Current · Sep 2024 – Present

Fortune 100 Retail Bank

Capital One

Principal Associate Cybersecurity Engineer. Subject matter lead on identity governance — continuing SailPoint IIQ development, designing SOX-aligned certification campaigns, building SaaS-identity integrations (Google Workspace), and contributing to the firm’s SailPoint ISC migration.

Context

Capital One is one of the largest banks in the United States. The identity governance program supports a wide stack of internal systems with strict regulatory, audit, and compliance requirements layered on top.

I serve as subject matter lead on identity governance — partnering with business and compliance stakeholders to automate access workflows, while contributing to a multi-year platform-migration program that’s shaping delivery patterns and reusable components used across engineering teams.

Selected work

  • Continuing SailPoint IIQ development for enterprise identity governance and access provisioning.
  • Designing certification campaigns and IAM solutions aligned with SOX and internal compliance frameworks.
  • Built SaaS-identity integrations — including a Google Workspace integration — and automated workflows to reduce manual access requests.
  • Contributing to the firm’s SailPoint ISC migration with reusable components that accelerate delivery.
  • Partner directly with business and compliance stakeholders to scope, design, and automate high-volume access workflows.

Stack & tools

  • SailPoint IIQContinuing IIQ development and platform extensions.
  • SailPoint ISCActive contributor to ISC migration; designing reusable components.
  • Google WorkspaceSaaS-identity integration extending governance reach.
  • SOX-aligned complianceCertification campaign design and audit-aligned access reviews.
  • Java & SpringBackend services and integration code.

Impact

  • Extending the SailPoint program at Fortune 100 scale — continued IIQ development plus active ISC migration leadership.
  • Brought SaaS identity (Google Workspace) under governance — reducing manual access-request handling.
  • Strengthened SOX-aligned certification campaigns supporting audit readiness.
  • Contributing reusable delivery patterns and components adopted across engineering teams in a multi-year platform-migration program.