Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.
As an Enterprise IAM Engineer specializing in SailPoint, you design, implement, and maintain scalable identity governance solutions across complex enterprise environments. You lead initiatives for identity lifecycle automation, access request and certification workflows, and role modeling to ensure secure and compliant access.
Your work includes building and supporting integrations through APIs and automation, while partnering closely with security, IT, and engineering teams to enforce least privilege and reduce operational friction.
With strong expertise in SailPoint and core IAM concepts such as provisioning, deprovisioning, and access governance, you enable secure growth and help the organization meet regulatory and security requirements.
What You’ll Do
Design and implement workforce IAM solutions using SailPoint and/or Okta IGA , including lifecycle, access requests, certifications, and role models.
Build and maintain custom integrations and workflows using APIs, connectors, and event-driven automation.
Implement and support Privileged Access Management (PAM) capabilities such as vaulting, JIT access, and session controls.
Develop and maintain production-quality code primarily in Python (Kotlin a strong plus) to extend IAM platforms.
Partner with security, IT, and engineering teams to ensure IAM solutions meet scalability, security, and compliance requirements.
What We’re Looking For
Strong hands-on experience with workforce IAM platforms such as SailPoint, Okta IGA, Saviynt, or similar.
Proven software engineering skills , with proficiency in Python and experience building integrations or automation.
Experience working with PAM tools and privileged access governance concepts.
Solid understanding of IAM fundamentals including RBAC, lifecycle management, access governance, and audits.
Ability to independently design, build, troubleshoot, and support complex IAM solutions end-to-end.
Infrastructure-as-Code experience (Terraform, similar).
Experience implementing IAM solution integrated to the AWS stack
Exposure to compliance frameworks (SOC 2, SOX, ISO, PCI).
Compensation & Benefits
Base Pay Grade - N
Equity Grade - Poland 4
Employees new to Affirm typically come in at the start of the pay range. Affirm focuses on providing a simple and transparent pay structure which is based on a variety of factors, including location, experience and job-related skills.
Base pay is part of a total compensation package that may include monthly stipends for health, wellness and tech spending, and benefits (including 100% subsidized medical coverage, dental and vision for you and your dependents). In addition, the employees may be eligible for equity rewards offered by Affirm Holdings, Inc. (parent company).
POL base pay range per year: 301,000 zł - 401,000 zł
Additional benefits include:
Type of employment: Contract of Employment
Flexible Spending Wallets for tech, food and lifestyle
Away Days - wellness days to take off work and recharge
Learning & Development programs
Parental benefits
Employee Resource & Community Groups
This role is eligible for creative tax benefits, subject to applicable law and company policy
Location - Remote Poland
The majority of our roles can be located anywhere in Poland.
This job description is not a contractual document, and is not intended to have binding force.