineering standards, and mentor engineers. Collaborate with cybersecurity, architecture, application, infrastructure, HR, audit, and engineering teams.
Summary Generated by Built In
Company
Federal Reserve Bank of Richmond
When you join the Federal Reserve-the nation's central bank-you'll play a key role, collaborating with leading tech professionals to strengthen and protect our economic, financial and payments systems. We invest in contemporary and emerging technology each year to support the Federal Reserve and our economy, and we're building a dynamic and diverse team for our future.
The Information Security & Policy portfolio collaborates with business areas to address current and future cybersecurity threats across the enterprise, enforce SAFR and security policy, provide strategic and cost-effective services to its stakeholders, and protect the availability, confidentiality and integrity of Federal Reserve assets.
The Senior IGA Engineer is responsible for designing, developing, integrating, testing, deploying, and supporting enterprise Identity Governance & Administration capabilities, with primary emphasis on Saviynt EIC. The role requires strong hands-on development skills across identity lifecycle management, access requests, provisioning, certifications, role/access modeling, application onboarding, APIs, connectors, workflows, and production troubleshooting. The engineer will translate security and business requirements into scalable, supportable IGA solutions across SaaS, cloud, and enterprise applications.
Essential Responsibilities:
  • Design, configure, develop, test, deploy, and maintain Saviynt EIC solutions supporting enterprise IGA use cases.
  • Build and enhance Joiner/Mover/Leaver (JML) lifecycle processes, birthright access, automated provisioning/deprovisioning, and termination controls.
  • Configure and develop access request workflows, approval chains, entitlement governance, access policies, roles, user manager structures, and delegated administration.
  • Develop and maintain access certification campaigns, reviewer logic, escalation paths, remediation workflows, and certification reporting.
  • Onboard SaaS, cloud, database, directory, and enterprise applications using Saviynt connectors and custom integration patterns.
  • Develop integrations using REST APIs, SCIM, JDBC/SQL, web services, file-based feeds, scripting, and other supported integration methods.
  • Create and troubleshoot Saviynt workflows, rules, analytics, jobs, tasks, connection configurations, imports, provisioning actions, and technical controls.
  • Implement and support RBAC, role engineering, entitlement structures, access policies, Segregation of Duties (SoD) controls, and least-privilege patterns.
  • Diagnose complex identity data, provisioning, reconciliation, connector, API, workflow, and performance issues across non-production and production environments.
  • Create reusable engineering patterns, technical documentation, configuration standards, runbooks, test evidence, and deployment procedures.
  • Partner with IAM architecture, cybersecurity, application owners, infrastructure, HR, audit, and engineering teams to deliver end-to-end identity solutions.
  • Participate in code/configuration reviews, release management, incident/problem management, root-cause analysis, and continuous platform improvement.
  • Mentor engineers and provide technical leadership on Saviynt implementation patterns, troubleshooting, and engineering quality.

Requirements
  • Hands-on Saviynt EIC development and configuration experience delivering production IGA capabilities at enterprise scale.
  • Ability to independently develop, configure, test, troubleshoot, and support Saviynt-not solely gather requirements, administer campaigns, or provide program governance.
  • Demonstrated experience building Saviynt application integrations and resolving connector, API, data mapping, reconciliation, import, and provisioning issues.
  • Hands-on implementation of identity lifecycle automation, including JML events, account creation, access changes, deprovisioning, and termination processing.
  • Hands-on experience with access requests, approval workflows, certifications, entitlement governance, and provisioning workflows.
  • Strong REST API, JSON, SQL, and integration troubleshooting skills.
  • Production support experience, including incident diagnosis, log analysis, root-cause analysis, defect remediation, and controlled releases.
  • Strong understanding of IAM/IGA principles including least privilege, RBAC, SoD, access governance, authoritative sources, identity correlation, and lifecycle controls.

Qualifications
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Information Systems, Engineering, or a closely related technical discipline or equivalent relevant experience
  • 5+ years of professional experience in IAM, IGA, security engineering, application integration, or related identity engineering disciplines.
  • 2+ years of recent, hands-on Saviynt engineering/development experience, preferably with Saviynt EIC.
  • Experience integrating heterogeneous applications, including SaaS applications, directories, databases, cloud platforms, and custom/internal systems.
  • Proficiency with RESTful APIs, JSON, SQL, data transformations, authentication methods, and API troubleshooting tools.
  • Experience with SCIM and common identity integration patterns; familiarity with LDAP/Active Directory concepts is expected.
  • Experience with source-of-truth / authoritative identity feeds such as HR systems and with identity correlation and data quality remediation.
  • Ability to analyze complex technical problems across identity data, IGA platform configuration, target applications, and downstream provisioning components.
  • Experience working through software/engineering lifecycle activities: requirements refinement, design, build, test, peer review, deployment, documentation, and production support.
  • Strong written and verbal communication skills with the ability to work effectively across security, engineering, application, audit, and business teams.

Preferred skills:
  • Current Saviynt technical certification or formal Saviynt implementation training.
  • Experience with major cloud platforms such as AWS, Microsoft Azure, or Google Cloud and their identity/security integration patterns.
  • Experience integrating HR platforms such as Workday or other authoritative identity sources.
  • Experience with Privileged Access Management (PAM), non-human/service identities, or machine identity governance.
  • Experience with CI/CD, Infrastructure-as-Code, automated testing, or DevSecOps practices applied to IAM/IGA engineering.
  • Experience with Java/Groovy/Python/PowerShell or comparable scripting/programming used for integrations and automation.
  • Experience supporting regulatory or audit-driven access controls in environments subject to SOX, PCI DSS, HIPAA, financial-services, or similar requirements.
  • Experience with enterprise role engineering, access modeling, entitlement rationalization, and SoD rule design.
  • Experience leading complex application onboarding initiatives or mentoring IGA engineers.

Locations:
The selected candidate will reside within a reasonable commuting distance, as defined by the employing Reserve Bank, and will work full-time onsite.
  • Eligible Locations for Hire: Boston, MA- New York, NY- Philadelphia, PA- Cleveland, OH- Richmond, VA- Atlanta, GA- Chicago, IL- St. Louis, MO- Minneapolis, MN- Kansas City, MO- Dallas, TX- San Francisco, CA
  • The following Reserve Bank locations are preferred due to the concentration of System IT team members in these locations: San Francisco, CA & Richmond, VA

Base Salary Range: Min: $120,000 Mid: $155,800 Max: $191,700 (Location: San Francisco)
  • The listed salary is applicable to 12th District/San Francisco. Final offers are determined by factors including the candidate's qualifications, internal alignment considerations, district assignment, and geographic location.

Screening:
Due to the nature of access to sensitive information all final offers are subject to the clearance of an enhanced background check. This enhanced screening will require the following items: academic and employment verifications, FBI fingerprint check (criminal and civil cases), credit check, family history, residential records and foreign travel for the previous 7 years, citizenship verification, reference checks, and personal interview with an investigator and can take between 21 - 60 days to clear.
Sponsorship:
Individuals who need immigration sponsorship now or in the future are not eligible for this position.
Must be a U.S Citizen or a Green card holder with intent to become a U.S Citizen.
We offer a wonderful benefits package including: Medical, Dental, Vision, Pre-tax Flexible Spending Account, Backup Child Care Program, Pre-Tax Day Care Flexible Spending Account, Paid Family Care Leave, Vacation Days, Sick Days, Paid Holidays, Pet Insurance, Matching 401(k), and Retirement/Pension.
The Bank is committed to providing reasonable accommodations to individuals with disabilities to participate in the job application or interview process, perform essential job functions and receive other benefits and privileges of employment. The SF Fed is an Equal Opportunity Employer. If you need any assistance or accommodations due to a disability, please let us know at [email protected].
Full Time / Part Time
Full time
Regular / Temporary
Regular
Job Exempt (Yes / No)
Yes
Job Category
Information Technology Family Group
Work Shift
First (United States of America)
The Federal Reserve Banks are committed to equal employment opportunity for employees and job applicants in compliance with applicable law and to an environment where employees are valued for their differences.
Always verify and apply to jobs on Federal Reserve System Careers (https://rb.wd5.myworkdayjobs.com/FRS) or through verified Federal Reserve Bank social media channels.
Privacy Notice

Skills Required

  • Hands-on Saviynt EIC development and configuration experience delivering production IGA capabilities at enterprise scale
  • Ability to independently develop, configure, test, troubleshoot, and support Saviynt
  • Experience building Saviynt application integrations and resolving connector, API, data mapping, reconciliation, import, and provisioning issues
  • Hands-on identity lifecycle automation experience, including joiner, mover, leaver events, account creation, access changes, deprovisioning, and termination processing
  • Hands-on experience with access requests, approval workflows, certifications, entitlement governance, and provisioning workflows
  • Strong REST API, JSON, SQL, and integration troubleshooting skills
  • Production support experience, including incident diagnosis, log analysis, root-cause analysis, defect remediation, and controlled releases
  • Strong understanding of IAM and IGA principles, including least privilege, RBAC, SoD, access governance, authoritative sources, identity correlation, and lifecycle controls
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Information Systems, Engineering, or a related technical discipline, or equivalent relevant experience
  • 5+ years of professional experience in IAM, IGA, security engineering, application integration, or related identity engineering disciplines
  • 2+ years of recent hands-on Saviynt engineering or development experience, preferably with Saviynt EIC
  • Experience integrating SaaS applications, directories, databases, cloud platforms, and custom or internal systems
  • Proficiency with RESTful APIs, JSON, SQL, data transformations, authentication methods, and API troubleshooting tools
  • Experience with SCIM and common identity integration patterns, plus familiarity with LDAP and Active Directory concepts
  • Experience with authoritative identity feeds, such as HR systems, identity correlation, and data quality remediation
  • Ability to analyze technical problems across identity data, IGA configuration, target applications, and downstream provisioning components
  • Experience across requirements refinement, design, build, test, peer review, deployment, documentation, and production support
  • Strong written and verbal communication skills across security, engineering, application, audit, and business teams
  • Current Saviynt technical certification or formal Saviynt implementation training
  • Experience with AWS, Microsoft Azure, or Google Cloud identity and security integration patterns
  • Experience integrating Workday or other authoritative HR identity sources
  • Experience with PAM, non-human or service identities, or machine identity governance
  • Experience with CI/CD, Infrastructure-as-Code, automated testing, or DevSecOps practices applied to IAM or IGA engineering
  • Experience with Java, Groovy, Python, PowerShell, or comparable scripting and programming languages
  • Experience supporting SOX, PCI DSS, HIPAA, financial-services, or similar regulatory access controls
  • Experience with enterprise role engineering, access modeling, entitlement rationalization, and SoD rule design
  • Experience leading application onboarding initiatives or mentoring IGA engineers

What the Team is Saying

Jennifer Mick
Susan M. Collins
Ari Rizzitano
Mani Ganesan
Joubin Jabbari
Jennifer Dalessio
Joubin Jabbari
Heather Nichols

Federal Reserve Bank of Boston Compensation & Benefits Highlights

  • Retirement Support — Official materials highlight a defined-benefit pension alongside a 401(k)-style Thrift Plan with employer contributions, and feedback suggests this combination is a standout strength over many private employers. The presence of both plans is repeatedly emphasized as a significant component of total compensation.
  • Healthcare Strength — Health coverage is described as broad—covering medical, dental, vision, and prescriptions—with FSA/HSA options and an employee assistance program. Feedback suggests the overall health offering is a notable positive of the package.
  • Leave & Time Off Breadth — Paid vacation, holidays, parental leave, family leave, and sick time are prominently advertised. Feedback suggests these work-life supports contribute meaningfully to overall satisfaction with the package.

Federal Reserve Bank of Boston Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Boston, MA
1,200 Employees
Year Founded: 1914

What We Do

As part of the Central bank of the United States, the Boston Fed works to promote sound growth and financial stability in New England and the nation. We contribute to communities, the region, and the nation by conducting economic research, participating in monetary policy-making, supervising certain financial institutions, providing financial services and payments, playing a leadership role in the payments industry, and supporting economic well-being in communities through a variety of efforts.

Why Work With Us

At the Boston Fed, we strive to ensure that rigorous thinking and wide-ranging perspectives characterize our work and workplace. We also recognize that benefits and compensation play a central role in the employer you choose. We work to make sure our compensation package is competitive with those of top employers.

Gallery

Gallery
Gallery

Federal Reserve Bank of Boston Offices

OnSite Workspace

Positions are primarily in person, although some positions will allow employment based out of one of our twelve Banks nation-wide. Please see position description for specific location requirements.

Typical time on-site: None
Company Office Image
HQBoston, MA
Centrally located next to Boston's South Station between the Financial District and the Boston Seaport neighborhood.

Similar Jobs

Federal Reserve Bank of Boston Logo Federal Reserve Bank of Boston

Enterprise IT Communications Advisor, Senior or Advanced

Fintech • Information Technology • Payments • Sharing Economy • Financial Services • Cryptocurrency
In-Office
12 Locations
1200 Employees
121K-191K Annually

Federal Reserve Bank of Boston Logo Federal Reserve Bank of Boston

Product Manager

Fintech • Information Technology • Payments • Sharing Economy • Financial Services • Cryptocurrency
In-Office
12 Locations
1200 Employees
113K-187K Annually

Federal Reserve Bank of Boston Logo Federal Reserve Bank of Boston

Data Architect

Fintech • Information Technology • Payments • Sharing Economy • Financial Services • Cryptocurrency
In-Office
12 Locations
1200 Employees
140K-170K Annually

Federal Reserve Bank of Boston Logo Federal Reserve Bank of Boston

Product Owner

Fintech • Information Technology • Payments • Sharing Economy • Financial Services • Cryptocurrency
In-Office
12 Locations
1200 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account