Sr Engineer, Identity & Access Management

Posted Yesterday
Be an Early Applicant
Pune, Mahārāshtra, IND
In-Office
Senior level
Healthtech
The Role
Designs, implements, and improves identity and access management capabilities across Microsoft Entra ID, Active Directory, and related platforms. Builds IAM automation and agentic AI solutions for role mining, access reviews, certification, and anomaly detection. Integrates identity systems with security and IT platforms, supports incident response and audit readiness, documents IAM processes, and mentors junior engineers and operations teams on secure coding and responsible AI automation.
Summary Generated by Built In

Your Future Evolves Here

Evolent partners with health plans and providers to achieve better outcomes for people with most complex and costly health conditions. Working across specialties and primary care, we seek to connect the pieces of fragmented health care system and ensure people get the same level of care and compassion we would want for our loved ones.

Evolent employees enjoy work/life balance, the flexibility to suit their work to their lives, and autonomy they need to get things done. We believe that people do their best work when they're supported to live their best lives, and when they feel welcome to bring their whole selves to work. That's one reason why diversity and inclusion are core to our business.

Join Evolent for the mission. Stay for the culture.

What You’ll Be Doing:

Job Summary

This role designs, implements and continuously improves identity and access management (IAM) capabilities across Microsoft Entra ID, Active Directory and adjacent platforms, with particular focus on role-based access control (RBAC), conditional access, privileged access and identity governance. The engineer builds automation and agentic AI solutions—such as access-review and role-mining agents—to reduce manual administrative overhead and strengthen the organization’s zero-trust security posture. The engineer collaborates with security, compliance and platform teams to ensure identity controls align with company policy and applicable regulations.

Essential Functions

  • Design, implement and operate IAM capabilities including RBAC, conditional access, privileged identity management (PIM), and entitlement management
  • Write and maintain scripts and integrations (PowerShell, Python, Microsoft Graph API, or similar) for identity provisioning, access reviews, certification workflows and reporting
  • Design, build and deploy agentic AI solutions (e.g., a role-mining agent) that analyze access patterns, recommend least privilege role assignments and automate periodic access certification
  • Integrate IAM systems with adjacent technologies (endpoint management, security operations, ITSM, directory services) to support end-to-end identity lifecycle management
  • Monitor and report on identity-related security anomalies and support incident response and remediation for identity-based threats
  • Support audit readiness by producing and maintaining documentation of IAM design, controls, and automation
  • Create, publish and communicate knowledgebase articles and standard operating procedures for IAM processes
  • Act as a mentor to junior engineers and operations teams on IAM for best practices, secure coding and responsible use of AI-driven automation

Required Qualifications

  • 7+ years managing or supporting identity and access management, identity governance, or related security platforms
  • 3+ years of hands-on experience with Microsoft Entra ID (Azure AD), RBAC design, conditional access and privileged identity management (PIM)
  • Demonstrated coding/scripting ability (PowerShell, Python, Microsoft Graph API, or similar) with a track record of building identity automation, integrations and reporting tools
  • Hands-on experience designing or deploying agentic AI or automation solutions for identity/access use cases (e.g., role mining, access certification, anomaly detection)
  • Experience with identity protocols and standards (SAML, OAuth/OIDC, SCIM) and identity governance/compliance frameworks
  • Working knowledge of Generative AI and agentic AI concepts (LLM integration, tool/function calling, retrieval-augmented generation) as applied to identity and security operations
  • Ability to write clear technical documentation

Preferred Qualifications

  • Experience building or contributing to an internal AI agent/Center of Excellence pod, including agent design and application lifecycle management (ALM) practices
  • Experience with Microsoft Copilot Studio or similar low-code AI agent platforms
  • Passion for zero-trust security with an awareness of the latest identity and AI trends

Preferred Education

  • Bachelor’s degree in IT, Computer Science, or related field

Preferred Certifications

  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Azure AI Engineer Associate (AI-102) or Copilot Studio/agentic AI certification

General Performance Criteria

As the Sr Engineer, Identity & Access Management, you will be required to fulfill your responsibilities while meeting the following general performance criteria for this position at this level:

Expertise: You research, create proof of concepts, and introduce new methods

Communication: You guide others through problem solving whether it is a technical issue, project impediment, or conflict

Domain: You guide the delivery of your team to make a positive impact on other parts of the company based on detailed knowledge of the needs of those stakeholders and how those needs are supported by your team

System: You own relevant segment of systems that are used regularly for the business to function and are well versed in the related KPIs

Process: You question the status quo in a constructive manner to find areas for the team to improve

Influence: You regularly make an impact to your entire team

To ensure a secure hiring process we have implemented several identity verification steps, including submission of a government issued photo ID. We conduct identity verification during interviews, and final interviews may require onsite attendance. All candidates must complete a comprehensive background check, in-person I-9 verification, and may be subject to drug screening prior to employment. The use of artificial intelligence tools during interviews is prohibited and monitored. Misrepresentation will result in immediate disqualification from consideration.

Mandatory Requirements:

Employees must have a high-speed broadband internet connection with a minimum speed of 50 Mbps and the ability to set up a wired connection to their home network to ensure effective remote work. These requirements may be updated as needed by the business.


Evolent is an equal opportunity employer and considers all qualified applicants equally without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, or disability status. If you need reasonable accommodation to access the information provided on this website, please contact [email protected] for further assistance.


The expected base salary/wage range for this position is $. As part of our total compensation package, Evolent is proud to offer comprehensive benefits (including health insurance benefits) to qualifying employees. All compensation determinations are based on the skills and experience required for the position and commensurate with experience of selected individuals, which may vary above and below the stated amounts.

Skills Required

  • 7+ years managing or supporting identity and access management, identity governance, or related security platforms
  • 3+ years of hands-on experience with Microsoft Entra ID, RBAC design, conditional access, and privileged identity management
  • Coding and scripting experience with PowerShell, Python, Microsoft Graph API, or similar, including identity automation, integrations, and reporting tools
  • Experience designing or deploying agentic AI or automation solutions for identity and access use cases
  • Experience with SAML, OAuth/OIDC, SCIM, and identity governance or compliance frameworks
  • Working knowledge of generative AI and agentic AI concepts, including LLM integration, tool or function calling, and retrieval-augmented generation
  • Ability to write clear technical documentation
  • Experience contributing to an internal AI agent or Center of Excellence pod, including agent design and application lifecycle management practices
  • Experience with Microsoft Copilot Studio or similar low-code AI agent platforms
  • Bachelor's degree in IT, Computer Science, or a related field
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Azure AI Engineer Associate (AI-102) or Copilot Studio or agentic AI certification
  • High-speed broadband internet connection of at least 50 Mbps and ability to establish a wired home network connection

Evolent Health Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Evolent Health and has not been reviewed or approved by Evolent Health.

  • Leave & Time Off Breadth — Salaried roles commonly include unlimited PTO alongside paid holidays, volunteer time off, and a sabbatical option after several years. Feedback suggests time-off flexibility is a meaningful lifestyle strength for many roles.
  • Healthcare Strength — Comprehensive medical, dental, and vision coverage is paired with a publicly highlighted emphasis on mental-health resources, including a 2026 Gold Bell Seal from Mental Health America. This recognition signals above-baseline support for employee health needs.
  • Wellbeing & Lifestyle Benefits — A remote-first approach for most positions and flexible work arrangements are consistently emphasized. Feedback suggests these elements add notable non-cash value to the overall package.

Evolent Health Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Arlington, VA
2,581 Employees
Year Founded: 2011

What We Do

Evolent Health delivers proven clinical and administrative solutions that improve whole person health while making health care simpler and more affordable. Our three solutions—Evolent Care Partners, New Century Health and Evolent Health Services—encompass total cost of care management, specialty care management and administrative simplification. Evolent serves a national base of leading payers and providers, is the first company to receive the National Committee for Quality Assurance's Population Health Program Accreditation, and is consistently recognized as a top place to work in health care nationally. OUR PEOPLE We were named one of “Becker’s 150 Great Places to Work in Healthcare” in 2016, 2017, 2018 and 2019 and are proud to be recognized as a leader in driving diversity, equity, and inclusion (DE&I) efforts. Evolent achieved a 100% score on the 2020 Human Rights Campaign's Corporate Equality Index, making us one of the best places to work for LGBTQ+ employees. We were also named on the Best Companies for Women to Advance List 2020 and 2021 by Parity.org. OUR CULTURE Our accessible leadership team cultivates an open-door environment. We don’t like approval chains; we love ideas and people with the courage and conviction to bring novel solutions forward. We win as a team and always ask how we can do better. We respect and encourage commitments outside of work. OUR COMPENSATION & BENEFITS We recognize and reward our most valuable asset—our team—with competitive pay and annual performance-based bonuses. Evolent also offers comprehensive health benefits, a company-matched 401(k) and flexible spending accounts. Every salaried Evolent employee receives unlimited Personal Time Off and is eligible for a month-long sabbatical after working five years with Evolent. This account is monitored closely by our company. Please message us at [email protected] with any questions or concerns.

Similar Jobs

TransUnion Logo TransUnion

Manager, Web Application Development

Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Hybrid
Pune, Mahārāshtra, IND
13000 Employees

CSC Logo CSC

Accountant

Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
Remote or Hybrid
2 Locations
8500 Employees

TransUnion Logo TransUnion

Senior Consultant

Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Hybrid
4 Locations
13000 Employees

TransUnion Logo TransUnion

Consultant

Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Hybrid
4 Locations
13000 Employees

Similar Companies Hiring

Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees
Vitalize Thumbnail
Artificial Intelligence • Healthtech • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account