
Senior Security Engineer II - IAM
- Incident Response
- Okta
- Ping Identity
- SailPoint
- IAM
- AWS IAM
- Azure
- GCP
- RBAC
- ABAC
- Python
- Terraform
- PowerShell
- SAML
- OIDC
- OAuth
- LDAP
- Regulatory Compliance
- Health insurance
Primary Duties
Working cross functionally to design, build, and operate solutions that continuously improve and automate our security capabilities
Leveraging data to understand trends, metrics, and opportunities to improve our security posture and then helping execute on those opportunities with stakeholders
Leading and enhancing incident response efforts, spearheading analysis, containment, and mitigation strategies in a cross-functional environment to ensure effective resolution and remediation of security incidents
Helping craft and refine security documentation pertinent to our Security Program, such as policies, standards, baselines, and standard operating procedures
Mentoring and coaching more junior engineers or analysts
Minimum Qualifications
BS / BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field, 8 years security domain experience without degree
4+ years of experience acting as a trusted advisor in a team setting, solving for short-term and long-term business value
4+ years of experience coaching other engineers or analysts
 - Experience with Federated Identity tools - Okta/Entra ID/Ping Identity
- Experience with Identity Governance and Administration (IGA) tools - Omada, Lumos, Sailpoint, Saviynt
- Cloud IAM Architecture: Deep knowledge of cloud security architectures (AWS IAM, Azure Entra ID, or GCP IAM), including designing/enforcing least-privilege roles, RBAC/ABAC, and permission policies.
- Experience with Automation - Python, Terraform, Powershell.
Identity & Access Management
Preferred KSA’s
Prior experience working in the healthcare industry with health-tech systems, like Electronic Health Records, Clinical data, etc.
Prior experience with a focus on tooling, automation, and distributed systems development is preferred.
Experience generating automated metrics to measure service and program effectiveness and consistency
Strong communication skills, both written and verbal, with the capability to articulate complex technical issues to a diverse audience
 - Non-Human Identity (NHI) Fundamentals:Practical experience managing service accounts, API keys, bots, and automated workload identities across cloud infrastructure.
- Identity Protocols & Governance:Proficiency in identity standards and federation protocols (SAML, OIDC, OAuth, LDAP/Directory Services), user lifecycle automation, SSO, MFA, and Just-In-Time (JIT) access.
- Experience with Identity & Access Management (IaM) systems and practices
- In-depth knowledge of authentication protocols, authorization mechanisms, and directory services
- Strong proficiency implementing IaM solutions within very complex environments
- Familiarity with regulatory compliance and security standards
- Experience generating automated metrics to measure service and program effectiveness and consistency
- Strong communication skills, both written and verbal, with the capability to articulate complex security issues to a diverse audience
Identity & Access Management
Physical Requirements
- Sitting for prolonged periods of time. Extensive use of computers and keyboard. Occasional walking and lifting may be required
Senior Security Engineer II - IAM · Aledade