> Markdown version of [/jobs/ext/2266935-iam-epic-security-analyst-ii](https://www.wearedevelopers.com/jobs/ext/2266935-iam-epic-security-analyst-ii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IAM Epic Security Analyst II - **Company:** Sharp HealthCare. - **Location:** San Diego, CA, United States - **Experience:** Experienced - **Salary:** $49,700.0 - $64,130.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Application Programming Interfaces (APIs), Health Informatics, CompTIA Security+, Cyber Security, Identity and Access Management, Information Security Management, Virtual Private Networks (VPN), Citrix Systems, Role-Based Access Control, Epic Security, Information Technology, Health Level Seven International, Epic ECSA, SailPoint, Epic Bridges, Software Version Control - **Published:** August 27, 2026 - **Apply:** https://careers.sharp.com/sys/apply/job/application/1031/99767708768 ## About the Role * 3 Years experience in application access control including experience in information systems security administration in a multi entity health care system, experience with supporting, improving, reporting, documenting audits and compliance with internal and external audits. * 3 Years experience with IT Epic support., * Experience with Active Directory Management. * Extensive operational knowledge and experience with IAM concepts, principles and best practices such as identity federation, role-based access control and access management processes. * Six Sigma Yellow Belt Certification - Various-No accreditation board -PREFERRED * CompTIA Security+ - CompTIA -PREFERRED Other Qualification Requirements * Bachelor's degree in Computer Science, Healthcare, or related field; or 4 years of relevant experience in Information Technology may substitute for degree. - REQUIRED., * Knowledge of clinical and business operations in a healthcare environment. * Ability to interpret functional requirements into applications design. * Ability to communicate technical issues to technical staff and nontechnical users/clients. * Must have strong leadership and communication skills. * Knowledge of hospital and clinic culture, business practices, regulatory requirements (e.g., TJC), and health care requirements as it relates to information security and privacy (e.g., HIPAA). * Knowledge and understanding of RBAC. * Knowledge of Identity and Access Management structures/processes such as provisioning, entitlement certification, access removal and privileged access. * Knowledge of IT security, compliance and Identity Management. * Ability to work on-call. * Ability to cross cover shifts as needed., Six Sigma Yellow Belt Certification - Various-No accreditation board; CompTIA Security+ - CompTIA ## Description Provides guidance and support to the IAM Security team, organization and business partners on Sharp HealthCare's Identity and Access Management (IAM) and Epic Security strategy; ensuring policies and security standards are met. Responsible for the maintenance of identity and access management systems, ensuring authorized individuals have appropriate access to systems and data. Efficiently and effectively, respond to IAM and Epic Security incidents, service requests, application access requests and audits. Provides support to peers as well as various other departments of the organization. Responsible for coordinating activities with multiple IT teams and Sharp departments to develop, maintain, support, and enhance Epic access and security., * Operational Management Ensure readiness for internal and external audits, including action plan to promptly resolve issues identified and ensure Standard Operating Procedures are created and followed. Report out on agreed upon Key Performance Indicators (KPIs) related to IAM, Epic Security, SER, incident/service request management and compliance. Manage on-call rotations. Train new IT staff in system functions and operations in order to maximize user effectiveness and utilization of systems. Develop and maintain Standard Operating Procedures (SOPs) for IAM, Epic Security, and SER. Develop system documentation for on-call and other operational requirements. Monitor and analyze IAM and Epic system performance, make recommendations for improvements. Monitor the daily operations of IAM systems (IGA, Active Directory and other IAM systems), ensuring efficient and secure access management. Demonstrate in depth, detailed technical knowledge of security requirements and solutions. Develop and/or follow practices/guidelines in relation to compliance with IAM Policies, Epic Security, standards, regulatory requirements and ensure the proper processes are followed when exceptions arise. Demonstrate content expertise regarding application and business operations by mentoring staff. * Compliance Ensure compliance and adherence with corporate security controls and standards as they relate to Identity and Access Management (IAM). Conduct assessments, on demand and routine audits to identify and mitigate compliance risks. Prepare documentation for audits and act as the point of contact for audit related responsibilities. Perform certification of RBAC. Perform data contamination management, including coordinating clean-up efforts and reporting requirements and ensuring auditing requirements are completed. Mitigate risk by addressing security vulnerabilities and audit gaps. Participate in efforts regarding audit findings, adherence to compliance and organizational change. Partner with Compliance Department to assure all internal and external customers system access and Sharp HealthCare user agreement forms are appropriate and adhered to. Develop and maintain documentation related to IAM, Epic Security and Provider SER compliance activities. * Department Support Provide operational support including, but not limited to: account provisioning, de-provisioning, periodic access reviews, emergency access, and privileged access management. Provide support for IAM-related issues, troubleshooting and resolving complex problems. Support the implementation of IAM tools and technologies to enhance security and user experience. Partner closely with the Identity and Access Management (IAM) Development team to align role-based access models (RBAC) with Epic security templates and coordinate downstream provisioning through tools like SailPoint. Serve as the bridge between Epic application teams and provisioning stakeholders, ensuring that design decisions reflect operational needs and compliance expectations. Build and maintain Epic security templates, shared security classes, and application-level role structures in collaboration with analysts and business partners. Build and maintain Epic SER records and Blueprints. Maintain guidelines for appropriate access in Epic, including compliance with regulatory limitations. Document and adhere to standards for naming conventions, template usage, ownership definitions, and cross-application alignment. Maintain version control and history for Epic security structures and changes across environments. Contribute to risk mitigation strategies related to role structure, over-permissions, or shared access issues. Maintain functionality and resolve issues with the provider HL7 interface or API. Participate in on call support for the IAM and Epic Security group. Ensure operational procedures are created and followed. Ensure that all accounts are configured to support the access control policy of Sharp HealthCare. Correctly configure accounts based on the completion of a standardized access request form. Adjust work schedule as needed for department coverage. Facilitate and participate in a multidisciplinary Epic Security Workgroup with representation from ISD Application teams, Compliance, IAM, Training, Clinical Informatics and Operations. Participate in initiatives to standardize data and workflows to better utilize IAM automation tools. Identify high risk situations, inform Management with recommendation on next steps. Coordinate the activities to reduce the risk. Lead Epic Security projects and initiatives to improve the access management process. * Customer Service Maintain active relationships with all customers by continuously assessing needs, preferences and level of satisfaction with tasks. Work effectively with physicians, management, staff, auditors, investigators, consultants and vendors. Provide continuing support of remote connections, including VPN and Citrix. Accept escalation messages and calls from customers. Develop knowledge base articles for the Technical Assistance Center. Provide in-service or knowledge transfer sessions to Technical Assistance Center staff and other departments, as needed. Train and mentor new members in the department to appropriate customer service skills. Monitor Change Management tickets for timeliness, quality, and documented processes are followed. Monitor Service Desk tickets for timeliness. Provider Incident/Service Request support and quality customer service. Respond to IAM/Epic incidents in a timely manner. * Professional Competency Epic Security Certification - REQUIRED Epic Data Courier Badge - REQUIRED Epic Provider Administration Badge is required within 90 days of hire. Epic Security Post Live Badge is required within 90 days of hire. Epic Bridges Certification - PREFERRED Epic Cogito Certification - PREFERRED Maintains required certifications. Obtains other certifications and attends seminars or training as required by the department. Maintains knowledge of systems and applications. ## Related Videos - [AIQSpecFlow: Improves and automates your agile process of specification and creation of testcases.](https://www.wearedevelopers.com/videos/100084-aiqspecflow-improves-and-automates-your-agile-process-of-specification-and-creation-of-testcases) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk)