> Markdown version of [/jobs/ext/629072-iam-security-engineer](https://www.wearedevelopers.com/jobs/ext/629072-iam-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IAM Security Engineer - **Company:** Endeavor Health - **Location:** Skokie, IL, United States (Remote available) - **Experience:** Experienced - **Salary:** $97,011.0 - $150,363.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Application Programming Interfaces (APIs), Authentication Protocols, Cyber Security, Desktop Computing, Multi-Factor Authentication, Identity and Access Management, Lightweight Directory Access Protocols (LDAP), OAuth, Role-Based Access Control, Openid Connect, Cloud Services, Zero Trust Network Access, Security Assertion Markup Language (SAML), Single Sign-On, Scripting, EHR Systems - **Published:** June 24, 2026 - **Apply:** https://www.dice.com/job-detail/f6755a18-6dfc-45f0-91e3-69cf8e024bd4 ## About the Role * Education: Bachelor's Degree, or equivalent, in a technical discipline, or a corresponding educational background with professional-level security certifications relevant to the role. * Certification: One advanced, professional, or expert-level security certification. * Experience: Minimum three (3) years of mid-level Cybersecurity experience at an analyst or engineer level. * Unique or Preferred Skills: Previous experience leading, supporting, managing, and administering at least one application. * Previous experience leading security projects and initiatives * Expertise in HIPAA, HITRUST, and NIST security controls. * Strong understanding of modern authentication protocols (SAML, OAuth, OpenID Connect, LDAP). * Knowledge of RBAC/ABAC design and governance in a healthcare setting. * Familiarity with IAM integrations for EPIC and other cloud-based healthcare applications. * Excellent communication skills, with the ability to work effectively with technical and non-technical stakeholders. * Experience with ADUC active directory users and computers. * Strong analytical and problem-solving skills with attention to detail. * Ability to work independently with minimal oversight on a broad range of IAM projects and initiatives. * Deep understanding of IAM security principals and best practices, including principal of least privileges, defense in depth, Zero Trust, and separation of duties ## Description As the IAM Security Engineer II serves as a senior technical resource responsible for designing, implementing, and supporting Identity and Access Management solutions that ensure secure and compliant access to Endeavor Health systems and data. This role requires deep understanding and expertise in IGA platforms, automation, governance, as well as experience with healthcare-specific applications and compliance frameworks such as HIPAA, HITRUST, and NIST. The IAM Security Engineer will partner with security, compliance, HR, and clinical teams to deliver robust identity lifecycle management, privileges access controls, and authentication/authorization solutions for the Endeavor Healthcare organization. The IAM Security Engineer will also design and implement security IAM policies for various devices and systems, oversee security for internal and external systems, and mentor junior staff. Candidates should be proficient in using source code editor tools and programming/scripting languages. Responsibilities extend to participating in compliance audits, managing IAM projects, and ensuring alignment with HIPAA, and other applicable laws and regulations and/or standards. This mostly remote role includes a 24/7 on-call rotation and requires strong leadership, project management, and communication skills. To be successful in this role, you will be expected to stay up to date on the latest IAM solutions and technologies and advocate for the adoption of industry best practices What you will do: * Lead the configuration, integration, and management of IAM solutions across the organization. * Design and configure role-based access and attribute-based access controls for automation and birthright access. * Configure and manage access certification campaigns for entitlements, roles, and elevated access for regulatory compliance needs. * Implement and support privileged access controls using solutions like Delinea or MS Entra PIM for admin accounts, break-glass access, and clinical application elevated privileges. * Enforce multi-factor authentication (MFA) and just-in-time access for privileged accounts. * Develop and maintain integrations between IAM platforms and EHR systems, cloud services, and on-prem applications. * Create scripts, APIs, and workflows to streamline access user lifecycle management. * Ensure IAM systems meet HIPAA, HITRUST, PCI, DSS, NIST CSF, and other healthcare regulatory requirements. * Configure and support Single Sign-on (SSO) integrations using SAML, OAuth, or OpenID Connect for internal and third-party applications. * Participate in security incident response, including rapid access revocation and forensic investigations. * Serve as a technical mentor for junior IAM engineers and analysts. * Lead complex IAM projects and act as a subject matter expert for cross-functional initiatives. * Socializes strategies, standards, policies, procedures, communications, and awareness efforts with business partners. * Participates in reviews of new or existing systems to ensure IAM requirements are satisfied, prior to implementation, including performing pre-deployment and as-built risk assessments. * Design policies and standard operational procedures (SOP) as required for IAM, PAM, and access management solutions. ## Related Videos - [Bitcoin SV: The Massively Scaled Blockchain to Meet Developer Needs](https://www.wearedevelopers.com/videos/20-bitcoin-sv-the-massively-scaled-blockchain-to-meet-developer-needs) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)