HP
Identity Governance and Administration Engineer
Ka, Indiana · On-site · Posted today
Opens apply.hp.com
Get a version of your resume written for this job.
- Salary
- Not listed
- Job type
- Not specified
- Work mode
- On-site
- Source
- Eightfold (employer's hiring system)
Skills mentioned
Cybersecurity, SaaS, REST, Python, SQL, Terraform, CI/CD, IAM
About the role
Description -
Job Summary
We are seeking a highly skilled and motivated Senior IGA Engineer to join HP’s Cybersecurity organization. This role will design, configure, integrate, and support enterprise identity governance capabilities on the Saviynt IGA SaaS platform. The engineer will help expand IGA as HP’s centralized access governance platform for application onboarding, identity lifecycle management, access requests, provisioning and deprovisioning, access certifications, and audit support.
The successful candidate will work closely with cybersecurity architects, compliance partners, application owners, HR and infrastructure teams, and managed-service engineers. The role requires strong hands-on engineering, disciplined testing and documentation, and an automation-first mindset, including configuration-as-code practices.
Key Responsibilities
· Lead the technical design, configuration, testing, and onboarding of enterprise applications into the Saviynt IGA platform.
· Configure and maintain Saviynt security systems, endpoints, connections, workflows, roles, entitlements, tasks, analytics, jobs, email templates, and policies.
· Design and implement integrations using REST APIs, database connections, Active Directory or Microsoft Entra ID, HR data sources, flat files, and other supported integration patterns.
· Support identity lifecycle and access governance processes, including joiner, mover, and leaver events; access requests; approvals; birthright access; provisioning; deprovisioning; reconciliation; and access renewal.
· Implement and support SOX access controls, including User Access Approval (UAA), Revocation of User Access (RU), User Access Management (UAM), and Periodic User Access Review (PUAR).
· Support application owner and manager certification campaigns, role and entitlement governance, revocation tracking, completeness and accuracy validation, and audit evidence generation.
· Contribute to the migration of applications and access profiles from legacy access management platforms into IGA, including production validation, cutover, reconciliation, and retirement activities.
· Engineer scalable onboarding patterns for fully connected, hybrid, and manually connected applications while maintaining consistent governance and audit evidence.
· Troubleshoot complex issues involving identity data, account correlation, provisioning, job execution, workflows, APIs, entitlements, reconciliation, and platform performance.
· Develop reusable automation and configuration-as-code practices to improve deployment consistency, peer review, traceability, and recovery across IGA environments.
· Collaborate with application owners, cybersecurity compliance, HR, infrastructure, cloud, ServiceNow, and vendor teams to deliver end-to-end onboarding and production support.
· Prepare and maintain solution designs, configuration specifications, data mappings, test plans, runbooks, standard operating procedures, control documentation, and audit evidence.
· Participate in platform upgrades, release validation, change management, monitoring, incident resolution, root-cause analysis, and continuous service improvement.
· Provide technical guidance and knowledge transfer to junior engineers and managed-service or vendor resources.
Required Qualifications
· Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related field, or equivalent practical experience.
· 5+ years of experience in Identity and Access Management, including 2+ years of hands-on experience with an enterprise IGA platform such as Saviynt, SailPoint, or equivalent.
· Hands-on experience configuring IGA applications, connections, workflows, roles, entitlements, tasks, analytics, jobs, and access certification campaigns.
· Experience with REST APIs, JSON, SQL, scripting, data transformation, integration troubleshooting, and system-to-system reconciliation.
· Working knowledge of identity lifecycle management, role-based access control, least privilege, segregation of duties, access reviews, and provisioning and deprovisioning controls.
· Understanding of SOX access governance requirements, control execution, completeness and accuracy validation, audit evidence, and regulated change-management practices.
· Experience integrating with Active Directory or Microsoft Entra ID, ServiceNow, HR systems such as Workday, databases, and enterprise applications.
· Strong troubleshooting, debugging, analytical, documentation, and problem-solving skills.
· Ability to work effectively with global, cross-functional teams and communicate clearly with technical, business, compliance, and audit stakeholders.
Preferred Qualifications
· Hands-on experience with Saviynt Enterprise Identity Cloud or Saviynt SaaS and API-based application integrations.
· Experience with Terraform for configuration-as-code, including modular configuration, source control, peer review, environment promotion, state management, and deployment automation.
· Experience using Git-based development workflows and CI/CD pipelines to manage and deploy identity-platform configurations.
· Knowledge of Python, PowerShell, or another scripting language for automation, validation, reporting, and operational tooling.
· Experience with Workday identity or security-role integrations, Microsoft Entra ID governance or PIM, Active Directory group governance, and ServiceNow workflows.
· Experience supporting SOX UAA, RU, UAM, or PUAR controls and producing audit-ready reports and evidence.
· Knowledge of non-human identity, service account, privileged account, cloud entitlement, or infrastructure access governance.
· Experience with platform upgrades, SaaS release validation, production cutovers, monitoring, and operational support in a large enterprise.
· Experience working in regulated environments aligned with SOX, NIST, ISO/IEC 27001, or FedRAMP requirements.
· Saviynt certification or another relevant IAM, cloud, security, or infrastructure-as-code certification.
Job -
Data & Information TechnologySchedule -
Full timeShift -
No shift premium (India)Travel -
Relocation -
Equal Opportunity Employer (EEO) -
HP, Inc. provides equal employment opportunity to all employees and prospective employees, without regard to race, color, religion, sex, national origin, ancestry, citizenship, sexual orientation, age, disability, or status as a protected veteran, marital status, familial status, physical or mental disability, medical condition, pregnancy, genetic predisposition or carrier status, uniformed service status, political affiliation or any other characteristic protected by applicable national, federal, state, and local law(s).
Please be assured that you will not be subject to any adverse treatment if you choose to disclose the information requested. This information is provided voluntarily. The information obtained will be kept in strict confidence.
For more information, review HP’s EEO Policy or read about your rights as an applicant under the law here: “Know Your Rights: Workplace Discrimination is Illegal"
Job ID ef-hp-eightfold-ai-hp-com-27722812 · Original posting ↗
Similar jobs
Staff Identity Governance and Access Engineer3wOktaBellevue, Washington
- Identity Governance and Administration (IGA) Engineer3wCAP1009CAPGESan Antonio, Texas · Hybrid
- Engineering, Cybersecurity, Identity Governance and Administration (IGA), Principal6wTPG Careers PageFort Worth, Texas
Identity Governance and Administration (IGA) Engineer – SailPoint6moBarbaricumTampa, Florida