UKG

Information Security Engineer III- Eng (Saviynt PAM & IGA)

UKG · Noida, Uttar Pradesh, India

Software Development · 10,001+ employees

4 d ago
Senior (5-10 yrs) Full-time India
Log in to apply, save this posting, or score it against your profile with AI.

About the role

Design, implement, and support Saviynt PAM and IGA solutions while managing identity lifecycle and privileged access governance. Collaborate with cross-functional teams to integrate enterprise applications and ensure high availability through automation and troubleshooting.

What they look for

Saviynt Identity Cloud Privileged Access Management Identity Governance & Administration Identity Lifecycle Management Access Provisioning RBAC Active Directory Microsoft Entra ID REST APIs SCIM LDAP SQL PowerShell Python Cloud Platforms Zero Trust

Requirements

Requires a bachelor's degree in a relevant field and 5-9 years of experience in Identity & Access Management or Cybersecurity. Candidates must have hands-on experience with Saviynt, identity governance principles, and proficiency in scripting languages like PowerShell or Python.

Full description

About the Role

UKG is seeking an experienced Information Security Engineer III to join our Identity & Access Management (IAM) team. The ideal candidate will have hands-on experience with Saviynt Privileged Access Management (PAM) and Identity Governance & Administration (IGA) to help design, implement, and support enterprise identity security solutions. You will collaborate with cross-functional teams to strengthen UKG's security posture through secure access management, automation, and governance across on-premises and cloud environments.

Key Responsibilities

  • Design, implement, and support Saviynt PAM and IGA solutions.
  • Configure and manage privileged account onboarding, credential vaulting, password rotation, access request workflows, and privileged session management.
  • Implement and support identity lifecycle management, access provisioning/deprovisioning, access certifications, RBAC, and segregation of duties (SoD) controls within Saviynt.
  • Integrate Saviynt with enterprise applications, Active Directory, Microsoft Entra ID, cloud platforms, databases, and infrastructure using connectors, REST APIs, SCIM, LDAP, and JDBC.
  • Develop and maintain automation scripts to improve IAM/PAM operational efficiency.
  • Troubleshoot platform, connector, provisioning, and integration issues while ensuring high availability and performance.
  • Collaborate with Security, Infrastructure, Cloud, Compliance, and Application teams to onboard applications and privileged accounts.
  • Support platform upgrades, release activities, audit requests, and compliance initiatives.
  • Create technical documentation, operational runbooks, and knowledge articles.
  • Mentor junior team members and contribute to continuous improvement of IAM engineering practices.

Required Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 5–9 years of experience in Identity & Access Management (IAM), Information Security, or Cybersecurity.
  • Hands-on experience implementing and administering Saviynt Identity Cloud, including PAM and IGA capabilities.
  • Experience with identity lifecycle management, provisioning, access requests, certifications, RBAC, SoD, and privileged access governance.
  • Strong understanding of PAM concepts, Identity Governance, Zero Trust, and least-privilege principles.
  • Experience integrating enterprise applications using REST APIs, SCIM, LDAP, JDBC, and web services.
  • Experience with Active Directory, Microsoft Entra ID, Windows, Linux, and cloud platforms (AWS, Azure, or GCP).
  • Knowledge of authentication and federation standards, including SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), and LDAP.
  • Experience with SQL and scripting using PowerShell, Python, or Shell.
  • Strong analytical, troubleshooting, communication, and collaboration skills.

Preferred Qualifications

  • Experience integrating ServiceNow and enterprise security tools.
  • Familiarity with Agile methodologies and DevSecOps practices.
  • Knowledge of compliance frameworks such as SOX, SOC 2, ISO 27001, PCI DSS, and GDPR.
  • Relevant certifications such as Saviynt Certified Engineer/Professional, CISSP, Security+ or similar.

Technical Skills

  • Saviynt Identity Cloud (PAM & IGA)
  • Identity Lifecycle Management
  • Access Provisioning & Certifications
  • Privileged Access Management
  • Role-Based Access Control (RBAC)
  • Segregation of Duties (SoD)
  • Active Directory & Microsoft Entra ID
  • REST APIs, SCIM, LDAP, JDBC
  • SQL
  • PowerShell, Python, Shell Scripting
  • Windows & Linux Administration
  • AWS, Azure, or GCP
  • SAML 2.0, OAuth 2.0, OpenID Connect (OIDC)

Why UKG

At UKG, you'll help build and secure enterprise identity solutions that protect millions of users worldwide while working with modern cloud technologies and a collaborative, people-first engineering culture.