
Senior Lead Workforce Identity Engineer
Cox Automotive
College Park, GA
•5 hours ago
•No application
About
Cox Automotive is seeking a highly skilled and experienced Senior Lead Cybersecurity Engineer to work on Workforce Identity initiatives with a focus on SailPoint IdentityNow. This role will be responsible for architecting and working with the identity team to implement, and maintain identity governance solutions that ensure secure, compliant, and efficient access for all workforce users across the enterprise.
Primary Responsibilities:
- Manage the design and implementation of a Role-Based Access Control (RBAC) framework aligned with the principle of least privilege to ensure secure and scalable access management across the organization
- Oversee the integration of SailPoint with key enterprise systems, including Active Directory, Azure AD, HRIS platforms, and cloud infrastructure
- Collaborate with IT, HR, and compliance teams to align identity processes with business and regulatory requirements.
- Define and implement identity governance policies, workflows, and access review campaigns.
- Strong understanding of identity lifecycle management, RBAC, and access governance.
- Experience with Java, Bean Shell, or scripting for SailPoint customization.
- Familiarity with authentication protocols (LDAP, SAML, OAuth2, OpenID Connect).
- Excellent analytical, troubleshooting, and communication skills.
Minimum Requirements:
Required Education/Experience
- Bachelor's degree in a related discipline and 8 years' experience in a related field. The right candidate could also have a different combination, such as a master's degree and 6years' experience; a Ph.D. and 3 years' experience in a related field; or 20 years' experience in a related field.
Required Soft Skills
- Clearly articulate the objective of specific cybersecurity policies and procedures to technical and non-technical stakeholders.
- Excellent customer service skills, writing, and executive presentation skills.
- Strong relationship building skills to create a productive working environment with key stakeholders and collaborate closely with other Cox entities' cybersecurity teams to implement cybersecurity best practices.
- Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership.
- Evaluate risks and make recommendations based on impact and likelihood of the risk to the business.
Required Technical Skills
- Hands-on experience with enterprise IAM platforms such as SailPoint, Okta, Entra ID or Ping Identity
- Strong understanding of identity lifecycle management, including provisioning, de-provisioning, and access certification
- Expertise in designing and managing role-based access control (RBAC) and enforcing least privilege principles
- Proficiency with Active Directory, LDAP, and Azure Active Directory
- Solid knowledge of authentication and federation protocols such as SAML, OAuth2, OpenID Connect, and Kerberos
- Experience conducting access reviews, entitlement analysis, and role mining
- Familiarity with segregation of duties (SoD) and regulatory compliance standards
- Proficiency in scripting languages such as PowerShell, Python, or SQL for automation and data analysis
- Experience integrating IAM solutions with enterprise systems and APIs for automated workflows
Preferred Technical Skills
- Experience in Role Based Access (RBAC) role automation
- Experience integrating IAM solutions with cloud platforms (AWS, Azure, GCP) and SaaS applications
- Proficiency in automating identity workflows using APIs, connectors, or orchestration tools
- Exposure to DevSecOps and CI/CD pipelines with a focus on secure identity integration
USD 144,900.00 - 241,500.00 per year
Compensation:
Compensation includes a base salary of $144,900.00 - $241,500.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program.
Benefits:
The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave.
Applicants must currently be authorized to work in the United States for any employer without current or future sponsorship.