
Staff Security Engineer – IAM
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in Texas.
• Oversee the creation, execution, and continuous improvement of comprehensive security strategies and solutions.
• Design and implement advanced identity security measures to protect networks, systems, and applications.
• Collaborate across various disciplines to influence the strategy and execution of security services.
• Establish and maintain high standards for security processes to ensure quality engineering practices.
• Mentor and inspire new engineers to perform at their highest potential.
• Develop, implement, and sustain security identity services that align with business needs.
• Utilize data and automation on a large scale.
• Engage with multiple teams to drive significant outcomes and enhance the security of the digital landscape.
• A Bachelor's or higher degree in Computer Science, Information Technology, Cybersecurity, or a related field.
• Over 8 years of experience in software or security engineering within Cloud Native environments.
• Extensive knowledge of cloud security architectures, such as AWS IAM, Azure Entra ID, or GCP IAM.
• Proven experience in designing and enforcing least-privilege roles, RBAC/ABAC, and permission policies.
• Expertise in SAML, OIDC, OAuth, LDAP/Directory Services, user lifecycle automation, SSO, MFA, and JIT access.
• Strong hands-on skills with Terraform or CloudFormation and Python or PowerShell.
• Practical experience in managing service accounts, API keys, bots, and automated workload identities across cloud infrastructure.
• Experience in architecting, developing, and deploying large-scale distributed systems.
• Familiarity with AWS, Azure, or GCP.
• Experience in building CI/CD pipelines.
• Knowledge of server-side web technologies such as Java, Python, Scala, C#, C++, or Go.
• At least 4 years of experience acting as a trusted technical decision-maker in a team environment.
• Background in health-tech systems, clinical data, or EHRs.
• Familiarity with NHI architecture, AI/ML security and threat modeling, SPIFFE/SPIRE, zero-trust architectures, containerized identity frameworks, SIEM and security observability tools, and regulatory standards including HIPAA, SOC 2, and ISO 27001.
• Preferred certifications include CISSP, OSCP, CEH, CAISS, or GMSE.
• Ability to sit for extended periods; frequent use of computers and keyboards; occasional walking and lifting may be necessary.
• Flexible work schedules and remote work options are available for many positions.
• Health, dental, and vision insurance coverage of up to 80% for employees, their dependents, and domestic partners.
• Comprehensive time-off package (21 days of PTO in the first year).
• Two paid volunteer days and 11 paid holidays.
• 12 weeks of paid parental leave for all new parents.
• Six weeks of paid sabbatical after six years of service.
• Educational Assistant Program and Clinical Employee Reimbursement Program.
• 401(k) plan with up to 4% matching.
• Stock options.
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.