MathWorks logo

Senior Sailpoint IAM Engineer

MathWorks

Natick, MA · HybridJob$122–190K/yrSeen 2mo agoSeen in employer's feed 4 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
$122–190K/yr
Location
Natick, MAHybrid
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

Bachelor's degree

Job overview

MathWorks is hiring a Senior Sailpoint IAM Engineer. MathWorks is seeking a Senior SailPoint IAM Engineer to join their Identity and Access Management team. This role involves leading the implementation and improvement of the SailPoint platform, defining how identities, accounts, entitlements, roles, access requests, certifications, and lifecycle events are governed. The ideal candidate will possess deep SailPoint expertise, strong IAM skills, and a DevOps mindset to build reliable, repeatable, and well-managed identity services.

Key focus areas include Design and evolve SailPoint Identity Security Cloud (ISC) solutions supporting identity lifecycle management, access requests, provisioning, certification, and governance workflows., Define scalable application onboarding and integration patterns for ISC using APIs, SCIM, and modern identity standards across enterprise and cloud ecosystems., and Partner with business, application, security, and compliance stakeholders to onboard applications and establish consistent, enterprise-wide governance models..

Successful candidates bring Bachelor's Degree And 6 Years Professional Work Experience, Master's Degree And 3 Years Professional Work Experience, and PhD Degree. Important skills include SailPoint Identity Security Cloud, Identity Modeling, Source Onboarding, Access Requests, Provisioning, and Certifications. Preferred (not required): End-to-End Identity Architectures, OAuth 2.0, OpenID Connect, and Identity Governance Solutions Design.

Skills & qualifications

RequiredNice to have

Skills

SailPoint Identity Security CloudIdentity ModelingSource OnboardingAccess RequestsProvisioningCertificationsPoliciesWorkflowsLifecycle DesignIAM Solution ArchitectureSailPoint ISC ImplementationsEnd-to-End Identity ArchitecturesIntegration PatternsAPIModern StandardsRBACABACBirthright AccessSegregation of DutiesLeast PrivilegeDevOpsCI/CD PipelinesSource ControlAutomated ValidationGoverned Deployment ModelsIdentity Data ManagementCorrelationEntitlement ModelingPolicy EnforcementIAM AutomationAPI-Driven IntegrationScriptingSAMLOAuth 2.0OpenID ConnectSCIMLDAPSQLActive DirectoryIdentity Governance Solutions DesignIAM SkillsApplication OnboardingAccess Control FrameworksGoverned Release ProcessesMonitoringLoggingConfiguration ManagementStructured Environment SeparationTroubleshooting Complex Identity FlowsSupporting Audit and Compliance Needs

Qualifications

Bachelor's Degree and 6 Years Professional Work ExperienceMaster's Degree and 3 Years Professional Work ExperiencePhD DegreeEquivalent Experience5+ Years Enterprise Identity and Access Management ExperienceExperience Integrating ISC With HR SystemsExperience Integrating ISC With DirectoriesExperience Integrating ISC With ITSM PlatformsExperience Integrating ISC With Business Applications

Full job description

Team: Information Technology

Location: US-MA-Natick

Salary Range: USD 189,600 - 122,300

Job Summary

MathWorks has a hybrid work model that enables staff members to split their time between office and home. The hybrid model provides the advantage of having both in-person time with colleagues and flexible at-home life optimizations. Learn More: https://www.mathworks.com/company/jobs/resources/applying-and-interviewing.html#onboarding.

Do you enjoy designing identity governance solutions that strengthen security, simplify access, and help the business move faster?

Join our Identity and Access Management team, which is responsible for the enterprise identity services that enable secure and reliable access across MathWorks. Our team supports a broad portfolio that includes identity lifecycle and governance, directory services, authentication and access management, privileged access, non-human and workload identities, and security awareness capabilities. We work closely with IT, Security, Compliance, and Business teams, and application owners to deliver identity services that are secure, scalable, automated, and aligned with business needs.

We are looking for a Senior SailPoint IAM engineer to help drive the i mplementation, and ongoing improvement of our SailPoint platform as a key part of our IAM portfolio. This role will help define how identities, accounts, entitlements, roles, access requests, certifications, and lifecycle events are governed across the enterprise. The ideal candidate will combine deep SailPoint expertise with strong IAM skills and a DevOps mindset for building reliable, repeatable, and well-managed identity services.

MathWorks nurtures growth, appreciates inclusivity, encourages initiative, values teamwork, shares success, and rewards excellence.

Responsibilities

  • Design and evolve SailPoint Identity Security Cloud (ISC) solutions supporting identity lifecycle management, access requests, provisioning, certification, and governance workflows.

  • Define scalable application onboarding and integration patterns for ISC using APIs, SCIM, and modern identity standards across enterprise and cloud ecosystems.

  • Partner with business, application, security, and compliance stakeholders to onboard applications and establish consistent, enterprise-wide governance models.

  • Architect and implement access control frameworks, including birthright access, RBAC, ABAC, segregation of duties, and least privilege principles.

  • Apply DevOps and engineering practices to ISC platform delivery, including CI/CD pipelines, source control, automated validation, and governed release processes.

  • Improve platform reliability and scalability through automation, monitoring, logging, configuration management, and structured environment separation.

  • Provide technical leadership through troubleshooting complex identity flows, supporting audit and compliance needs, and mentoring IAM team members on secure, sustainable IAM design practices.

  • Share responsibility for the ongoing operation of the SailPoint platform, including service monitoring, incident and problem resolution, production support, maintenance, upgrades, and continuous operational improvement.

Minimum Qualifications

  • A bachelor's degree and 6 years of professional work experience (or a master's degree and 3 years of professional work experience, or a PhD degree, or equivalent experience) is required.

Additional Qualifications

A successful candidate for this role will have a combination of some or all the following skills/experience:

  • 5+ years of experience in enterprise Identity and Access Management, including Identity Governance and Administration.

  • Deep expertise in SailPoint Identity Security Cloud (ISC), including identity modeling, source onboarding, access requests, provisioning, certifications, policies, workflows, and lifecycle design.

  • Proven experience with SailPoint ISC implementations in large, complex enterprise environments.

  • Experience with end‑to‑end identity architectures covering lifecycle management, governance, provisioning, and integration patterns.

  • Experience integrating ISC with enterprise ecosystems, including HR systems, directories, ITSM platforms, and business applications using APIs and modern standards.

  • Expertise designing and implementing access control models such as RBAC, ABAC, birthright access, segregation of duties, and least privilege.

  • Strong experience applying DevOps and engineering practices to IAM, source control, automated validation, and governed deployment models.

  • Deep understanding of identity data management, correlation, entitlement modeling, and policy enforcement at enterprise scale.

  • Strong technical capability in IAM automation, API-driven integration, and extensibility using scripting and modern integration patterns, with working knowledge of federation and provisioning standards including SAML, OAuth, OIDC, SCIM, LDAP, SQL, ReST Apis, and Active Directory.

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.