SailPoint IAM Engineer

Remote from
USA flag
USA
Salary, yearly, USD
75,100 - 126,325
Employment type
Full Time,
Job posted
Apply before
26 Jun 2026
Views / Applies
126 / 25

About Allstate

Are you in good hands?

Verified job posting
This job post has been manually reviewed for authenticity and compliance.

AI Summary

Allstate is seeking a SailPoint IAM Engineer to design, implement, and support identity and access management solutions using SailPoint IdentityIQ. The role involves managing lifecycle management, access certifications, RBAC, and application onboarding. The ideal candidate has 5+ years of IAM experience, strong SailPoint skills, and knowledge of cloud IAM, scripting, and regulatory frameworks. This position offers the opportunity to work on critical security initiatives in a collaborative environment.

Role DNA

Job Complexity
Easy Hard
Pace & Pressure
Relaxed Fast-paced
Autonomy Level
Guided Full Ownership
Communication Load
Independent Highly Collaborative
AI Insight The role requires deep technical expertise in SailPoint and IAM concepts, plus experience with scripting and cloud IAM, making it challenging. However, it is not entry-level but also not the most senior role, so a 4 is appropriate.

Salary Analysis

Median Market Rate
USD100,713
US Market
USD95k – USD140k
0 USD154k
AI Insight The offered salary range of $75,100 - $126,325 is below the typical market median for a SailPoint IAM Engineer, which is around $120,000. The median of the range is $100,713, which is competitive for mid-level roles but may be low for experienced candidates. The range reflects a conservative approach by Allstate.

Key Skills

SailPoint IdentityIQ Identity & Access Management RBAC Scripting Cloud IAM Active Directory LDAP SAML SSO Python

Dear Hiring Manager,

I am writing to express my strong interest in the SailPoint IAM Engineer position at Allstate. With over 5 years of hands-on experience in identity and access management, particularly with SailPoint IdentityIQ, I am confident in my ability to contribute to your team. My background includes implementing lifecycle management, access certifications, and RBAC, as well as scripting with PowerShell and Python to automate IAM processes.

I have successfully onboarded numerous applications into SailPoint and collaborated with cross-functional teams to ensure seamless integration. My knowledge of cloud IAM, including Azure AD and AWS IAM, along with regulatory frameworks like SOX and GDPR, aligns well with the responsibilities of this role.

I am excited about the opportunity to bring my problem-solving skills and passion for security to Allstate, a company known for innovation and protecting families. Thank you for considering my application. I look forward to discussing how I can contribute to your IAM initiatives.

Sincerely,
[Your Name]

Can you describe your experience with SailPoint IdentityIQ, particularly in implementing lifecycle management and access certifications?
I have 5+ years of experience with SailPoint IdentityIQ, where I implemented lifecycle management by automating provisioning and de-provisioning workflows. I also designed and executed access certification campaigns, ensuring compliance with SOX and GDPR. For example, I reduced certification time by 30% by creating dynamic certification groups.
How do you handle onboarding a new application into SailPoint? Walk us through the process.
First, I gather requirements from the application team, including user attributes and access policies. Then, I configure the appropriate connector (e.g., Active Directory, JDBC) and map attributes. Next, I set up provisioning policies and role definitions. After testing in a sandbox, I deploy to production and monitor for issues. I document the process for future audits.
Explain a time you resolved a complex IAM issue. What was the problem and how did you solve it?
Once, a user was unable to access a critical application after a role change. I traced the issue to a misconfigured role hierarchy in SailPoint. I analyzed the role definitions, identified conflicting entitlements, and updated the role to include the necessary access. I also implemented a validation step in the provisioning workflow to prevent similar issues.
How do you stay current with IAM trends and regulatory requirements?
I regularly attend IAM conferences like Gartner IAM Summit and follow industry blogs. I also hold certifications such as SailPoint Certified Engineer. For regulations, I review updates from regulatory bodies and work with compliance teams to ensure our IAM controls meet requirements like GDPR and SOX.
Can you discuss your experience with cloud IAM, specifically Azure AD or AWS IAM?
I have experience integrating Azure AD with SailPoint for hybrid environments. I configured Azure AD as an identity source and managed user provisioning to SaaS apps. For AWS IAM, I created roles and policies for least-privilege access, and integrated with SailPoint for access certifications. I also automated user lifecycle in the cloud using PowerShell scripts.

At Allstate, great things happen when our people work together to protect families and their belongings from life’s uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers’ evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. 

Job Description

We are seeking a skilled and motivated SailPoint Identity & Access Management (IAM) Engineer to join our team. This role is ideal for professionals with hands-on experience in SailPoint IdentityIQ, who are passionate about securing digital identities and enabling seamless access across enterprise systems. You will play a key role in designing, implementing, and supporting IAM solutions that align with Allstate’s security policies and business objectives.

Key Responsibilities

  • Implement and maintain SailPoint IdentityIQ solutions, including lifecycle management, access certifications, and role-based access controls.

  • Collaborate with cross-functional teams to gather requirements and deliver IAM services that meet business needs.

  • Support onboarding of applications into SailPoint, including connector configuration and policy setup.

  • Troubleshoot and resolve IAM-related issues, ensuring minimal disruption to business operations.

  • Participate in audits and compliance activities by providing documentation and evidence of IAM controls.

  • Monitor and optimize IAM processes for performance, scalability, and security.

  • Assist in the development of IAM standards, procedures, and best practices.

Key Qualifications

  • 5+ years of development experience in Identity & Access Management, with hands-on expertise SailPoint IdentityIQ required.

  • Strong understanding of IAM concepts: provisioning, de-provisioning, access reviews, RBAC, certification, and SOD.

  • Experience with scripting languages (e.g., BeanShell, PowerShell, or Python) for customization and automation.

  • Experience in cloud IAM (e.g., Azure AD, AWS IAM).

  • Familiarity with directory services (LDAP, Active Directory), SSO, and authentication protocols (SAML, OAuth, etc.).

  • Knowledge of regulatory frameworks (e.g., SOX, HIPAA, GDPR) and their impact on IAM.

  • Effective communication skills, with the ability to convey technical concepts to non-technical stakeholders.

  • Excellent problem-solving skills with the ability to assess complex situations and provide actionable solutions.

  • Bachelor’s degree in Computer Science, Information Security, or related field preferred.

#LI-JJ1

Skills

Active Directory (AD), Application Infrastructure, Cloud IAM, Design, General Data Protection Regulation (GDPR), Identity Access Management (IAM), IT Infrastrcuture Project Management, IT Security Operations, LDAP Authentication, Python (Programming Language), Role Based Access Control (RBAC), SailPoint IdentityIQ, Scripting, Security Assertion Markup Language (SAML), Single Sign-On (SSO), Solution Engineering, Strategic Collaborations, Windows PowerShell

Compensation

Compensation offered for this role is 75,100.00 – 126,325.00 annually and is based on experience and qualifications.

The candidate(s) offered this position will be required to submit to a background investigation.

Joining our team isn’t just a job — it’s an opportunity. One that takes your skills and pushes them to the next level. One that encourages you to challenge the status quo. One where you can shape the future of protection while supporting causes that mean the most to you. Joining our team means being part of something bigger – a winning team making a meaningful impact.

Allstate generally does not sponsor individuals for employment-based visas for this position.

Effective July 1, 2014, under Indiana House Enrolled Act (HEA) 1242, it is against public policy of the State of Indiana and a discriminatory practice for an employer to discriminate against a prospective employee on the basis of status as a veteran by refusing to employ an applicant on the basis that they are a veteran of the armed forces of the United States, a member of the Indiana National Guard or a member of a reserve component.

For jobs in San Francisco, please click “here” for information regarding the San Francisco Fair Chance Ordinance.

For jobs in Los Angeles, please click “here” for information regarding the Los Angeles Fair Chance Initiative for Hiring Ordinance.

To view the “EEO Know Your Rights” poster click “here”. This poster provides information concerning the laws and procedures for filing complaints of violations of the laws with the Office of Federal Contract Compliance Programs.

To view the FMLA poster, click “here”. This poster summarizing the major provisions of the Family and Medical Leave Act (FMLA) and telling employees how to file a complaint.

It is the Company’s policy to employ the best qualified individuals available for all jobs. Therefore, any discriminatory action taken on account of an employee’s ancestry, age, color, disability, genetic information, gender, gender identity, gender expression, sexual and reproductive health decision, marital status, medical condition, military or veteran status, national origin, race (include traits historically associated with race, including, but not limited to, hair texture and protective hairstyles), religion (including religious dress), sex, or sexual orientation that adversely affects an employee’s terms or conditions of employment is prohibited. This policy applies to all aspects of the employment relationship, including, but not limited to, hiring, training, salary administration, promotion, job assignment, benefits, discipline, and separation of employment.

Allstate provides a comprehensive technology setup, including a laptop, monitors, headset, keyboard, and mouse. Employees eligible to work from home also receive a monthly connectivity reimbursement to help offset internet costs.

When working from home, you must have a dedicated, private workspace free from distractions, along with appropriate desk and seating. Reliable internet is required, with minimum speeds of 50 MB download and 5 MB upload.

Apply now >

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

How to apply

Did you apply? Let us know, and we’ll help you track your application.

See a few more

Similar Software Engineering remote jobs

Job Search Safety Tips

Here are some tips to help you search and apply for jobs safely:
Watch out for suspicious jobs Don't apply for jobs that offer high pay for little work or offer to hire you without an interview. Read more ›
Check the employer's profile Make sure you're applying for a trustworthy job by visiting the employer's profile and learning more about them. Read more ›
Protect your information Don't share personal details like your bank account or government-issued ID on suspicious websites or messengers. Read more ›
Report jobs that feel unsafe If you see a job that seems misleading, inappropriate or discriminatory, report it for going against our policies and we'll review it.

Share this job

Jobicy+ Subscription

Jobicy

614 professionals pay to access exclusive and experimental features on Jobicy

Free

USD $0/month

For people just getting started

  • • Unlimited applies and searches
  • • Access on web and mobile apps
  • • Weekly job alerts
  • • Access to additional tools like Bookmarks, Applications, and more

Plus

USD $8/month

Everything in Free, and:

  • • Ad-free experience
  • • Daily job alerts
  • • Personal career consultant
  • • AI-powered job advice
Go to account ›