Cyber Security Manager Enterprise Identity

Sentara Healthcare Inc
Virginia Beach, VA, United States
15 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$116,730.0 - $216,778.0
Working hours
Shift work

Tech stack

Application Programming Interfaces (APIs) Agile Methodology Cloud Engineering Cyber Security Multi-Factor Authentication Identity and Access Management Information Systems Security Architecture Professional Key Management OAuth OpenID Ping (Networking Utility) Zero Trust Network Access
+9 more
Security Assertion Markup Language (SAML) Single Sign-On Cyberark Cyber Threat Analysis Information Technology Data Management SailPoint Service Stack Microservices

Job description

The Cyber Manager - Identity & Access Management is a leader and architecture owner responsible for advancing Sentara Health’s enterprise identity strategy across non-human identities, identity proofing, and privileged access management. This role partners with Identity Governance and Administration leaders to build a unified identity ecosystem that supports clinical, corporate, partner, and consumer populations. The role also owns the Digital Front Door identity experience, ensuring patients and consumers have a secure, consistent, and seamless login journey across the Sentara ecosystem., Enterprise IAM: Workforce and Partners

  • Oversee single sign-on, multifactor authentication, and privileged access management capabilities to enforce Zero Trust and least-privilege principles.
  • Ensure identity services are integrated seamlessly across the internal application landscape. Identity Platform and Engineering

  • Direct the development and modernization of the core identity technology stack, including APIs, microservices, and identity data platforms.
  • Ensure the reliability, performance, and scalability of identity products and platforms, including Saviynt, Ping, 1Kosmos, Experian ,CyberArk, BeyondTrust, and related tools.
  • Standardize identity patterns across the organization to enable secure developer self-service and consistent implementation practices.
  • Security Operations integration: Partner with the Cyber Threat Operations Center to monitor and respond to identity-based threats, credential stuffing, and account takeover activity. Non-Human Identity and Machine Governance

  • Machine identity inventory: Establish a comprehensive inventory and ownership model for non-human identities, including service accounts, API keys, RPA bots, secrets, and other machine identities.
  • Secrets management: Direct the lifecycle for credential discovery, vaulting, and automated rotation across applications and automated workflows to reduce static or unmanaged credentials.
  • IoMT security: Extend IAM principles to the Internet of Medical Things by ensuring medical devices, such as infusion pumps and monitors, authenticate with unique machine identities before accessing clinical networks.
  • Workload identities: Oversee Entra Workload ID or similar capabilities to secure machine-to-machine communications across cloud-native and legacy hospital systems.

Requirements

  • Bachelor’s or master’s degree in computer science, information security, or a related field. (Preferred)

Certification/Licensure

  • Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or equivalent certifications (Preferred), * Extensive experience in technology and cybersecurity, including at least 15 years of relevant experience and 5 or more years in a senior leadership role; healthcare integrated delivery network or health plan experience preferred.
  • Proven leadership experience managing teams and driving cross-functional collaboration.
  • Strong understanding of regulatory requirements, industry standards, and cybersecurity best practices.
  • Deep understanding of identity protocols (SAML, OIDC, OAuth 2.0, FIDO2) and experience managing both cloud-native and hybrid identity environments.
  • Excellent communication skills, with the ability to explain complex security concepts to technical and non-technical audiences.
  • Strategic thinker with the ability to translate business needs into effective security solutions.
  • Demonstrated ability to thrive in a fast-paced, dynamic environment and adapt to evolving threats and challenges.
  • Strong leadership and management skills, with the ability to build, lead, and develop high-performing security teams.
  • Excellent interpersonal skills, with the ability to engage effectively with stakeholders at all levels of the organization.
  • Proven track record of driving security initiatives and achieving measurable results.
  • Ability to operate effectively in a fast-paced, dynamic environment with urgency, attention to detail, and adaptability.
  • Experience with Agile, LEAN, or Six Sigma practices preferred.

Benefits & conditions

We provide market-competitive compensation packages, inclusive of base pay, incentives, and benefits. The base pay rate for Full Time employment is:$116,729.60-$216,777.60. Additional compensation may be available for this role such as shift differentials, standby/on-call, overtime, premiums, extra shift incentives, or bonus opportunities.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.sentaracareers.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

Videos

See all

Related articles

See all