Identity Security Engineer

My Eye Dr. Optometrists, LLC
Raleigh, NC, United States
3 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Application Programming Interfaces (APIs) Amazon Web Services Application Integration Architecture Computing Platforms Microsoft Azure Business Software Cloud Computing Cloud Computing Security Cyber Security Linux Multi-Factor Authentication
+26 more
Identity and Access Management Information Technology Operations Internet Protocol Security (IP SEC) Virtual Private Networks (VPN) Python (Programming Language) Lightweight Directory Access Protocols (LDAP) OAuth Public Key Infrastructure Windows PowerShell Role-Based Access Control Openid Connect Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Security Information and Event Management Single Sign-On Software Vulnerability Management Data Logging Transport Layer Security Google Cloud Enterprise Software Applications Cyber Threat Analysis HybridCloud Firewalls (Computer Science) Infrastructure as Code (IaC) Information Technology

Job description

MyEyeDr. is seeking a dynamic and detail-oriented Identity Security Engineer to join our IT Cyber Security team. The Identity Security Engineer helps architect, deploy, and operate secure identity and cloud infrastructure that aligns with business needs. This position is responsible for supporting operational innovation while providing security direction to the business to elevate the company’s security posture across identity systems, cloud platforms, and enterprise applications.

Reporting to the VP, Cyber Security & IT Operations, this is a hybrid-remote role offering a flexible work arrangement out of our Raleigh, NC office with an onsite requirement of two days per week.

You Will

  • Design, implement, and maintain enterprise identity and access management (IAM) controls across cloud and hybrid environments, ensuring secure access to systems, applications, and data.
  • Manage the complete identity lifecycle for workforce, contractor, service, and privileged accounts, including provisioning, role changes, access requests, and deprovisioning activities.
  • Engineer and support Single Sign-On (SSO), Multifactor Authentication (MFA), Conditional Access, federation services, and Zero Trust access controls utilizing Microsoft Entra ID and related identity platforms.
  • Govern role-based access control (RBAC), entitlement management, privileged access, and periodic access reviews to ensure least-privilege principles are consistently enforced across the enterprise.
  • Develop and automate identity governance processes, application integrations, and access workflows using standards such as SAML, OAuth, OpenID Connect, SCIM, APIs, PowerShell, and Python.
  • Develop and maintain secure, resilient enterprise-grade cloud processes in tandem with architects and system engineers.
  • Secure business applications and computing environments across public, private or hybrid cloud infrastructures.
  • Protect patient data and business applications in compliance with privacy, security, business resiliency and compliance frameworks as defined in corporate policies.
  • Conduct rigorous oversight of security systems and security configuration administration to reduce risk to enterprise systems and accounts.
  • Document, formulate and enforce areas of security improvement that balance risk with business operations and do not diminish efficiencies or innovation.
  • Act as a key figure in incident response to track occurrence and resolution, with strict documentation and reporting as well as engagement with security operations and incident response teams.
  • Attend regular technical project and implementation meetings and serve as the security consultant to help guide secure application and infrastructure configurations.
  • Actively monitor, assess and recommend tactical and strategic initiatives based on new and emerging threats posing risk to cloud computing environments.
  • Manage remediation efforts after security assessment findings outline weaknesses requiring attention.

Requirements

  • Bachelor’s degree in computer science, information assurance, cybersecurity or related field, or equivalent industry experience.
  • 5+ years of cybersecurity experience, including at least 3+ years of hands-on identity security, IAM, or cloud security experience.
  • Experience administering Microsoft Entra ID (Azure AD), SSO, MFA, Conditional Access, RBAC, Privileged Identity Management (PIM), and identity governance controls.
  • Experience with identity protocols and standards including SAML, OAuth 2.0, OpenID Connect, SCIM, LDAP, and modern authentication technologies.
  • Previous experience working with Microsoft Azure, AWS, GCP, cloud networking architecture, and hybrid-cloud operations.
  • Network and encryption experience, including VPNs, IPsec, SSL/TLS, LDAP, and Public Key Infrastructure (PKI).
  • Working knowledge of Identity Governance & Administration (IGA), Privileged Access Management (PAM), and access certification processes.
  • Experience with automation and scripting technologies such as PowerShell, Python, APIs, and Infrastructure as Code (IaC).
  • Familiarity with tools such as IAM, SIEM, EDR, Vulnerability Management, CSPM/CNAPP, Firewalls, Enterprise Logging, and Threat Intelligence platforms.
  • Strong Linux and Windows support skills.
  • Experience and understanding of regulatory requirements including HIPAA, PCI, SOX, and GDPR, as well as frameworks such as NIST, ISO 27001, and ITIL.
  • Self-motivated and self-directed, with excellent critical thinking, communication, and problem-solving skills.

Benefits & conditions

  • Career Development and Training Opportunities
  • Participate in a comprehensive benefits package including medical and dental coverage, tax-free savings plans, life insurance and more
  • Participate in our Vision coverage and associate discounts on our products
  • Participate in our 401(k) with competitive company match
  • Accrue PTO and paid holidays from day one

About the company

How do you see yourself today? Are you looking for that unique opportunity where you can make a difference in the lives of the patients we serve? MyEyeDr. is a high-growth, premier healthcare company: a total vision care concept with a unique retail experience. Our trusted community doctors and knowledgeable teams are all focused on helping our patients live their best lives by delivering an exceptional, personalized experience to each of our patients in every interaction. Our business model is unlike others in the industry: we make healthcare accessible by welcoming all insurance and providing a great selection of stylish eyewear that meets the diverse needs of our patients.

This role provides a chance for you to build your professional career with an organization that is purposeful and whose values drive actions. You would have the opportunity to prioritize the care of our associates and our patients, to connect the knowledge of our talented teams to our patients’ needs, and to work in a fun, inclusive environment as part of a collaborative team. We are in search of that unique individual who is inspired by a career focused on helping others and providing quality care while continuously growing professionally and improving MyEyeDr. in meaningful ways. If this is you, we encourage you to apply so you can get your journey started with MyEyeDr. where you can help people see, look, and be their very best.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all