368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
$147k per year
Location
In office (San Francisco, Saint Louis, Cleveland, Chicago, New York, Kansas City, Boston, Atlanta, Minneapolis, Dallas, Charlotte, Richmond)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Reckitt is a British multinational consumer goods company headquartered in Slough, England, with corporate origins dating back to 1823. The company manufactures and markets a diverse portfolio of health, hygiene, and nutrition products including well-known brands such as Dettol, Lysol, Mucinex, Finish, and Enfamil. With a workforce of approximately 36,000 employees, the organization operates in 80 countries and distributes its products to nearly every nation worldwide.

Company

Federal Reserve Bank of RichmondWhen you join the Federal Reserve-the nation's central bank-you’ll play a key role, collaborating with leading tech professionals to strengthen and protect our economic, financial and payments systems. We invest in contemporary and emerging technology each year to support the Federal Reserve and our economy, and we’re building a dynamic and diverse team for our future.

The Senior IGA Engineer is responsible for designing, developing, integrating, testing, deploying, and supporting enterprise Identity Governance & Administration capabilities, with primary emphasis on Saviynt EIC. The role requires strong hands-on development skills across identity lifecycle management, access requests, provisioning, certifications, role/access modeling, application onboarding, APIs, connectors, workflows, and production troubleshooting. The engineer will translate security and business requirements into scalable, supportable IGA solutions across SaaS, cloud, and enterprise applications.

Essential Responsibilities:

  • Design, configure, develop, test, deploy, and maintain Saviynt EIC solutions supporting enterprise IGA use cases.
  • Build and enhance Joiner/Mover/Leaver (JML) lifecycle processes, birthright access, automated provisioning/deprovisioning, and termination controls.
  • Configure and develop access request workflows, approval chains, entitlement governance, access policies, roles, user manager structures, and delegated administration.
  • Develop and maintain access certification campaigns, reviewer logic, escalation paths, remediation workflows, and certification reporting.
  • Onboard SaaS, cloud, database, directory, and enterprise applications using Saviynt connectors and custom integration patterns.
  • Develop integrations using REST APIs, SCIM, JDBC/SQL, web services, file-based feeds, scripting, and other supported integration methods.
  • Create and troubleshoot Saviynt workflows, rules, analytics, jobs, tasks, connection configurations, imports, provisioning actions, and technical controls.
  • Implement and support RBAC, role engineering, entitlement structures, access policies, Segregation of Duties (SoD) controls, and least-privilege patterns.
  • Diagnose complex identity data, provisioning, reconciliation, connector, API, workflow, and performance issues across non-production and production environments.
  • Create reusable engineering patterns, technical documentation, configuration standards, runbooks, test evidence, and deployment procedures.
  • Partner with IAM architecture, cybersecurity, application owners, infrastructure, HR, audit, and engineering teams to deliver end-to-end identity solutions.
  • Participate in code/configuration reviews, release management, incident/problem management, root-cause analysis, and continuous platform improvement.
  • Mentor engineers and provide technical leadership on Saviynt implementation patterns, troubleshooting, and engineering quality.

Requirements

  • Hands-on Saviynt EIC development and configuration experience delivering production IGA capabilities at enterprise scale.
  • Ability to independently develop, configure, test, troubleshoot, and support Saviynt-not solely gather requirements, administer campaigns, or provide program governance.
  • Demonstrated experience building Saviynt application integrations and resolving connector, API, data mapping, reconciliation, import, and provisioning issues.
  • Hands-on implementation of identity lifecycle automation, including JML events, account creation, access changes, deprovisioning, and termination processing.
  • Hands-on experience with access requests, approval workflows, certifications, entitlement governance, and provisioning workflows.
  • Strong REST API, JSON, SQL, and integration troubleshooting skills.
  • Production support experience, including incident diagnosis, log analysis, root-cause analysis, defect remediation, and controlled releases.
  • Strong understanding of IAM/IGA principles including least privilege, RBAC, SoD, access governance, authoritative sources, identity correlation, and lifecycle controls.

Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Information Systems, Engineering, or a closely related technical discipline or equivalent relevant experience
  • 5+ years of professional experience in IAM, IGA, security engineering, application integration, or related identity engineering disciplines.
  • 2+ years of recent, hands-on Saviynt engineering/development experience, preferably with Saviynt EIC.
  • Experience integrating heterogeneous applications, including SaaS applications, directories, databases, cloud platforms, and custom/internal systems.
  • Proficiency with RESTful APIs, JSON, SQL, data transformations, authentication methods, and API troubleshooting tools.
  • Experience with SCIM and common identity integration patterns; familiarity with LDAP/Active Directory concepts is expected.
  • Experience with source-of-truth / authoritative identity feeds such as HR systems and with identity correlation and data quality remediation.
  • Ability to analyze complex technical problems across identity data, IGA platform configuration, target applications, and downstream provisioning components.
  • Experience working through software/engineering lifecycle activities: requirements refinement, design, build, test, peer review, deployment, documentation, and production support.
  • Strong written and verbal communication skills with the ability to work effectively across security, engineering, application, audit, and business teams.

Preferred skills:

  • Current Saviynt technical certification or formal Saviynt implementation training.
  • Experience with another enterprise IGA platform (for example SailPoint) in addition to Saviynt.
  • Experience with major cloud platforms such as AWS, Microsoft Azure, or Google Cloud and their identity/security integration patterns.
  • Experience integrating HR platforms such as Workday or other authoritative identity sources.
  • Experience with Privileged Access Management (PAM), non-human/service identities, or machine identity governance.
  • Experience with CI/CD, Infrastructure-as-Code, automated testing, or DevSecOps practices applied to IAM/IGA engineering.
  • Experience with Java/Groovy/Python/PowerShell or comparable scripting/programming used for integrations and automation.
  • Experience supporting regulatory or audit-driven access controls in environments subject to SOX, PCI DSS, HIPAA, financial-services, or similar requirements.
  • Experience with enterprise role engineering, access modeling, entitlement rationalization, and SoD rule design.
  • Experience leading complex application onboarding initiatives or mentoring IGA engineers.

Locations:

The selected candidate will reside within a reasonable commuting distance, as defined by the employing Reserve Bank, and will work full-time onsite.

  • Eligible Locations for Hire: Boston, MA- New York, NY- Philadelphia, PA- Cleveland, OH- Richmond, VA- Atlanta, GA- Chicago, IL- St. Louis, MO- Minneapolis, MN- Kansas City, MO- Dallas, TX- San Francisco, CA
  • The following Reserve Bank locations are preferred due to the concentration of System IT team members in these locations: San Francisco, CA & Richmond, VA

Base Salary Range: Min: $146,700 Mid: $190,500 Max: $234,300 (Location: San Francisco)

  • The listed salary is applicable to 12th District/San Francisco. Final offers are determined by factors including the candidate’s qualifications, internal alignment considerations, district assignment, and geographic location.

Sponsorship:

Individuals who need immigration sponsorship now or in the future are not eligible for this position.

Must be a U.S Citizen or a Green card holder with intent to become a U.S Citizen.

We offer a wonderful benefits package including: Medical, Dental, Vision, Pre-tax Flexible Spending Account, Backup Child Care Program, Pre-Tax Day Care Flexible Spending Account, Paid Family Care Leave, Vacation Days, Sick Days, Paid Holidays, Pet Insurance, Matching 401(k), and Retirement/Pension.

The Bank is committed to providing reasonable accommodations to individuals with disabilities to participate in the job application or interview process, perform essential job functions and receive other benefits and privileges of employment. The SF Fed is an Equal Opportunity Employer. If you need any assistance or accommodations due to a disability, please let us know at [email protected].

    Full Time / Part Time

    Full time

    Regular / Temporary

    Regular

    Job Exempt (Yes / No)

    Yes

    Job Category

    Information Technology Family Group

    Work Shift

    First (United States of America)

    The Federal Reserve Banks are committed to equal employment opportunity for employees and job applicants in compliance with applicable law and to an environment where employees are valued for their differences.

    Always verify and apply to jobs on Federal Reserve System Careers (https://rb.wd5.myworkdayjobs.com/FRS) or through verified Federal Reserve Bank social media channels.

    Privacy Notice

    Free account
    Stop reading job ads. Get the ones that fit.
    One free account turns this page into a shortlist built around your stack, your level and your pay.
    Match on every job. Stack, seniority, pay and location, scored against your profile.
    368,634 open roles. Read straight off company career pages, refreshed every day.
    Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
    3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
    Create a free account
    Free forever. No card. Under a minute.

    Your match

    How well do you fit this role?
    Two answers are enough for a real match. No account needed.
    Check my fit
    Answers stay in this browser until you create an account.

    Recommended for you based on this role

    Similar stack
    Same company
    San Francisco
    $144k – $319k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Birmingham • Atlanta
    DevOps
    IAM
    Cybersecurity
    Least Privilege
    Apply
    $191k – $297k per year • In office • Full-Time • 12+ years exp • Bachelor's Degree • Seattle
    AI/ML
    AI Agents
    DevOps
    AWS
    Azure
    CI/CD
    GCP
    IAM
    Platform Engineering
    Cybersecurity
    Least Privilege
    Microsoft Entra ID
    PCI DSS
    Threat Modeling
    Zero Trust
    Apply
    $109k – $242k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Birmingham • Atlanta
    DevOps
    IAM
    Apply
    $130k – $271k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Birmingham • Atlanta
    DevOps
    IAM
    Apply
    $112k – $225k per year (Estimated) • Remote/Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Birmingham • Atlanta
    DevOps
    IAM
    Apply
    $147k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • San Francisco • Richmond
    Java
    Node JS
    Python
    JavaScript
    Databases
    Amazon Aurora
    DynamoDB
    AI/ML
    Ray
    AI Agents
    DevOps
    Amazon EC2
    AWS
    AWS Fargate
    AWS Lambda
    Chaos Engineering
    CI/CD
    Configuration Management
    Datadog
    Docker
    GitOps
    Grafana
    Incident Management
    Kubernetes
    New Relic
    Splunk
    Terraform
    Amazon CloudWatch
    Amazon ECS
    Amazon S3
    API Gateway
    GitLab
    IAM
    Cybersecurity
    OWASP Top 10
    Apply
    $94k – $183k per year (Estimated) • In office • Full-Time • 3+ years exp • Boston
    Java
    Python
    Databases
    Amazon Aurora
    OpenSearch
    DevOps
    Amazon EC2
    Amazon EKS
    Ansible
    AWS
    CI/CD
    Consul
    Docker
    Dynatrace
    Grafana
    Prometheus
    Terraform
    Kubernetes
    Amazon CloudWatch
    Amazon S3
    IAM
    Cryptography
    Vault
    Apply
    $70k – $158k per year (Estimated) • Remote/Hybrid • Full-Time • 3+ years exp • Richmond • Saint Louis • Cleveland • Philadelphia • Chicago
    Apply
    Research Analyst 8 days ago
    $73k per year • In office • Full-Time • New York
    C++
    Java
    Julia
    MATLAB
    Python
    Apply
    $80k – $92k per year • In office • Full-Time • Richmond
    Apply
    $180k – $210k per year • Equity • In office • Full-Time • San Francisco
    Node JS
    JavaScript
    Databases
    PostgreSQL
    DevOps
    PagerDuty
    Web3
    TRM Labs
    Management
    Slack
    Apply
    $252k – $335k per year • Remote/Hybrid • Full-Time • 8+ years exp • San Francisco
    AI/ML
    ChatGPT
    Human-in-the-Loop
    OpenAI
    OpenAI Codex
    DevOps
    SLI/SLO/SLA
    Apply
    $223k – $424k per year (Estimated) • In office • Bachelor's Degree • San Francisco
    AI/ML
    AI Agents
    LLM
    Recommender Systems
    Apply
    $160k – $283k per year • Equity • In office • 5+ years exp • San Francisco
    AI/ML
    AI Agents
    Apply
    $185k – $385k per year • Remote/Hybrid • Full-Time • 5+ years exp • San Francisco
    JavaScript
    Python
    Databases
    MySQL
    PostgreSQL
    AI/ML
    OpenAI
    Frontend
    React.js
    Apply
    See all jobs
    This is one of many
    368,634 more open roles from verified company boards, updated every day.