Identity & Access Management Engineer

Advocate Health and Hospitals Corporation•Charlotte, NC
•Remote

About The Position

The Identity & Access Management (IAM) Engineer will be responsible for designing, implementing, and maintaining complex IAM solutions, including Identity Governance and Administration (IGA), Privileged Access Management (PAM), and Single Sign-On (SSO). This role involves utilizing various tools and technologies such as SailPoint, Active Directory, IBM Verify, Azure AD, Okta, MFA, SAML, OAuth, and LDAP. The engineer will participate in testing, validation, and quality assurance of these solutions, ensuring functionality, performance, and security. Key responsibilities include monitoring and auditing IAM systems, assisting with process improvement initiatives, backup and recovery procedures, and security optimization tasks. The role also involves troubleshooting access and permissions issues, collaborating with vendors, managing the identity lifecycle, and responding to IAM incidents. Performing access reviews, risk assessments, and audits to ensure compliance with policies and standards is crucial, as is providing support for audit, privacy, legal, and compliance matters. The engineer will also provide technical support and guidance to clients and internal teams, generate reports and metrics, and maintain comprehensive IAM documentation. Identifying and implementing security controls, remediating vulnerabilities, and ensuring IAM practices align with regulatory requirements are also key functions. The role serves as an escalation point for application teams and a point of contact for audits and security-related activities. Analyzing business requirements and creating technical recommendations, participating in complex IAM projects, and collaborating with various stakeholders are essential. The engineer will also contribute to team efforts through knowledge sharing and mentoring, and maintain up-to-date knowledge of IAM technologies and best practices.

Requirements

  • IAM certification (SailPoint, Okta, or other IAM engineering related certification) within one year employment.
  • Bachelor's Degree (or equivalent knowledge) in Information Systems, Computer Science or related field
  • Typically requires at least three years of experience in IAM Engineering, administration, or support, preferably in a large and complex environment and 5 years of experience in IT fields such as Cyber Security, Epic Security, or other technical areas; or an equivalent combination of education and experience.
  • Strong knowledge and skills in IAM concepts, principles, best practices and standards, such as identity lifecycle management, access management, authentication, authorization, provisioning, deprovisioning, auditing, and identity federation.
  • Proficient in IAM tools and technologies, such as Active Directory, Azure AD, SSO, MFA, SAML, OAuth, LDAP and SCIM.
  • Experience in scripting and automation using PowerShell, Python, Bash, JavaScript, Java, C# or other languages.
  • Experience in cloud computing platforms and services, such as Azure, AWS, or Google Cloud.
  • Strong technical skills in IAM tools, scripting languages (PowerShell, Python, Bash, JavaScript, Java, C#, or other languages), and a deep understanding of security controls and industry standards.
  • Requires an understanding of IAM technology, process and procedures and the ability to apply that understanding to supporting existing systems and/or implementing new systems that directly benefit the patient care, education, and research and/or business functions of Advocate Health.
  • Strong knowledge of user provisioning procedures and role-based access control.
  • Detailed knowledge of security as it relates to application support.
  • Understanding of security mechanisms with clinical and hospital information systems.
  • Knowledge of industry standard frameworks and controls such as NIST, CIS, SOX, and Zero Trust principles.
  • Advanced knowledge of operating systems, vendor-specific environments, and other system software.
  • Broad understanding of tools and technologies from end user devices through the database management system.
  • Strong data analytical, critical thinking, reasoning, deduction, inference, and problem-solving skills.
  • Ability to learn new technologies and skills quickly.
  • Ability to maintain a high level of confidentiality.
  • Excellent verbal and written communication skills and the demonstrated ability to communicate well with all levels of the organization.
  • Ability to work in a fast-paced, dynamic team environment.
  • Highly organized with the ability to work on numerous simultaneous activities while paying attention to detail and quality.
  • Proven experience working in a team-oriented, collaborative environment.
  • Foster a cooperative work environment by using effective communication skills, interpersonal relationships and team building.
  • Demonstrates experience in developing processes and documents to ensure quality delivery of services.
  • Clear and strong understanding of customer service requirements and skills.
  • Demonstrated facilitation skills and ability to explain technical subjects to non-technical clients.
  • Demonstrated ability to translate user requirements into system specifications.
  • Self-motivated, able to work independently to complete tasks and respond to department requests and to collaborate with others to utilize their resources and knowledge to identify high quality solutions.
  • Proficiency in Microsoft Suite (Word, PowerPoint, Excel, Access, Outlook) or similar products.

Nice To Haves

  • SQL knowledge is a plus.
  • Experience in project management and agile methodologies, such as Scrum or Kanban, is a plus.
  • Certifications in IAM, security or Epic are a plus.

Responsibilities

  • Design, implement, and maintain complex IAM solutions, including IGA, PAM, and SSO, using various tools and technologies, such as SailPoint, Active Directory, IBM Verify, Azure AD, Okta, MFA, SAML, OAuth, and LDAP.
  • Participate in testing, validation, and quality assurance of IAM solutions, ensuring functionality, performance, security.
  • Monitor and audit IAM systems, activities, and processes.
  • Assist in developing and implement process improvement initiatives, backup and recovery procedures, and security optimization tasks within IAM.
  • Perform troubleshooting, analysis and remediation of access and permissions issues.
  • Assist working collaboratively with vendors at technical level to resolve problems and manage escalation.
  • Manage the identity lifecycle and access policies for users, groups, roles, and applications across the organization.
  • Assist with investigations and responses to high-impact IAM incidents, assist team to contain and mitigate threats.
  • Perform access reviews, risk assessments, vulnerability analysis and audits to ensure compliance with IAM policies and standards, and provide audit, privacy, legal and compliance support for IAM security/access related issues.
  • Adhere to all procedures necessary to protect information systems from intentional or inadvertent modification, disclosure, or destruction.
  • Provide technical support and guidance to clients and internal teams on IAM-related matters, such as user provisioning, access requests, password resets, authentication issues, identity governance, identity verification, etc.
  • Monitor and audit the IAM management systems and processes, make recommendations, take appropriate action to ensure the best performance, and generate reports and metrics.
  • Responsible for developing and reporting on overall metrics of assigned areas of responsibility.
  • Evaluate and implement improvements to monitoring protocols.
  • Assist in creating and maintaining comprehensive IAM documentation, including architecture designs, IAM policies, process workflows, procedures, configurations, and compliance reports, and ensure they align with the best practices and industry standards.
  • Identify, implement security controls and remediate any IAM vulnerabilities, risks, or gaps, and implement corrective actions and preventive measures.
  • Assist in ensuring IAM practices align with regulatory requirements (e.g. SOX, PCI DSS, FFIEC, HIPAA), conduct security audits, and support compliance efforts.
  • Support security/access related records in all phases including build, configuration, testing, implementation, go-live support, and optimization, and perform process improvement and security optimization tasks.
  • Serve as escalation for the application teams for security/access issues, and as IAM point of contact for assigned audits and security related activities with other departments.
  • Document all responses.
  • Facilitate disaster recovery and business continuance configurations and procedures.
  • Assist in disaster recovery and business continuance configurations and procedures.
  • Analyze and resolve IAM issues and incidents and provide root cause analysis and recommendations for improvement.
  • Evaluate/resolve issues/tickets working with customers as needed.
  • Recommend and implement solutions for problems within the team.
  • Participate in complex IAM projects and initiatives, and collaborate with other engineers, analysts, and managers to deliver high-quality IAM solutions.
  • Analyzes business requirements and creates technical recommendations.
  • Assist in the resolution of project issues and recording time against tasks accurately and timely.
  • Assist in work plan development and management.
  • Ensure successful completion of assigned projects on schedule, within budget, and in accordance with Advocate Health standards.
  • Collaborate with the IAM team, application owners, and business stakeholders to understand and document IAM requirements and issues.
  • Ensures integrity for application delivery, creates tasks, work estimates, and resource requirements on those tasks.
  • Communicates with teammates and customers in order to keep them informed with regard to activity status and potential problem areas and provides recommendations to management.
  • Identify and understand business impact of decisions made to fulfill customer expectations.
  • Contribute to team effort by sharing of knowledge, aiding, and demonstrating initiative.
  • Train and mentor other IAM team members.
  • Define protocol for working with customers and appropriately balance needs and resources.
  • Maintain knowledge of applicable technologies, job/system related forums, roadmaps and/or related documentation.
  • Research and evaluate new IAM technologies and best practices and recommend improvements and enhancements to the IAM architecture and processes.

Benefits

  • Comprehensive suite of Total Rewards: benefits and well-being programs
  • Competitive compensation
  • Generous retirement offerings
  • Programs that invest in your career development
  • Paid Time Off programs
  • Health and welfare benefits such as medical, dental, vision, life, and Short- and Long-Term Disability
  • Flexible Spending Accounts for eligible health care and dependent care expenses
  • Family benefits such as adoption assistance and paid parental leave
  • Defined contribution retirement plans with employer match and other financial wellness programs
  • Educational Assistance Program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service