Security Senior Analyst – Identity Security Engineering

Elevance HealthIndianapolis, IN
Hybrid

About The Position

The Security Senior Analyst – Identity Security Engineering is responsible for engineering and operating identity security controls across human, privileged, non-human, cloud, and emerging agentic AI identities. The role has a primary focus on CyberArk Idira Endpoint Privilege Manager (EPM), with supporting responsibilities across CyberArk PAM and PSM capabilities, and helps advance least privilege, Just-in-Time access, Zero Standing Privilege, software control, and privileged access governance. This role partners with IAM, Identity Governance, Cyber Security, Cloud Security, Infrastructure, ServiceNow, and application teams to design, automate, monitor, and continuously improve secure access while supporting operational, audit, compliance, and 24x7 service requirements.

Requirements

  • Requires a bachelor’s degree or equivalent combination of education and experience that would provide the knowledge to perform such work.
  • Minimum of 3 years of experience in a support and operations or design and engineering role in any of the following areas: access management or network security technologies, servers, networks, network communications, telecommunications, operating systems, middleware, disaster recovery, collaboration technologies, hardware/software support or other infrastructure services role; or any combination of education and experience, which would provide an equivalent background.

Nice To Haves

  • Three to five years of experience in Identity Security, IAM, PAM, IGA, access engineering, or security operations preferred.
  • Hands-on experience with CyberArk Idira EPM; familiarity with CyberArk PAM, PSM, Privilege Cloud, or related privileged access technology preferred.
  • Strong understanding of least privilege, JIT access, ZSP, Zero Trust, privileged-access tiering, and Identity Threat Detection preferred.
  • Experience applying RBAC, ABAC, policy-based access, risk-based access, and role or entitlement design preferred.
  • Understanding of Identity Governance processes, including joiner-mover-leaver lifecycle, access requests, certifications, segregation of duties, and exception governance preferred.
  • Familiarity with NHI, workload, cloud, and agentic AI identities, including service accounts, secrets, certificates, and access controls in Microsoft Entra ID, AWS IAM, and Google Cloud preferred.
  • Knowledge of IAM standards and protocols such as SAML, OAuth 2.0, OpenID Connect, SCIM, LDAP, Kerberos, and REST APIs preferred.
  • Experience using scripting, query, workflow, or low-code tools to automate identity discovery, AD/LDAP queries, entitlement analysis, access lifecycle workflows, reporting, and audit evidence preferred.
  • Strong foundation in identity-focused automation and orchestration, including APIs, AD/LDAP queries, data analysis, reusable workflows, logging, error handling, testing, version control, and secure credentials preferred.
  • Experience supporting large, regulated, and highly available enterprise environments; relevant CyberArk, identity, cloud, or security certifications preferred.

Responsibilities

  • Engineers and operates CyberArk Idira EPM, including policy design, application control, software-installation governance, temporary elevation, agent health, and troubleshooting.
  • Supports CyberArk PAM and PSM capabilities, including privileged credentials, session controls, emergency access, and JIT/ZSP use cases.
  • Translates business and security requirements into RBAC, ABAC, policy-based, risk-based, and time-bound access controls.
  • Supports identity governance processes, including access requests, approvals, provisioning, certification, revocation, segregation of duties, and exception management.
  • Extends identity security controls across workforce identities, privileged accounts, service and workload identities, NHIs, cloud identities, and agentic AI identities.
  • Integrates CyberArk capabilities with ServiceNow, SailPoint, directories, CMDB, and cloud platforms using supported APIs and workflow automation.
  • Automates identity discovery, directory queries, entitlement analysis, reconciliation, telemetry, reporting, and audit evidence using secure and supportable engineering practices.
  • Analyzes telemetry, audit records, and identity security events to identify misuse, policy gaps, access drift, and opportunities to reduce standing privilege.
  • Develops testing plans, operational procedures, runbooks, metrics, and audit evidence while supporting incident investigation, root-cause analysis, and continuous improvement.

Benefits

  • merit increases
  • paid holidays
  • Paid Time Off
  • incentive bonus programs
  • medical
  • dental
  • vision
  • short and long term disability benefits
  • 401(k) +match
  • stock purchase plan
  • life insurance
  • wellness programs
  • financial education resources
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service