Identity and Access Management Engineer - EOD
Listed on 2026-07-15
-
IT/Tech
Cybersecurity, Information Security, Data Security
The Identity and Access Management (IAM) Engineer is responsible for the implementation, administration, support, and continuous improvement of the health system’s identity security and access management technologies. This role ensures that workforce members, contractors, vendors, clinicians, and other authorized users are granted appropriate access to systems and data while maintaining compliance with organizational policies, regulatory requirements, and cybersecurity best practices. The IAM Engineer works closely with Information Security, Information Technology, Human Resources, Clinical Informatics, and application owners to support identity lifecycle management, authentication services, privileged access management, and access governance initiatives.
The position plays a critical role in protecting patient information, reducing identity-related risks, and supporting secure access across on-premises, cloud, and clinical technology environments.
- Responsible for AD Group Lifecycle, SSO/MFA Onboarding, Privileged Access Workflows, JML Automation
- Specific Project Focus on Identity Governance Rollout, PAM Implementation, APP Onboarding
- Owns enterprise identity and access management operations, including RBAC governance, privileged access management, identity lifecycle, service account governance, and compliance with HIPAA identity security requirements.
- Administer and support enterprise identity and access management platforms and services.
- Implement and maintain identity lifecycle management processes, including provisioning, modification, and deprovisioning of user accounts.
- Support role-based access control (RBAC) and least-privilege access models across enterprise systems and applications.
- Administer and support authentication technologies, including single sign-on (SSO), multi-factor authentication (MFA), and federation services.
- Configure and maintain identity governance and administration (IGA) solutions and automated access workflows.
- Support privileged access management (PAM) solutions, including privileged account onboarding, credential vaulting, session monitoring, and access reviews.
- Collaborate with Human Resources, application owners, and IT teams to ensure timely and accurate access provisioning and termination processes.
- Perform periodic user access reviews, entitlement reviews, and certification activities to support compliance requirements.
- Investigate and resolve IAM-related incidents, access issues, authentication failures, and account management requests.
- Assist with implementation and maintenance of Microsoft Entra , Active Directory, LDAP, and related identity services.
- Support integration of enterprise applications with identity platforms using SAML, OAuth, OpenID Connect, SCIM, and related protocols.
- Participate in cybersecurity incident response activities involving identity compromise, unauthorized access, or privileged account misuse.
- Develop and maintain IAM documentation, standards, procedures, and operational runbooks.
- Assist with audit requests, compliance assessments, and regulatory reviews related to access management controls.
- Support cloud identity security initiatives across Microsoft 365, Azure, AWS, and other enterprise platforms.
- Monitor IAM systems for operational health, security risks, and policy compliance.
- Participate in IAM modernization projects and continuous improvement initiatives.
- Stay current on identity security trends, threats, technologies, and industry best practices.
- Bachelor's degree in Information Technology, Information Security, Computer Science, Information Systems, or a related field required.
- Equivalent combination of education and relevant experience may be considered.
- Minimum of 3 to 5 years of experience supporting identity and access management, directory services, cybersecurity, or enterprise infrastructure technologies.
- Experience administering Microsoft Active Directory, Microsoft Entra (Azure AD), and enterprise authentication platforms.
- Experience implementing and supporting single sign-on (SSO) and multi-factor authentication (MFA) technologies.
- Experience supporting identity…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).