Federated Security Engineer - OIT

Emory Healthcare
Atlanta, GA, United States
about 1 month ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Clean Code Principles Application Integration Architecture Configuration Management Databases Cyber Security Computer Programming Data Governance Relational Databases Multi-Factor Authentication Identity and Access Management Kerberos (Protocol) OAuth OpenID
+12 more
Ping (Networking Utility) Role-Based Access Control Security Assertion Markup Language (SAML) Single Sign-On PL-SQL SQL Databases Scripting Okta Integration Frameworks SailPoint Servicenow Programming Languages

Job description

The Federated Security Engineer is a detail-oriented and proactive technical professional, with Identity and Access Management (IAM) expertise and a foundational experience in Cybersecurity as it relates to applications and secure access. This role focuses on managing and optimizing our central secure application access ecosystem, including onboarding/updating/offboarding applications, maintaining an up-to-date CMDB and application catalog, and supporting the integration of applications with our Single Sign-On (SSO) solution (Entra ID and Shibboleth IDP)., + Collaborates with the Cybersecurity and IAM teams to ensure secure onboarding and offboarding of applications into the SSO environment.

  • Designs or consults on the application integration approach to enable secure access/SSO.

  • Validates and maintains application integration configurations to meet cybersecurity and compliance requirements.

  • Assists in developing and ensuring alignment of implementations or changes with access control policies and security standards.

  • Supports audits and compliance reviews related to IAM and application integrations by facilitating responses via the proper SMEs.

  • Maintains the CI’s that relate to federated applications in the Configuration Management Database (CMDB), ensuring application records are accurate, complete, and current.

  • Manages the application catalog to ensure all integrated applications are tracked with appropriate metadata (e.g., owners, contacts, technical details, integration type).

  • Leverages ServiceNow to manage requests, incidents, and changes related to application integrations and IAM processes.

  • Coordinates application onboarding and offboarding processes, including requirement gathering, integration configuration, testing, and documentation.

  • Works with application owners to ensure smooth transitions during onboarding/offboarding.

  • Maintains end-to-end lifecycle documentation for each application in scope.

  • Creates and maintains detailed documentation for application integrations, onboarding/offboarding procedures, and CMDB updates.

  • Gathers and analyzes enhancement requests from stakeholders, prioritizes them, and coordinates with technical teams for implementation.

  • Identifies opportunities to streamline IAM-related processes and improve integration workflows.

  • Assists in engineering modern applications that support the SSO integration intake process and application inventory.

  • Troubleshoots, develops, and supports in multiple IDPs including Entra ID and Shibboleth IDP.

  • Serves as On-Call rotation for IDP support as needed.

  • Performs other related duties as required.

Requirements

  • A bachelor’s degree in a scientific or math field and three years of related experience, OR an equivalent combination of education, training, and experience.

  • Hands-on programming experience and/or non-trivial scripting in a robust programming language, including the ability to write clean, maintainable code to solve practical problems.

PREFERRED QUALIFICATIONS:

  • Hands-on experience with ServiceNow, particularly CMDB and catalog management.

  • Understanding of SSO technologies (e.g., SAML, OIDC, OAuth2, CAS, SCIM) and application integration principles

  • Familiarity with provisioning/deprovisioning workflows in IAM platforms (Okta, Entra ID, Ping Identity, NetIQ, Saviynt, etc.)

  • Experience with ITIL processes and change management in ServiceNow

  • Experience with applicationsecuritybest practices and compliance frameworks (e.g., NIST, ISO 27001)

  • RDBMs experience including proficiency in SQL and/or PLSQL

  • Experience with low-code development platforms such as Power Platform

  • Knowledge of data governance and asset management practices

  • Familiarity whit Role-Based Access Control (RBAC) models

  • Understanding of authentication concepts, including Multi-Factor Authentication (MFA), SSO, and Kerberos

About the company

Emory University is a leading research university that fosters excellence and attracts world-class talent to innovate today and prepare leaders for the future. We welcome candidates who can contribute to the excellence of our academic community.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all