Sr. Security Engineer
Your Opportunity
At Schwab, you’re empowered to make an impact on your career. Here, innovative thought meets creative problem solving, helping us “challenge the status quo” and transform the finance industry together.
We believe in the importance of in-office collaboration and fully intend for the selected candidate for this role to work on site in the specified location.
The Senior Manager, Security Engineering will serve as the technical lead and primary developer for
Application Onboarding into the enterprise Identity Governance and Administration (IGA) platform, with
a focus on SailPoint IdentityIQ (IIQ). This role is responsible for driving design, development, and
delivery of scalable onboarding solutions, while ensuring operational stability, audit readiness, and
alignment with enterprise security standards.
The ideal candidate combines deep technical expertise in IGA engineering, strong leadership
capabilities, and hands-on development experience to modernize and streamline onboarding processes
across a diverse application landscape.
Key Responsibilities
• Lead SailPoint Development & Onboarding
o Serve as the lead developer and technical authority for application onboarding to
SailPoint IIQ
o Design and implement scalable onboarding patterns leveraging roles, entitlements,
workflows, and access models
o Drive consistent and reusable onboarding frameworks across on-prem, cloud, and SaaS
applications
• IGA Engineering & Integration
o Build and maintain integrations between SailPoint and enterprise systems (e.g., AD,
LDAP, databases, APIs, and SaaS platforms)
o Develop custom connectors, workflows, rules, and event handlers to support
onboarding use cases
o Ensure reliability of provisioning, reconciliation, and identity lifecycle processes
• Platform Modernization & Migration
o Lead transition efforts from legacy IGA platforms (e.g., OIM) to SailPoint IIQ
o Refactor or redesign existing integrations and configurations to align with IIQ best
practices
o Drive simplification and standardization of onboarding patterns
• Automation, Quality, and Governance
o Implement automation for onboarding workflows, deployment processes, and
validation controls
o Support and oversee code promotion across environments (Dev → QA → Pre-Prod →
Prod)
o Ensure solutions meet audit, compliance, and security requirements
• Operational Support & Enhancements
o Provide hands-on support for production issues, including troubleshooting provisioning
failures, aggregation issues, and connectivity problems
o Perform root cause analysis (RCA) and implement durable fixes
o Partner with application teams to support enhancements, onboarding acceleration,
and remediation
• Testing & Deployment Support
o Partner with application teams to support UAT, integration testing, and validation
activities
o Ensure high-quality deliverables through test support and issue resolution
o Drive defect remediation and continuous improvement cycles
• Technical Leadership & Collaboration
o Act as a senior individual contributor and technical mentor for engineering teams
o Manager offshore development team, ensuring effective coordination and
communication across time zones
o Provide clear and concise updates to stakeholders, leadership, and cross-functional
teams
• Documentation & Standards
o Develop and maintain technical documentation, including design artifacts, runbooks,
and deployment guides
o Establish and enforce development standards, onboarding patterns, and operational
procedures
What you have
To ensure that we have fulfilled our promise of "challenging the status quo," this role has specific qualifications that successful candidates should have.
Required Qualifications
- Current experience with Schwab systems and processes.
• IGA & SailPoint Expertise
o 5+ years of hands-on experience in Identity Governance and Administration (IGA)
o Strong expertise in SailPoint IdentityIQ (IIQ) development and implementation
o Experience with application onboarding, entitlement modeling, and lifecycle
management
• Development & Integration Skills
o Proficiency in Java, SailPoint APIs, and IIQ custom development (rules, workflows,
connectors)
o Experience with REST/SOAP APIs and system integrations
o Strong understanding of identity lifecycle processes: provisioning, reconciliation,
aggregation
• Legacy Platform Knowledge (Preferred)
o Prior experience with Oracle Identity Manager (OIM), including connectors and
customizations, strongly preferred for migration context
• Technical Capabilities
o Experience developing custom connectors, schedulers, workflows, and event handlers
o Knowledge of access policies, approval workflows, and role-based access models
o Strong troubleshooting skills across connectivity, provisioning, and data integrity issues
• DevOps & Delivery
o Experience with code repositories (e.g., Bitbucket) and version control best practices
o Proven experience supporting CI/CD and multi-environment deployments
o 2+ years working in Agile environments (Jira, Scrum/Kanban)
• Collaboration & Communication
o Strong written and verbal communication skills with ability to articulate complex
technical concepts
o Experience working in global delivery models with offshore/onshore coordination
o Ability to balance hands-on engineering and technical leadership responsibilities
Preferred Qualifications
• Experience driving IGA modernization or large-scale onboarding programs
• Strong focus on automation, standardization, and audit-readiness
• Ability to influence architecture decisions and improve onboarding efficiency at scale
In addition to the salary range, this role is also eligible for bonus or incentive opportunities
What’s in it for you
At Schwab, you’re empowered to shape your future. We champion your growth through meaningful work, continuous learning, and a culture of trust and collaboration—so you can build the skills to make a lasting impact. Our Hybrid Work and Flexibility approach balances our ongoing commitment to workplace flexibility, serving our clients, and our strong belief in the value of being together in person on a regular basis.
We offer a competitive benefits package that takes care of the whole you – both today and in the future:
- 401(k) with company match and Employee stock purchase plan
- Paid time for vacation, volunteering, and 28-day sabbatical after every 5 years of service for eligible positions
- Paid parental leave and family building benefits
- Tuition reimbursement
- Health, dental, and vision insurance