About this role
Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
Information Security and Risk develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our Workforce Identity team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our global workforce and enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. By automating lifecycle events, integrating HR systems, and building intuitive self-service pathways, you will directly influence workforce productivity, security posture, and overall onboarding experience. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills.
Responsibilities:
M&A and IGA Integration
- Lead IAM discovery, identity migration, and system consolidation for newly acquired business entities.
- Direct experience migrating users, mapping attributes, and consolidating divergent directories.
IGA Integrations
- Application Onboarding : Design, develop, and configure SailPoint connectors for Active Directory (AD), JDBC, and Web Services (REST/SOAP).
- Authoritative Source Integration : Design and implement seamless integrations with HRMS platforms (e.g., Workday, SuccessFactors, PeopleSoft) to drive the identity lifecycle.
- Automated Provisioning : Configure and maintain Birthright provisioning to ensure immediate, policy-driven access for joiners on day one.
- Compliance & Governance : Construct, schedule, and optimize Access Reviews and Certification campaigns.
- Custom Development : Write clean Java code, BeanShell scripts, and rules (Correlation, Exclusion, Customization) within SailPoint IdentityIQ.
- Cross-Tool Collaboration : Integrate SailPoint with broader IAM ecosystem tools including Okta (IDP) and CyberArk (PAM).
- Process Automation : Automate lifecycle events (Joiner, Mover, Leaver) and request-based provisioning workflows.
- Role Management: Design, implement, and maintain Role-Based Access Control (RBAC) models, including IT and business roles.
- Framework Management: Utilize SailPoint Services Build (SSB) and SailPoint Services Deployment (SSD) for code management and deployment.
- Platform Maintenance: Execute SailPoint platform upgrades, patch installations, and hotfix deployments to ensure system stability.
Directory Services & Lifecycle Management
- Manage and optimize hybrid Active Directory (AD) and LDAP environments.
- Govern the end-to-end User Lifecycle Management (LCM) process.
- Ensure data integrity and synchronization across HRIS, downstream applications, and directories.
- Solution Design & Implementation: Design, implement, and maintain IAM solutions including IGA.
- Security & Compliance: Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
- Technical Troubleshooting & Support: Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
- Collaboration & Communication: Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
- Documentation & Best Practices: Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up to date with IAM best practices, regulatory requirements, and security trends.
Qualifications:
- Education: Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
- Experience: 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
- Technical Expertise: Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
- Connector Proficiency : Proven track record onboarding complex targets via Web Services, JDBC, and AD.
- Hands-on experience with leading IAM platforms (SailPoint, Saviynt or similar IGA tools).
- Development Skills : Strong programming capabilities in Java , BeanShell , JavaScript, or PowerShell scripting.
- Framework & Build Tools : Hands-on proficiency with SailPoint SSB and SSD methodologies.
- Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
- Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
- Directory Services: Strong command of Active Directory, Azure AD, LDAP, and group policy management.
- Scripting/Automation: Proficiency in PowerShell, Python, or bash for automating IAM tasks.
- M&A Track Record: Proven experience migrating or merging user populations under tight deadlines. Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
- Detail-oriented mindset to ensure precise access control configurations and compliance.
- Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
- Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
- Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
- Adaptability to stay ahead of evolving IAM technologies and security threats.
Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.
To read and review this privacy notice click here