Cybersecurity Engineer

FAIRVIEW, INC.
United States
17 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$83,200.0
Working hours
Regular working hours
Job source

Tech stack

Active Directory Federation Services Application Programming Interfaces (APIs) Agile Methodology Amazon Web Services Application Integration Architecture Systems Engineering Microsoft Azure Health Informatics Cyber Security Information Systems Computer Engineering System Configuration
+22 more
Custom Software Fraud Prevention and Detection Identity and Access Management Microsoft Office Microsoft Visio OAuth OpenID Windows PowerShell Azure Active Directory Security Assertion Markup Language (SAML) Security Information and Event Management Software Engineering Epic Mychart Scripting Okta Software Security Electronic Medical Records Customer Identity Access Management Information Technology SailPoint Restful APIs Microservices

Job description

Senior Cybersecurity Engineer, CIAM is responsible for designing, developing, scripting, configuring, testing and maintaining complex Cybersecurity and Risk management tools and technologies for M Health Fairview. This highly experienced Senior Cybersecurity IAM Engineer to lead the design, implementation, and security architecture of our patient portal digital identity platform. This role focuses on building and securing patient-facing authentication, identity proofing, consent management, and protected access to electronic health information.

The ideal candidate brings deep expertise in Okta Customer Identity Access Management (CIAM) and a strong background in healthcare security. This candidate will partner with Digital Product, Application Development, Compliance, and Clinical Informatics teams to deliver a secure, scalable, and frictionless patient identity experience.

Job Expectations: Senior Cybersecurity Engineer, CIAM will have following primary job responsibilities.

  • Patient Digital Identity Architecture:

  • Design and implement secure patient identity solutions using Okta CIAM.

  • Architect authentication for patient portals, mobile health apps, telehealth platforms, and billing systems.

  • Experience with SailPoint and/or other IDM platforms

  • Implement password-less authentication and adaptive MFA.

  • Deep understanding of digital patient experience

  • Ability to balance usability and strong security controls

  • Patient Registration & Identity Proofing:

  • Design secure self-service registration workflows.

  • Implement identity proofing and fraud prevention controls.

  • Build secure account recovery processes.

  • Secure Access to ePHI:

  • Architect access controls aligned with HIPAA Security Rule.

  • Implement role-based and claims-based authorization models.

  • Design step-up authentication for sensitive transactions.

  • API & Application Integration:

  • Secure APIs using OAuth 2.0 and OIDC.

  • Integrate CIAM platform with EHR, MyChart, CRM, billing, and telehealth systems.

  • SCIM 2.0

  • Compliance & Monitoring:

  • Ensure HIPAA, HITRUST, and regulatory compliance.

  • Monitor identity-based threats and integrate logs with SIEM platforms.

  • Lead complex projects related to information security regulatory compliance and the implementation and maintenance of all cybersecurity programs, processes and technologies. Assure the implementation of appropriate security configurations or re-configurations and work with appropriate teams to execute them as required.

  • Foster a culture of improvement, efficiency gains and innovative thinking. Coach and mentor team members as needed. Adapt and embrace change and demonstrate flexibility in taking up and fulfilling other duties as assigned.

Organization Expectations:

  • Demonstrates ability to provide service adjusting approaches to reflect developmental level and cultural differences of population served

  • Partners with patient care giver in care/decision making.
  • Communicates in a respective manner.
  • Ensures a safe, secure environment.

Fulfill all organizational requirements

  • Completes all required learning relevant to the role
  • Complies with and maintains knowledge of all relevant laws, regulations, policies, procedures and standards.

  • Fosters a culture of improvement, efficiency and innovative thinking.
  • Performs other duties as assigned

Requirements

  • Bachelor’s degree in computer science, Computer Engineering, Technology Information Systems, Engineering or related technical discipline or combination of relevant experience/education.
  • 10+ years of cumulative experience in Information Technology with progressive responsibility.
  • 5+ years of hands-on experience with Okta (preferably CIAM implementations).
  • Experience designing customer-facing or patient-facing identity platforms such as MyChart
  • Deep knowledge of OAuth 2.0, OIDC, SAML, adaptive MFA, and API security.
  • Experience securing REST APIs and microservices architectures.
  • Experience in healthcare or other regulated environments.
  • Experience supporting HIPAA compliance and audits.
  • Ability to thrive in a sense-of-urgency environment and leverage best practices
  • Proficiency in Agile project management methodology.
  • Hands-on experience with Microsoft Azure, Azure AD (AAD), AAD Connect, ADFS, SailPoint ISC, and Office 365
  • Ability to author and edit scripts, such as PowerShell, VBS, or similar
  • Experience with any Identity Management and Access Governance tools such as SailPoint, including custom development.
  • Expert ability to use Visio and infographic based visual aids in articulating solution design, integration, onboarding of applications.
  • Excellent documentation and communication skills
  • Experience collaborating with Digital Product, Engineering, Privacy, and Clinical teams
  • Ability to operate in high-availability healthcare environments

Language & Communication Skills

  • Ability to effectively communicate both verbally and written with all levels within the organization
  • Ability to explain technical concepts and adjust messaging based on the audience, including non-technical groups
  • Ability to influence through outstanding interpersonal skills, collaboration, and negotiation skills
  • Ability to work well within a team environment, as well as independently

Preferred

  • Bachelor’s degree or higher in Computer Science, Computer Engineering, Technology Information Systems Engineering or related technical discipline
  • Experience with patient portals, digital front door initiatives, and cloud platforms (Azure/AWS)
  • Experience designing identity solutions for high-scale environments (100k+ users
  • Okta Certified Administrator or Consultant.
  • CISSP, CISM, or HCISPP certification.

Benefits & conditions

The posted pay range is for a 40-hour workweek (1.0 FTE). The actual rate of pay offered within this range may depend on several factors, such as FTE, skills, knowledge, relevant education, experience, and market conditions. Additionally, our organization values pay equity and considers the internal equity of our team when making any offer. Hiring at the maximum of the range is not typical. If your role is eligible for a sign-on bonus, the bonus program that is approved and in place at the time of offer, is what will be honored.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all