IAM Security Engineer
HealthEquity, Inc.1 month ago
Remote, United StatesSenior
Base Salary
$97k - $123k/yr
Responsibilities
- Manage, configure, and optimize SailPoint Identity Security Cloud, Entra ID, and related IAM and identity governance solutions.
- Develop automation for provisioning, de-provisioning, access changes, compliance reporting, role management, entitlement reviews, and administrative workflows.
- Build AI-enabled tools and agents that detect anomalous activity, identify access risks, summarize issues, and recommend remediation steps.
- Develop retrieval-augmented LLM tools and refine prompts and retrieval strategies for IAM and governance use cases.
- Use IAM data, reporting tools, analytical methods, and large datasets to identify trends, support KPIs and KRIs, and improve access hygiene.
- Support rules, queries, reports, access reviews, policy enforcement, and detection of non-standard or privileged access.
- Partner with AI, Security, IT, application owners, business stakeholders, audit, governance, and compliance teams.
- Support alignment with HIPAA, SOX, SOC2, PCI-DSS, Zero Trust, and related security and regulatory requirements.
- Improve IAM documentation, controls, processes, accuracy, and operational efficiency.
Requirements
- Bachelor’s degree in Computer Science, Information Systems, or a related field, or equivalent years of related experience.
- At least 5 years of experience in IAM, cybersecurity, information security, or a related technical field.
- Experience with enterprise IAM solutions, identity governance, access lifecycle management, and access control processes.
- Experience with automation, scripting, data analysis, reporting, or AI-assisted workflow improvement.
- Working knowledge of generative AI, large language models, or AI-assisted tooling applied to IAM or governance use cases.
- Experience with platforms such as SailPoint Identity Security Cloud, Entra ID, or similar identity governance tools.
- Experience with privileged access management tools such as BeyondTrust or similar solutions.
- Understanding of Zero Trust models and tools such as Silverfort or related access security technologies.
- Experience with cloud environments such as Azure, AWS, or GCP and IAM integrations.
- Familiarity with Python, SQL, APIs, regulatory frameworks, and technical methods for data analysis, reporting, automation, or IAM integration.
- Ability to communicate technical findings, access risks, and analytical results as actionable recommendations.
- Relevant certifications such as CISSP, CISM, or IAM-focused certifications are preferred.
Benefits
- Remote position.
- Medical, dental, and vision coverage.
- HSA contribution and match, plus dependent care FSA match.
- Uncapped paid time off and paid parental leave.
- 401(k) match and financial literacy programs.
- Ongoing education and tuition assistance.
- Gym and fitness reimbursement and wellness program incentives.
- In-person Trailhead onboarding is held onsite at headquarters once per quarter; HealthEquity covers required travel and accommodations.
- The role may begin with virtual, self-paced onboarding before a mandatory onsite Trailhead session.