Senior IAM Engineer
Medibank · Docklands, VIC, AU
Apply directly on Medibank’s careers site — no account needed.
About the role
About the role:
We’re hiring an experienced IAM Engineer with deep, hands-on experience designing, implementing and operating enterprise-scale SailPoint Identity solutions. In this role you’ll deliver automated identity lifecycle (JML) workflows, scalable role and entitlement models, access governance, and complex IIQ customizations. Complementary experience with CyberArk PAM and Microsoft Entra ID (Azure AD) is essential to support identity security and Zero Trust alignment. You’ll work across security, cloud and infrastructure teams to deploy secure, compliant and automated IAM capabilities.
Key responsibilities
- Design, build and maintain end-to-end Joiner/Mover/Leaver (JML) workflows in SailPoint IdentityIQ.
- Develop IIQ rules, workflows, connectors, lifecycle events
- Create scalable role models and entitlement structures that enforce least privilege.
- Plan and run access certification campaigns: scoping, scheduling, remediation, reporting.
- Onboard applications to SailPoint: entitlement mapping, provisioning logic and reconciliation.
- Integrate SailPoint with directories and SaaS apps via REST APIs, JDBC, AD, LDAP and custom connectors.
- Troubleshoot and resolve complex provisioning, de-provisioning and reconciliation issues across hybrid environments.
- Automate operational tasks, improve governance via policy/process/solution enhancements.
- Support platform upgrades, performance tuning, health fixes and CI/CD deployment pipelines.
- Align Entra role governance with SailPoint access structures; support SSO/federation (SAML, OAuth2, OIDC).
- Contribute to Conditional Access policy refinement and identity risk investigations.
- Support CyberArk PAM onboarding, credential rotation, API integrations and JML alignment with PAM governance.
- Drive continuous improvement, stay current with IAM trends, and support ICAM leadership with reporting and risk communication.
Required experience & skills
- 4-5 yrs of Extensive, hands-on experience designing, implementing and operating SailPoint Identity/ISC at enterprise scale.
- Sailpoint experience is an absolute must have
- Experience with CyberArk PAM and proven PAM integrations and onboarding.
- Strong practical experience with Microsoft Entra ID / Azure AD, Conditional Access policies, and AD.
- Solid understanding of identity governance, PAM, SSO, MFA, LDAP and federation standards (SAML/OAuth2/OIDC).
- Proficiency with Java / BeanShell for IIQ customizations; PowerShell or other scripting skills desirable.
- Experience building scalable role and entitlement models and running access certification campaigns.
- Knowledge of regulatory and compliance requirements for identity and access management.
- Experience with Technical Change Management and Problem Management processes.
- Strong analytical, problemsolving, communication and crossfunctional collaboration skills.
- Able to manage multiple priorities in a fastpaced environment and deliver results.
Qualifications
- Degree / Diploma / Certificate / PostGraduate qualification in Computer Science, Information Security or related field preferred (or equivalent experience).
- Relevant certifications (SailPoint, CyberArk, Microsoft) advantageous.
Description sourced from the public Indeed listing — this role isn't indexed from the company's career page yet.
Skills
- Java
- REST
Never be applicant #200 again
Every job here is indexed straight from company career pages — often hours after it opens, before it reaches the big boards. Create a free account and get your best matches in a twice-daily digest.
- Your best matches, twice a day
- No duplicates, no ghost jobs, no recruiter spam
- Every job free to browse — pay only when you apply
Free account — no card required
93 161 live jobs · 17 643 companies tracked · 6 162 added today