Sr Systems Engineer - IAM
Early WarningAbout the role
At Early Warning, we’ve powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.
Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.
Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.
Overall Purpose
The Senior Systems Engineer - IAM sits within the Identity Platform Engineering team, part of the broader Identity and Access Management department, and serves as the technical anchor for Early Warning's Identity Governance and Administration (IGA) platform. This role leads the discovery, design, delivery, and operational health of Saviynt Enterprise Identity Cloud (EIC) and the governance controls that determine how identities are provisioned, certified, and constrained across a regulated financial technology environment.
This is a hands on, deeply specialized position rather than a generalist infrastructure role. The engineer is accountable for architecting access models, hardening segregation of duties controls, maintaining accurate technical documentation of supported systems, participating in audit and compliance activities, and serving as a subject matter expert in identity and access management. The role also carries a mandate to prototype new solutions to identity challenges, optimize existing systems, and evaluate emerging technologies as they become available.
Essential Functions
Platform Ownership and Engineering
Owns the architecture, configuration, and operations of the Saviynt EIC platform, including access request, certification, and lifecycle management modules.
Provides operational excellence for the identity governance platform including version maintenance, vulnerability management, patching, and overall platform health.
Proactively monitors and maintains identity platform security assurances such as threat detection, user behavior analytics, and privileged user monitoring.
Builds and manages connectors and integrations across directories, cloud platforms, databases, and enterprise applications, including Active Directory, Entra ID, Okta, ServiceNow, Workday, SAP, cloud infrastructure, and custom REST based endpoints.
Authors PowerShell, Python, and other scripts to automate repetitive tasks and extend platform capability.
Governance, Controls, and Risk
Designs and maintains identity governance controls including access certification and attestation campaigns, segregation of duties (SoD) rulesets, role based and attribute based access models (RBAC and ABAC), and least privilege enforcement.
Automates the full identity lifecycle covering joiner, mover, and leaver events, including provisioning, deprovisioning, and access reconciliation, minimizing manual intervention and standing access.
Ensures just in time and just enough access is enforced without hindering productivity or user experience.
Develops and tunes workflows, rules, analytics, and reporting to detect access risk and drive remediation.
Partners with internal audit, risk, and compliance to support control testing and evidence collection for regulatory frameworks relevant to financial services, including SOX, PCI DSS, GLBA, and related audit obligations.
Design, Delivery, and Quality
Gathers requirements from business, security, and audit stakeholders, decomposes them into discrete technical components, and translates them into usable solutions incorporated into platform design.
Establishes repeatable and reusable frameworks, patterns, and reference designs so that solutions scale consistently rather than being rebuilt for each use case.
Plans and executes both manual and automated testing across configurations, integrations, and workflows, validating that solutions meet functional, security, and compliance requirements before release.
Leads root cause analysis and resolution of complex identity issues spanning provisioning failures, entitlement drift, and integration breaks.
Defines technical standards, patterns, and documentation that make the platform sustainable and repeatable as it scales.
Collaboration and Leadership
Continu
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s