Toast Logo

Toast

Staff IAM Engineer, Sailpoint

🌎

Remote, US

9h ago
πŸ‘€ 11 views
πŸ“₯ 0 clicked apply

Job Description

Remote

Toast is driven by building the restaurant platform that helps restaurants adapt, take control, and get back to what they do best: building the businesses they love.

We are seeking a highly motivated and experienced Staff IAM Engineer to join our growing IT IAM team. In this role, you will be a key contributor to the development, enhancement, and strategic evolution of our Identity and Access Management (IAM) program, with a focus on Okta and SailPoint IdentityNow. You will play a critical role in building our identity lifecycle management processes, ensuring security, compliance, and efficiency. This role requires a deep understanding of IAM principles and best practices, as well as hands-on experience with enterprise-grade IAM platforms Sailpoint and Okta

About this roll* (Responsibilities) 

  • Design, develop, and deploy SailPoint IdentityNow: This includes building complex workflows, configuring policies, building integrations, developing user lifecycle management workflows between Sailpoint and integrated Systems, and acting as a subject matter expert for Sailpoint. 
  • Drive automation: Develop and implement automated provisioning and de-provisioning processes, and seamlessly integrate SailPoint with diverse applications, leveraging scripting and API knowledge. Focus on scalability and efficiency in automation efforts.
  • Architect and implement access controls: Create, develop and deploy robust access policies and roles, adhering to the principle of least privilege.
  • Ramp the team and develop comprehensive documentation: Write and maintain detailed documentation for all IAM configurations, processes, runbooks, and governance needs, ensuring clarity and consistency for both technical and non-technical audiences. This documentation should be utilized to guide the team to implement using best practices, deliver scalable solutions, and operate out of SOPs that create repeatable processes. 
  • Champion continuous improvement: Research and evaluate emerging IAM technologies, stay abreast of industry best practices, and proactively drive opportunities to enhance our IAM program. 
  • Ensure platform health and performance: Take ownership of system health checks, proactive monitoring, troubleshooting, and performance tuning for both platforms to ensure optimal performance, reliability, and availability. Develop and implement monitoring and alerting solutions.
  • Enhance security incident response: Develop and implement the security incident response processes related to identity and access. Implement monitoring and alerting to provide system logs and alerts for suspicious activity. Participate in security audits and compliance assessments (e.g., SOX, SOC, PCI).

Do you have the right ingredients*? (Requirements)

  • 10+ years of experience in Identity and Access Management.
  • 7+ years experience with SailPoint IdentityNow, including design, development, configuration, and med-large scale deployment.
  • Extensive experience with Okta administration, including user management, authentication, and application integration.
  • Solid understanding of IAM concepts, best practices, and industry standards.
  • Experience with scripting languages (e.g., Java, Python) for automation.
  • Excellent analytical, problem-solving, and communication skills.

Special Sauce* (Nice to Haves)

  • Relevant certifications (e.g., CISSP, CISM, SailPoint Certified Professional).
  • Compliance Knowledge (SOX, SOC, PCI, UAR)
  • Experience with other IAM solutions (e.g., Azure AD, AWS IAM).
  • Knowledge of IT security frameworks (e.g., NIST, ISO 27001).

 

Our Spread* of Total Rewards
We strive to provide competitive compensation and benefits programs that help to attract, retain, and motivate the best and brightest people in our industry. Our total rewards package goes beyond great earnings potential and provides the means to a healthy lifestyle with the flexibility to meet Toasters’ changing needs. Learn more about our benefits at https://careers.toasttab.com/toast-benefits.

*Bread puns encouraged but not required

 

#LI-REMOTE 

 

The base salary range for this role is listed below. The starting salary will be determined based on skills and experience. In addition to base salary, our total rewards components include cash compensation (overtime, bonus/commissions if eligible), equity, and benefits.
Pay Range
$127,000β€”$203,000 USD

 

We are Toasters

Diversity, Equity, and Inclusion is Baked into our Recipe for Success.

At Toast our employees are our secret ingredient. When they are powered to succeed, Toast succeeds.

The restaurant industry is one of the most diverse industries. We embrace and are excited by this diversity, believing that only through authenticity, inclusivity, high standards of respect and trust, and leading with humility will we be able to achieve our goals.

Baking inclusive principles into our company and diversity into our design provides equitable opportunities for all and enhances our ability to be first in class in all aspects of our industry.

Bready* to make a change? Apply today!

Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact candidateaccommodations@toasttab.com.

More Jobs at Toast