> Markdown version of [/jobs/ext/3027987-senior-security-engineer](https://www.wearedevelopers.com/jobs/ext/3027987-senior-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer - **Company:** HealthVerity - **Location:** Philadelphia, PA, United States (Remote available) - **Experience:** Expert - **Salary:** $92,700.0 - $114,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Amazon Web Services, Multi-Factor Authentication, Identity and Access Management, Python (Programming Language), Kerberos (Protocol), Lightweight Directory Access Protocols (LDAP), OAuth, OpenID, Ping (Networking Utility), Windows PowerShell, Openid Connect, Zero Trust Network Access, Security Assertion Markup Language (SAML), Okta, Terraform - **Published:** September 22, 2026 - **Apply:** https://www.careerjet.com/job/usea5335e5fca7370535759b63c68ba384/eaa ## About the Role * 7+ years of experience in Identity and Access Management, Identity Security, Security Engineering, or related disciplines. * Expert-level experience with Active Directory administration, architecture, and security. * Hands-on experience with customer identity platforms such as Auth0, AWS Cognito, Ping Identity, ForgeRock, or similar solutions. * Strong experience administering and engineering Okta environments. * Strong understanding of SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), SCIM, LDAP, and Kerberos. * Experience implementing SSO, MFA, Conditional Access, and Privileged Access Management (PAM). * Strong understanding of cloud identity and AWS security services. * Experience supporting HIPAA, SOC 2, HITRUST, FedRAMP, or similar compliance frameworks. * Experience with Python, PowerShell, Terraform, or similar automation technologies. Preferred * Experience with Entra ID, Identity Governance and Administration (IGA), and Zero Trust architectures preferred. * Healthcare industry experience is a plus. ## Description As a Senior Security Engineer at HealthVerity, you will serve as the technical owner for the company's Identity and Access Management program. You will define, implement, and evolve identity services that secure workforce and customer access across HealthVerity's platforms and products. You will own critical identity technologies including Active Directory, Okta, Auth0, and AWS Cognito, ensuring secure authentication, authorization, provisioning, and lifecycle management for employees, customers, partners, and applications. Working closely with Security, IT, Engineering, and Product teams, you will build scalable identity services that support HealthVerity's growth while meeting healthcare security and compliance requirements. This role will be instrumental in advancing Zero Trust initiatives, strengthening access governance, and ensuring the right individuals have the right access to the right resources at the right time., * Own the architecture, engineering, and operation of HealthVerity's Identity and Access Management platforms across workforce and customer environments. * Design, implement, and support enterprise Active Directory services and identity infrastructure. * Design and implement scalable identity architectures using Active Directory, Okta, Auth0, AWS Cognito, and related technologies. * Develop and maintain identity federation solutions leveraging SAML, OAuth 2.0, OpenID Connect (OIDC), SCIM, LDAP, and Kerberos. * Manage and enhance workforce identity services including Active Directory, Entra ID, and Okta. * Support and enhance customer identity platforms including Auth0 and AWS Cognito. * Develop and maintain the IAM roadmap aligned to business growth, security requirements, and regulatory obligations. * Develop identity-focused security monitoring, alerting, and response playbooks. * Assist in implementing and maintaining Zero Trust security principles. * Partner with Security, IT, Engineering, Product, and Compliance teams on strategic initiatives. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)