> Markdown version of [/jobs/ext/1438983-federated-security-engineer-oit](https://www.wearedevelopers.com/jobs/ext/1438983-federated-security-engineer-oit). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Federated Security Engineer - OIT - **Company:** Emory Healthcare - **Location:** Atlanta, GA, United States (Remote available) - **Contract:** Permanent contract - **Skills:** Clean Code Principles, Application Integration Architecture, Configuration Management Databases, Cyber Security, Computer Programming, Data Governance, Relational Databases, Multi-Factor Authentication, Identity and Access Management, Kerberos (Protocol), OAuth, OpenID, Ping (Networking Utility), Role-Based Access Control, Security Assertion Markup Language (SAML), Single Sign-On, PL-SQL, SQL Databases, Scripting, Okta, Integration Frameworks, SailPoint, Servicenow, Programming Languages - **Published:** July 25, 2026 - **Apply:** https://www.juju.com/job/00000000gj91z3 ## About the Role + A bachelor's degree in a scientific or math field and three years of related experience, OR an equivalent combination of education, training, and experience. + Hands-on programming experience and/or non-trivial scripting in a robust programming language, including the ability to write clean, maintainable code to solve practical problems. PREFERRED QUALIFICATIONS: + Hands-on experience with ServiceNow, particularly CMDB and catalog management. + Understanding of SSO technologies (e.g., SAML, OIDC, OAuth2, CAS, SCIM) and application integration principles + Familiarity with provisioning/deprovisioning workflows in IAM platforms (Okta, Entra ID, Ping Identity, NetIQ, Saviynt, etc.) + Experience with ITIL processes and change management in ServiceNow + Experience with applicationsecuritybest practices and compliance frameworks (e.g., NIST, ISO 27001) + RDBMs experience including proficiency in SQL and/or PLSQL + Experience with low-code development platforms such as Power Platform + Knowledge of data governance and asset management practices + Familiarity whit Role-Based Access Control (RBAC) models + Understanding of authentication concepts, including Multi-Factor Authentication (MFA), SSO, and Kerberos ## Description The Federated Security Engineer is a detail-oriented and proactive technical professional, with Identity and Access Management (IAM) expertise and a foundational experience in Cybersecurity as it relates to applications and secure access. This role focuses on managing and optimizing our central secure application access ecosystem, including onboarding/updating/offboarding applications, maintaining an up-to-date CMDB and application catalog, and supporting the integration of applications with our Single Sign-On (SSO) solution (Entra ID and Shibboleth IDP)., + Collaborates with the Cybersecurity and IAM teams to ensure secure onboarding and offboarding of applications into the SSO environment. + Designs or consults on the application integration approach to enable secure access/SSO. + Validates and maintains application integration configurations to meet cybersecurity and compliance requirements. + Assists in developing and ensuring alignment of implementations or changes with access control policies and security standards. + Supports audits and compliance reviews related to IAM and application integrations by facilitating responses via the proper SMEs. + Maintains the CI's that relate to federated applications in the Configuration Management Database (CMDB), ensuring application records are accurate, complete, and current. + Manages the application catalog to ensure all integrated applications are tracked with appropriate metadata (e.g., owners, contacts, technical details, integration type). + Leverages ServiceNow to manage requests, incidents, and changes related to application integrations and IAM processes. + Coordinates application onboarding and offboarding processes, including requirement gathering, integration configuration, testing, and documentation. + Works with application owners to ensure smooth transitions during onboarding/offboarding. + Maintains end-to-end lifecycle documentation for each application in scope. + Creates and maintains detailed documentation for application integrations, onboarding/offboarding procedures, and CMDB updates. + Gathers and analyzes enhancement requests from stakeholders, prioritizes them, and coordinates with technical teams for implementation. + Identifies opportunities to streamline IAM-related processes and improve integration workflows. + Assists in engineering modern applications that support the SSO integration intake process and application inventory. + Troubleshoots, develops, and supports in multiple IDPs including Entra ID and Shibboleth IDP. + Serves as On-Call rotation for IDP support as needed. + Performs other related duties as required. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [OPA for the cloud natives](https://www.wearedevelopers.com/videos/713-opa-for-the-cloud-natives) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)