IAM Engineer - Cloud Platform

Posted 2 Days Ago
Hiring Remotely in United States
Remote or Hybrid
109K-178K Annually
Senior level
Healthtech
The Role
Own cloud identity and access management across AWS commercial and GovCloud environments. Design federation, cross-account entitlement models, automated joiner-mover-leaver workflows, workload identities, OIDC pipelines, SSO onboarding, access recertification, and audit evidence. Integrate cloud entitlements with enterprise identity governance platforms while eliminating long-lived credentials and standing access. The role requires strong AWS and Azure IAM expertise, Terraform, federation protocols, regulated-environment experience, and obtaining CISSP certification within 180 days.
Summary Generated by Built In

GuideWell is migrating to AWS across commercial and GovCloud partitions. The IAM Engineer owns how identity works in that environment: federation from the enterprise identity provider, access lifecycle into cloud accounts, and the authorization model application teams build against. The enterprise identity team owns the identity provider and governance platform. This role owns the cloud side of the integration and the entitlement design within it.

 

What You Will Be Doing

 

  • Design and operate federation and the entitlement model across accounts 
  • Automate access lifecycle: joiner, mover, leaver 
  • Build workload identity patterns; eliminate long-lived keys and standing access 
  • Build access recertification and produce audit evidence 
  • Onboard applications to SSO and review access designs with application teams 
  • Integrate cloud entitlements with the enterprise identity governance platform.

  • Build access recertification for cloud entitlements and produce evidence for audit.

  • Design workload and machine identity patterns, including roles for services and OIDC for pipelines.

What We Require

  • 6+ years related work experience in  IAM, security, or platform engineering, with 3+ years focused on cloud identity 

  • Related Bachelor's degree required 

  • Strong AWS/Azure IAM skills, including cross-account access, federation, and permission boundaries. 

  • Hands-on experience with SSO and federation platforms. 

  • Experience integrating an enterprise identity provider such as Okta, Entra ID, or Ping with cloud. 

  • Hands-on Terraform. 

  • Working knowledge of SAML, OIDC, and SCIM. 

  • Experience in an environment governed by HIPAA, HITRUST, SOC 2, FedRAMP, or NIST 800-53.

  • Required to obtain Certified Information Systems Security Professional License (CISSP) within 180 Days of hire

 

What We Prefer

 

  • Identity engineering across a mix of GovCloud and commercial, including the cross-partition trust boundary. 

  • Which partition was primary does not matter. Healthcare payer experience. 

  • Privileged access management tooling such as CyberArk. 

  • Identity governance and administration tooling such as SailPoint or Saviynt, and lifecycle automation. 

  • Machine identity at scale, including workload federation and secrets management. 

  • Python or equivalent scripting for identity automation. 

  • Cloud Security Specialty, CCSP, or an identity-focused certification. 
     

General Physical Demands

 

  • Exerting up to 10 pounds of force occasionally to move objects. 

  • Jobs are sedentary if traversing activities are required only occasionally. 

  • This position offers a hybrid work arrangement which combines flexibility with in office engagement. Team schedules are determined based on role requirements and business needs. Travel to and from our corporate offices may be required.

 

What We Offer
As a Florida Blue employee, you will be at the heart of GuideWell’s vision – to lead the nation in transforming health through compassionate, connected, and technology-enabled care that delivers personalized value and empowered living. 
To support your wellbeing, comprehensive benefits are offered. As an employee, you will have access to: 
 

  • Medical, dental, vision, life and global travel health insurance
  • Income protection benefits: life insurance, short- and long-term disability programs
  • Leave programs to support personal circumstances
  • Retirement Savings Plan including employer match
  • Paid time off, volunteer time off, 10 holidays and 2 well-being days
  • Additional voluntary benefits available; and a comprehensive wellness program

Employee benefits are designed to align with federal and state employment laws. Benefits may vary based on the state in which work is performed. Benefits for intern, part-time and seasonal employees may differ.
To support your financial wellbeing, we offer competitive pay as well as opportunities for incentive or commission compensation. We also conduct regular annual reviews with pay for performance considerations for base pay increases. 

Typical Annualized Offer/Hiring Range: $109,300 - $136,600
Annualized Salary Range: $109,300 - $177,600
Final pay will be determined with consideration of market competitiveness, internal equity, and the job-related knowledge, skills, training, and experience you bring.
We are an Equal Employment Opportunity employer committed to cultivating a work experience where everyone feels like they belong and can perform at their best in pursuit of our mission. All qualified applicants will receive consideration for employment.

Skills Required

  • 6+ years of related experience in IAM, security, or platform engineering
  • 3+ years focused on cloud identity
  • Related bachelor's degree
  • Strong AWS and Azure IAM skills, including cross-account access, federation, and permission boundaries
  • Hands-on experience with SSO and federation platforms
  • Experience integrating Okta, Entra ID, Ping, or another enterprise identity provider with cloud environments
  • Hands-on Terraform experience
  • Working knowledge of SAML, OIDC, and SCIM
  • Experience in an environment governed by HIPAA, HITRUST, SOC 2, FedRAMP, or NIST 800-53
  • Obtain Certified Information Systems Security Professional certification within 180 days of hire
  • Identity engineering across GovCloud and commercial environments, including cross-partition trust boundaries
  • Healthcare payer experience
  • Experience with privileged access management tools such as CyberArk
  • Experience with identity governance and administration tools such as SailPoint or Saviynt
  • Machine identity at scale, including workload federation and secrets management
  • Python or equivalent scripting for identity automation
  • Cloud Security Specialty, CCSP, or identity-focused certification
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Jacksonville, FL
200 Employees
Year Founded: 2014

What We Do

GuideWell Mutual Holding Corporation is a not-for-profit mutual holding company that is the parent to a family of forward-thinking companies focused on transforming health care. We’re at the forefront, forging ahead by innovating, collaborating and advocating for better health. We help people make sense of this new world, forming an integrated ecosystem of products and services and ensuring they get the best experience. We’re relentlessly building and refining to drive higher efficiency and exceptional care. GuideWell – Built for the future of health.

Similar Jobs

Optum Logo Optum

COBRA Client Services Leader - Remote

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office or Remote
Albany, NY, USA
160000 Employees
92K-164K Annually

Optum Logo Optum

Business Systems Analyst

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office or Remote
Eden Prairie, MN, USA
160000 Employees
113K-193K Annually

Optum Logo Optum

Senior Commercial Real Estate Underwriter - Remote

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office or Remote
Draper, UT, USA
160000 Employees
92K-164K Annually

Optum Logo Optum

Counsel

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office or Remote
Minnetonka, MN, USA
160000 Employees
135K-231K Annually

Similar Companies Hiring

Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees
Vitalize Thumbnail
Artificial Intelligence • Healthtech • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account