JobsCloseBy Editorial Insights
An exciting senior IAM Engineer opportunity in Eindhoven focuses on SailPoint IdentityIQ and policy engines, secure onboarding, policy-driven access control, and automation across a complex enterprise IAM landscape. You will own the onboarding lifecycle for new applications, design RBAC ABAC and PBAC models, and work with OPA or OPAL or similar engines while integrating with LDAP, REST/SOAP, SCIM, databases, Okta, Workday, SAP and more, all while contributing to CI/CD and DevOps pipelines. The role requires 7+ years in IAM, hands-on IdentityIQ development, strong governance and communication skills, and hybrid onsite work. For applicants, tailor your resume to show end-to-end onboarding, advanced policy logic, lifecycle management, cross-functional collaboration, security framework expertise, and immediate availability.
Senior IAM Engineer – SailPoint IdentityIQ & Policy Engine Technologies
Eindhoven, NL
Start: ASAP 6‑Month Contract
Req ID: 10928992
Role Overview
A major enterprise in the Netherlands is expanding its Identity & Access Management capability and is seeking a Senior IAM Engineer to strengthen its SailPoint IdentityIQ platform. This role focuses on secure onboarding of applications, policy-driven access control, and automation of IAM processes across a complex, integrated environment.
You will work closely with architects, product owners, and integration teams to ensure that IAM onboarding is standardized, compliant, and fully aligned with enterprise security frameworks.
What You Will Do
Application Onboarding & IAM Architecture
- Own the full onboarding lifecycle for new applications entering the IAM ecosystem.
- Translate business requirements into IAM configurations that follow architectural standards.
- Implement onboarding patterns and ensure consistency across all integrations.
Access Control & Policy Engineering
- Build and refine RBAC, ABAC, and PBAC models.
- Work with OPA/OPAL or similar policy engines to support policy-based access decisions.
- Develop complex rules, workflows, and policies within SailPoint IdentityIQ.
Identity Lifecycle & Certification
- Support Joiner/Mover/Leaver processes.
- Manage certification campaigns and enforcement activities.
- Ensure entitlement and authorization processes follow governance standards.
Integration & Automation
- Validate integrations with LDAP, REST/SOAP, SCIM, databases, Okta, Workday, SAP Suite, and other systems.
- Contribute to CI/CD automation and DevOps pipelines.
- Identify opportunities to improve IAM processes and technology.
Agile Delivery & Stakeholder Engagement
- Participate in Scrum/SAFe ceremonies.
- Work closely with application owners, security teams, and external vendors.
- Provide clear communication, risk reporting, and progress updates.
Required Experience
- 7+ years in IAM engineering
- Strong hands-on SailPoint IdentityIQ development
- Experience with RBAC/ABAC/PBAC frameworks
- Policy engine experience (OPA/OPAL preferred)
- Workflow, rules, policies, forms development
- CI/CD automation & DevOps practices
- Strong communication and consultancy skills
- Solid understanding of security frameworks and entitlement processes
Bonus Skills
- Java, Beanshell, JavaScript
- Azure, Linux
- Experience with large-scale IAM programs
- Integration experience across HR, SaaS, and enterprise systems
Location
Eindhoven, Netherlands
Hybrid/Onsite depending on project requirements.
Ideal Candidate
You are a senior IAM professional who thrives in complex environments, understands both the technical and governance aspects of Identity Access Management, and can deliver high-quality onboarding solutions with precision and consistency.