Lead Security Engineer - IAM

Wellmark, Inc.
Des Moines, United States of America
10 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Des Moines, United States of America

Tech stack

Java
Microsoft Windows
Microsoft Active Directory
Artificial Intelligence
Amazon Web Services (AWS)
Computing Platforms
User Authentication
Azure
Cloud Computing
Cloud Computing Security
Linux
DevOps
Hardware Virtualization
Identity and Access Management
JSON
Network Security
Linux Security Modules
MySQL
Open Source Technology
Role-Based Access Control
XML
Data Logging
Scripting (Bash/Python/Go/Ruby)
Google Cloud Platform
Cloud Platform System
Multi-Cloud
Kubernetes
Data Analytics
SailPoint
Devsecops
Docker
VMware

Job description

The Lead Security Engineer drives measurable improvements in IAM and cloud security, with a focus on AI-enabled access governance, RBAC optimization, and secure AWS/Azure architecture. Within the first 6 months, success is demonstrated by strengthening access controls, automating IAM and DevSecOps processes, and influencing teams to adopt best practices.

Over the first year, this role leads an enterprise RBAC transformation, enhances multi-cloud security with integrated DevSecOps pipelines, and delivers AI-driven insights from SailPoint IIQ to proactively reduce risk.

Success in this role requires navigating complex IAM integrations, improving data quality for AI insights, and gaining organizational buy-in for access changes-while consistently delivering scalable, secure, and efficient solutions., a. Identify risk-related issues and architect solutions to avoid potential security incidents and business impact.

b. Create architecture policies aligning with industry best practices for cybersecurity and resiliency.

c. Design security for monitoring, logging, IAM, encryption, data protection, detection. and preventive controls.

d. Provide expertise and best practices for implementing cloud security and secured code detection and prevention.

e. Deploy strong identity and access management (IDAM) controls across applications and computing environments.

f. Develop and maintain secure, resilient enterprise-grade cloud processes in tandem with architects and system engineers.

g. Actively monitor, assess, and recommend tactical and strategic initiatives based on new and emerging threats posing risk to cloud computing environments.

h. Align with architects to create secure workloads in AWS, Microsoft Azure and Google Cloud.

i. Advise and design with commercial and open-source security tools and controls.

j. Communicate security posture to cybersecurity leaders, stakeholders, IT and developers.

k. Design for integrated security controls, workflows, data protection, authentication and authorization.

l. Acts as technical architect for Windows, Linux, VMware, Kubernetes, Docker and others used to support business needs.

m. Other duties as assigned.

Requirements

Do you have experience in Technical solutions implementation?, Do you have a Bachelor's degree?, * Scripting, DevSecOps, IAM design and implementation, cloud architectural skills., * Bachelor's degree or direct and applicable work experience.

  • 7+ years of experience working in architecting of server or network controls in any of the following: DevOps, DevSecOps, Identity and Access Management (IAM), system virtualization, Windows and Linux Security, Cloud Security, Network and Network Security, Active Directory, Java, XML, JSON, Azure, AWS, MySQL, Federation, SSO.
  • Knowledge of compliance and regulatory program requirements, such as HIPAA, ISO 27000, NIST, FISMA, and SOC standards.
  • Experience architecting and designing security solutions at the enterprise level. Strong knowledge of high-scale cloud systems within multiple accounts and how they can be secured using agreed best practices.
  • Experience with DevSecOps and automation in highly scalable environments.
  • Strong analytical and problem-solving skills. A certain degree of creativity, innovation and latitude is required (the ability to think outside the box when faced with challenges).
  • High attention to detail while completing tasks and processes. Ability to prioritize to maximize personal efficiency.
  • Ability to help design solutions for cybersecurity problems.
  • Strong compliance and regulatory-focused customer service orientation with effective verbal and written communication skills working with technical and non-technical personnel, with the ability to address all levels of leadership, business, technical, and non-technical staff.
  • Travel required up to 5%

About the company

Why Wellmark: We are a mutual insurance company owned by our policy holders across Iowa and South Dakota, and we've built our reputation on over 80 years' worth of trust. We are not motivated by profits. We are motivated by the well-being of our friends, family, and neighbors-our members. If you're passionate about joining an organization working hard to put its members first, to provide best-in-class service, and one that is committed to sustainability and innovation, consider applying today! Why Wellmark Technology? Wellmark is building innovative, modern solutions using cutting edge technology. We are driving organizational transformation and business strategy by empowering our technology team to innovate new and elegant solutions to enhance the customer experience. Together, we are leaning into the future, owning the outcome, and driving organizational change to transform how we work.

Apply for this position