Principal IAM Engineer
Core
Technical authority for identity and access management in a regulated healthcare environment, owning the identity control plane end-to-end to secure access to Protected Health Information (PHI).
Role type
Principal IAM Engineer (Individual Contributor)
Builds
Automated identity lifecycle workflows, Zero Trust access controls, secrets management infrastructure, and identity-as-code pipelines.
Domain
Healthcare / Cybersecurity
Deliverable
production ML models | product features | infrastructure
Required skills
Identity lifecycle automation (RBAC/ABAC), Microsoft Entra ID engineering, Zero Trust design, Identity-as-code (Terraform), Secrets and non-human identity management, PowerShell/Python scripting, Identity governance platform engineering.
Preferred skills
Saviynt, Azure PIM, Keeper, Passkeys/FIDO2, NIST SP 800-63 Rev. 4 compliance, experience in regulated environments (HIPAA/HITRUST).
Technologies
Microsoft Entra ID, Terraform, GitHub, Saviynt, Azure PIM, Keeper, PowerShell, Python, SAML, OIDC, OAuth2.
Responsibilities
Own identity lifecycle automation (joiner/mover/leaver) with verified deprovisioning; enforce Conditional Access and phishing-resistant MFA on PHI-facing apps; manage secrets and non-human identities with owner registries; design Zero Trust access models with JIT elevation; build identity-as-code infrastructure; set verification standards for service desk operations.
Seniority
Principal, hands-on IC