IGA/Saviynt Principal Engineer - VIRTUAL USA
Alight SolutionsAbout the role
Our story
At Alight, we believe a company’s success starts with its people. At our core, we Champion People, help our colleagues Grow with Purpose and true to our name we encourage colleagues to “Be Alight.”
Our Values:
Champion People – be empathetic and help create a place where everyone belongs.
Grow with purpose – Be inspired by our higher calling of improving lives.
Be Alight – act with integrity, be real and empower others.
It’s why we’re so driven to connect passion with purpose. Alight helps clients gain a benefits advantage while building a healthy and financially secure workforce by unifying the benefits ecosystem across health, wealth, wellbeing, absence management and navigation.
With a comprehensive total rewards package, continuing education and training, and tremendous potential with a growing global organization, Alight is the perfect place to put your passion to work.
Join our team if you Champion People, want to Grow with Purpose through acting with integrity and if you embody the meaning of Be Alight.
Learn more at careers.alight.com
The Principal Engineer is a key member of the Identity Security Team. They will work closely with Identity Security product owners, Identity Security architecture team, and business application owners to design and implement automated provisioning and access governance solutions using Alight’s suite of Identity Security tools including Saviynt EIC, Saviynt CPAM, Radiant Logic Identity Analytics, and Ping DaVinci. The Principal Engineer will lead a team of engineers and will be expected to execute all aspects of automation projects including customer use case collection, design, development, and documentation. In addition, they will identify opportunities and implement solutions to improve availability, performance, efficiency, monitoring and response, as well as design, implement and manage Disaster Recovery strategy within their services. Finally, the Principal Engineer will work with Identity Security leadership to fine-tune the makeup and skillsets of the Identity Security Engineering team as it matures.
Key Responsibilities:
- Develop a deep understanding of technology and process related to Identity & Access Management, SSO/MFA and Privileged Access Management (PAM) Operations.Identify inefficiencies and design solutions to remediate.
- Contribute to the creation of both short term (current year) and long-term Identity Security roadmap.
- Design and develop automated provisioning solutions as defined on Identity Security roadmap.
- Act as a subject matter expert on both the concepts and technology related to Identity Security.
- Implement solutions to improve observability, performance, and recoverability across the Identity Security technology stack.
- Build and maintain Disaster Recovery plans.
- Identify, build, and maintain meaningful metrics to track KPIs related to performance and process automation.
- Translate architectural/strategic vision into application specific technical design.
- Create and maintain documentation / reference architecture.
Basic Qualifications:
B.S. degree in a computer science, information technology, computer related discipline or 10+ years IT work experience in a global information technology infrastructure environment, with at least 7 years working in Identity Governance / Access Management space.
Required Skills and Experience:
- Experiencing implementing provisioning automation with Saviynt EIC.
- Deep understanding of SSO/MFA and Privileged Access Management concepts and technology.
- Working knowledge of Site Reliability and Disaster Recovery concepts and technology.
- Experience working with cloud infrastructure solutions (ex. AWS, Azure).
- Experience with Python, Java, and PowerShell scripting.
- Team player with proven leadership, communication, organizational, and strong interpersonal skills. The role requires significant interaction with many different teams, with overlapping responsibilities, across a global company.
- Experience working in AWS Landing Zone
Desired Skills:
- Experience with Okta Advanced Server Access, Saviynt CPAM, and/or CyberArk.
- Experience with Ping Federate, Ping Access, and Ping ID
- Familiarity with AWS Native access management tools.
- Familiarity wi
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s