Blue Cross & Blue Shield of Rhode Island

Identity & Access Management Engineer

Blue Cross & Blue Shield of Rhode Island
Apply
5 days ago
Providence, RI, USAMid Level / Senior

Base Salary

$83k - $125k/yr

Responsibilities

  • Administer Microsoft Entra ID, Active Directory, Okta, and related identity services, including user lifecycle, groups, authentication, synchronization, and access governance.
  • Design and maintain SSO, MFA, Conditional Access, passwordless authentication, and Identity Protection capabilities.
  • Manage PIM, RBAC, administrative roles, service accounts, and privileged access across Azure, Entra ID, Okta, and GCP.
  • Configure SAML, OAuth 2.0, OIDC, SCIM, LDAP, Kerberos, and federation-based application integrations.
  • Support GCP Cloud Identity, IAM roles, service accounts, workload identity federation, and secure access to cloud resources.
  • Automate identity workflows using PowerShell, Microsoft Graph API, Terraform, Python, Okta Workflows, Azure Automation, and infrastructure-as-code practices.
  • Investigate and resolve identity, authentication, provisioning, authorization, and access incidents.
  • Support identity governance, compliance, audit readiness, security assessments, proof-of-concept initiatives, Zero Trust, and continuous improvement efforts.

Requirements

  • 3–5 years of direct experience in IAM, cloud identity, directory services, access management, or security engineering in enterprise environments.
  • Strong knowledge of Microsoft Entra ID, Active Directory Domain Services, Entra Connect/Cloud Sync, Azure RBAC, Okta Workforce Identity Cloud, Google Cloud IAM, SSO, MFA, Conditional Access, and PIM.
  • Hands-on expertise with enterprise authentication, federation, and identity integration technologies including SAML 2.0, OAuth 2.0, OIDC, SCIM, and LDAP.
  • Ability to automate operational tasks using PowerShell, Python, Terraform, Azure CLI, and APIs.
  • Strong understanding of certificate-based authentication, PKI, cryptographic concepts, identity governance, authorization, and federation.
  • Experience with hybrid and cloud identity environments, Microsoft 365, Azure, Google Cloud, SaaS integrations, provisioning, synchronization, federation, and governance processes.
  • Experience with identity migrations, platform upgrades, cloud adoption, access management transformations, Entra Identity Governance, Access Reviews, Okta Identity Engine, Okta Workflows, Microsoft Graph API, Azure Automation, and Terraform.
  • Knowledge of PAM solutions such as CyberArk or Delinea, cloud-native application and API security, ServiceNow integrations, security monitoring, audit logging, incident response, and regulated healthcare or financial environments.
  • Understanding of HIPAA, SOC2, NIST, CIS Controls, Zero Trust, and cybersecurity frameworks.
  • Microsoft identity, Azure, cybersecurity architect, ITIL Foundation, Okta, or other identity certifications are valued.
  • A bachelor's degree in a related field is preferred but not required; equivalent hands-on experience may substitute.

Benefits

  • Pay range is $83,200.00–$124,800.00.
  • Flexible work arrangements may be in-office, hybrid, or remote depending on the role; stated schedules range from onsite five days per week to onsite zero to one day per week.
  • Health, dental, and vision insurance, mental health and well-being programs, paid time off, tuition reimbursement, student-loan repayment assistance, bonuses, and investment plans are offered.
  • Employees receive additional paid time to volunteer.
  • Eligible residence states include Arizona, Connecticut, Florida, Georgia, Louisiana, Massachusetts, North Carolina, Oklahoma, Rhode Island, South Carolina, Texas, and Virginia, pending HR approval.
  • The position is based with an organization headquartered in downtown Providence, Rhode Island.
Blue Cross & Blue Shield of Rhode Island

About Blue Cross & Blue Shield of Rhode Island

501-1,000 employees
Contact me