Title: Staff Cybersecurity Engineer - IAM/SailPoint
Columbus, OH, US, 43219
Join the NetJets Team
NetJets, the global private aviation leader for more than 60 years, provides the pinnacle of private travel, defined by a signature commitment to unwavering safety, personalized service, and reliable global access. Discover why NetJets is the ultimate career destination, offering exceptional benefits and growth opportunities.
Purpose of Position
The Staff Cybersecurity Engineer is the technical authority responsible for architecting, leading, and scaling NetJets enterprise SailPoint IdentityNow implementation. This role defines the cloud-based identity governance architecture and drives the adoption of automated, secure identity controls across the organization. This position combines deep hands-on expertise with broad technical leadership. The engineer owns IAM architecture decisions, establishes identity standards, and leads complex, cross-functional initiatives that materially improve NetJets security posture, compliance readiness, and operational maturity.
Tasks and Responsibilities
- Architect and own the enterprise SailPoint IdentityNow solution, including lifecycle management, access requests, access certifications, and policy enforcement.
- Define IAM reference architectures, design patterns, and implementation standards for cloud identity governance.
- Establish and evolve the IAM roadmap in alignment with business objectives, security strategy, and regulatory requirements.
- Lead the end to end delivery of IdentityNow capabilities, from design through implementation and ongoing optimization.
- Serve as the technical escalation point and subject matter expert for SailPoint IdentityNow.
- Provide technical guidance to IAM engineers, platform teams, and application owners on identity onboarding and access modeling.
- Drive automation first solutions using SailPoint connectors, workflows, APIs, and event driven integrations.
- Lead role engineering, access policy definition, and segregation of duties controls.
- Own the design and execution of access certifications, including manager and application owner reviews.
- Partner with GRC and other internal teams to support SOX, PCI DSS, and internal security assessments.
- Oversee integrations with enterprise directories, HR platforms, SaaS applications, and custom systems.
- Ensure identity data flows are secure, scalable, and resilient across cloud and hybrid environments.
- Collaborate with infrastructure, application, and security teams to embed identity governance into enterprise platforms and delivery processes.
- Identify identity related risks and recommend architectural or control improvements.
- Monitor platform health, control effectiveness, and adoption metrics.
- Evaluate new SailPoint capabilities and identity security trends to continuously mature the IAM program.
Note:
It is not possible to list all required job duties on this form. There may be other important duties assigned, depending on the position. For a list of essential job functions, please refer to the essential functions document for this job.
Education
Certifications and Licenses
Years of Experience
Core Competencies
Knowledge, Skills, Abilities and Other (KSAOs)
- 8–10+ years of experience in IAM or cybersecurity engineering, with deep hands-on expertise in SailPoint IdentityNow.
- Strong understanding of cloud-based identity governance, access certifications, lifecycle automation, and role-based access control.
- Proven experience implementing IdentityNow integrations using standard connectors, REST APIs, and workflows.
- Experience integrating with enterprise directories (e.g., Active Directory, LDAP) and authoritative identity sources.
- Solid understanding of authentication and federation standards (SAML, OAuth 2.0, OIDC).
- Experience operating IAM platforms in regulated environments (SOX, PCI-DSS, NIST, HIPAA).
- Experience integrating with single sign-on technologies (e.g., Okta, Microsoft Authenticator).
- Demonstrated Staff Engineer impact: architectural ownership, cross-functional influence, and delivery of complex, high-visibility initiatives.
- Strong written and verbal communication skills, with the ability to translate identity concepts for technical and non-technical stakeholders.
- Ability to work independently, manage ambiguity, and drive outcomes across multiple initiatives.
- Ability to manage shifts in priorities.
- Identity Security Engineer or Identity Security Professional.
- CISSP, CISA, CISM, Security+.
How NetJets Supports You
NetJets is proud to provide a variety of attractive benefits to our employees, including many at no cost. Employees have access to no cost options including Medical, Dental, and Vision benefits, with access to robust networks of nationwide providers. NetJets offers benefits so you can LIVEWELL—a comprehensive package to support your Mind, Body, and Life.
Our comprehensive suite of benefits include:
• Medical, Dental, and Vision
• Healthcare Advocacy
• Employee Assistance Program
• Flexible Spending Accounts
• Health Savings Account with annual employer contribution
• Wellness Programs & Discounts
• Paid Time Off
• Life and Accident Insurance
• Voluntary benefits (financial protection plans)
• 401(k) plan, with 66% of every dollar you contribute matched by NetJets
• Short and Long-Term Disability
• Legal Plan
• Identity Theft Protection Plans
• Pet Insurance
• Family & Caregiving Support
As always, please feel free to reach out with any questions or concerns.
Nearest Major Market: Columbus