SailPoint ISC Lead / Architect – Hands-on IGA Operations & Engineering

SailPoint ISC Lead / Architect – Hands-on IGA Operations & Engineering

SailPoint ISC Lead / Architect – Hands-on IGA Operations & Engineering

Location: Remote, India
Employment Type: Full-Time / Contract

About BLS360

BLS360 is a cybersecurity and digital transformation company focused on Identity and Access Management (IAM), Identity Governance and Administration (IGA), and enterprise identity security. We help organizations strengthen security, streamline identity processes, and deliver scalable, security-first transformation solutions.

About the Role

BLS360 is seeking an experienced SailPoint Identity Security Cloud (ISC) Lead / Architect with strong hands-on technical expertise and end-to-end ownership of IAM/IGA solutions.

This is a hands-on technical leadership role combining SailPoint ISC platform architecture, engineering, production operations, troubleshooting, enhancements, automation, and continuous improvement. The ideal candidate will have deep knowledge of the SailPoint ISC platform, identity lifecycle management, access governance, provisioning, certifications, application integrations, and enterprise IAM operations.

The successful candidate will wear multiple hats—acting as a technical lead, solution architect, developer, production support lead, and trusted advisor to business and technical stakeholders. The role requires someone who can independently analyze issues, design solutions, implement changes, automate repetitive activities, and ensure the stability, scalability, and effectiveness of the IAM/IGA environment.

Key Responsibilities

1. SailPoint ISC Platform Ownership & Architecture

  • Own the end-to-end technical design, implementation, configuration, and ongoing optimization of SailPoint Identity Security Cloud.

  • Serve as the technical lead and hands-on subject matter expert for ISC architecture, platform capabilities, integrations, and governance processes.

  • Translate business, security, audit, and compliance requirements into scalable IAM/IGA solutions.

  • Establish platform configuration standards, reusable design patterns, technical documentation, and operational best practices.

  • Evaluate platform capabilities and recommend improvements to strengthen identity security, governance, and operational efficiency.

2. IAM/IGA Operations & Production Support

  • Manage day-to-day SailPoint ISC operations, including identity lifecycle processing, aggregation, provisioning, access requests, certifications, and workflow execution.

  • Monitor and troubleshoot failed aggregations, provisioning transactions, identity refreshes, lifecycle events, workflows, and application integrations.

  • Perform root-cause analysis for recurring production issues and implement permanent corrective and preventive actions.

  • Manage production incidents, service requests, problem records, change requests, and operational escalations in accordance with established SLAs.

  • Support access governance, audit evidence collection, compliance reporting, and remediation of access-related findings.

  • Maintain operational runbooks, support procedures, knowledge articles, and platform health dashboards.

3. Identity Lifecycle Management & Provisioning

  • Design and maintain joiner, mover, leaver (JML) processes and other identity lifecycle events.

  • Configure authoritative sources, identity profiles, correlation rules, identity attributes, lifecycle states, and provisioning logic.

  • Implement and maintain birthright access, access request processes, approval workflows, provisioning policies, and deprovisioning controls.

  • Manage identity correlation, account aggregation, entitlement aggregation, account provisioning, and access removal.

  • Support complex scenarios such as rehires, transfers, contractor onboarding, contractor-to-employee conversion, multiple accounts, and identity data corrections.

4. Application Onboarding & Integrations

  • Lead end-to-end onboarding of enterprise applications into SailPoint ISC, from requirements gathering and connector selection to configuration, testing, deployment, and operational handover.

  • Integrate ISC with enterprise systems, including:

    • Active Directory and LDAP

    • Microsoft Entra ID

    • Workday and other HR systems

    • ServiceNow

    • SAP and enterprise business applications

    • Databases, REST APIs, Web Services, SaaS platforms, and custom applications

  • Configure and troubleshoot source and target integrations, account aggregation, entitlement aggregation, provisioning, and connector-specific functionality.

  • Develop and maintain custom integrations using REST APIs, supported connector capabilities, scripts, and other appropriate integration mechanisms.

  • Work with application owners and infrastructure teams to resolve connectivity, authentication, permissions, data mapping, and provisioning issues.

5. Enhancements, Automation & Engineering

  • Lead continuous enhancements to existing SailPoint ISC implementations, including identity processes, workflows, provisioning, access governance, and application integrations.

  • Automate repetitive IAM operational activities to reduce manual effort, improve consistency, and minimize errors.

  • Design and implement automation using SailPoint ISC APIs, supported workflows and transforms, PowerShell, Python, and other appropriate scripting or integration tools.

  • Develop and maintain workflows, transforms, rules where supported, provisioning configurations, access profiles, and other ISC platform components.

  • Improve operational efficiency through standardized onboarding patterns, reusable configurations, automated validation, and repeatable deployment practices.

  • Evaluate new ISC capabilities and platform releases, assess their impact, and implement improvements where appropriate.

  • Support version-controlled configuration, CI/CD practices, automated testing, and controlled promotion of changes across environments where supported.

6. Access Governance, Certifications & RBAC

  • Design, configure, and support access reviews, certification campaigns, access request governance, approval processes, and remediation workflows.

  • Develop and maintain roles, access profiles, entitlement models, birthright access, and role-based access control (RBAC) capabilities.

  • Support role engineering, role mining, entitlement rationalization, and access model optimization.

  • Implement governance controls aligned with least privilege, segregation of duties (SoD), audit requirements, and organizational policies.

  • Analyze access patterns and recommend improvements to reduce excessive access, orphaned accounts, and inappropriate entitlements.

  • Support compliance initiatives and provide technical evidence for internal and external audits.

7. Technical Leadership & Stakeholder Collaboration

  • Lead technical discussions, requirements workshops, solution design sessions, code/configuration reviews, and implementation planning.

  • Collaborate with IAM operations, application teams, HR, infrastructure, cybersecurity, audit, and compliance stakeholders.

  • Mentor engineers and administrators, provide technical guidance, and promote consistent implementation and support practices.

  • Independently manage assigned deliverables, prioritize competing operational and project demands, and communicate risks and dependencies.

  • Support technical assessments, effort estimation, implementation planning, testing, production releases, and knowledge transfer.

Required Skills & Qualifications

  • 12+ years of experience in Identity and Access Management (IAM) and Identity Governance and Administration (IGA).

  • 8+ years of hands-on experience with SailPoint IdentityNow / Identity Security Cloud (ISC), including implementation, configuration, integration, and production support.

  • Strong understanding of ISC core platform capabilities, architecture, identity processing, lifecycle management, access governance, and provisioning.

  • Proven experience supporting and enhancing production IAM/IGA environments, including incident troubleshooting, root-cause analysis, and operational improvements.

  • Hands-on experience with application onboarding, source configuration, account and entitlement aggregation, identity correlation, and provisioning.

  • Strong knowledge of identity profiles, lifecycle states, transforms, workflows, access profiles, roles, access requests, certifications, and provisioning policies.

  • Experience with SailPoint ISC APIs, REST APIs, JSON, and integration troubleshooting.

  • Proficiency in PowerShell, Python, Java, BeanShell, or other relevant scripting and programming technologies, with the ability to select the appropriate technology for each use case.

  • Experience integrating SailPoint with Active Directory, Entra ID, Workday, ServiceNow, SAP, databases, SaaS platforms, and custom applications.

  • Understanding of RBAC, least privilege, segregation of duties, access certification, compliance, and identity security best practices.

  • Ability to independently troubleshoot complex IAM issues across identity data, connectors, workflows, provisioning, and downstream applications.

  • Strong analytical, problem-solving, communication, documentation, and stakeholder management skills.

  • Ability to work independently while balancing architecture, engineering, operations, and enhancement responsibilities.

Preferred Qualifications

  • SailPoint IdentityNow / Identity Security Cloud certification.

  • Experience implementing automation for IAM operations, application onboarding, provisioning, and governance processes.

  • Experience with Git, CI/CD pipelines, configuration management, and automated testing.

  • Experience integrating IAM workflows with ServiceNow or other IT service management platforms.

  • Familiarity with SailPoint IdentityIQ and broader enterprise IAM technologies, including SSO, MFA, directory services, and privileged access management.

  • Experience in regulated environments such as financial services, healthcare, or other industries with stringent audit and compliance requirements.

  • Experience leading small technical teams, mentoring engineers, and serving as a hands-on IAM/IGA technical lead.

Why Join BLS360?

  • Work on enterprise IAM/IGA implementation, engineering, and transformation initiatives.

  • Take ownership of meaningful technical challenges across architecture, operations, automation, and governance.

  • Collaborate with experienced cybersecurity and identity specialists.

  • Build expertise in modern identity security technologies and enterprise-scale solutions.

  • Contribute to a collaborative, learning-oriented environment focused on long-term professional growth.



"At BLS360, we believe in empowering talent to innovate and grow. Here, your ideas matter, and every contribution makes an impact. Join us to work on meaningful projects, learn continuously, and be part of a team that shapes the future."

"At BLS360, we believe in empowering talent to innovate and grow. Here, your ideas matter, and every contribution makes an impact. Join us to work on meaningful projects, learn continuously, and be part of a team that shapes the future."

"At BLS360, we believe in empowering talent to innovate and grow. Here, your ideas matter, and every contribution makes an impact. Join us to work on meaningful projects, learn continuously, and be part of a team that shapes the future."