As a Senior Security Engineer II at Aledade, we play a central role in helping secure our enterprise, cloud native environments, and applications. We’re looking for security engineers that understand data and automation are important ingredients to our mission and know how to actively employ these ingredients at scale. Beyond the technical expertise, we value individuals who can partner cross-functionally across various teams, driving impactful outcomes and further securing our digital landscape. We prioritize Security-as-Code and API-first automation over manual administration, building resilient identity pipelines that scale seamlessly with our growth.
Primary Duties
-
Working cross functionally to design, build, and operate solutions that continuously improve and automate our security capabilities
-
Leveraging data to understand trends, metrics, and opportunities to improve our security posture and then helping execute on those opportunities with stakeholders
-
Leading and enhancing incident response efforts, spearheading analysis, containment, and mitigation strategies in a cross-functional environment to ensure effective resolution and remediation of security incidents
-
Helping craft and refine security documentation pertinent to our Security Program, such as policies, standards, baselines, and standard operating procedures
-
Mentoring and coaching more junior engineers or analysts
Minimum Qualifications
-
BS / BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field, 8 years security domain experience without degree
-
4+ years of experience acting as a trusted advisor in a team setting, solving for short-term and long-term business value
-
4+ years of experience coaching other engineers or analysts
Identity & Access Management
- Experience with Federated Identity tools - Okta/Entra ID/Ping Identity
- Experience with Identity Governance and Administration (IGA) tools - Omada, Lumos, Sailpoint, Saviynt
- Cloud IAM Architecture: Deep knowledge of cloud security architectures (AWS IAM, Azure Entra ID, or GCP IAM), including designing/enforcing least-privilege roles, RBAC/ABAC, and permission policies.
- Experience with Automation - Python, Terraform, Powershell.
Preferred KSA’s
-
Prior experience working in the healthcare industry with health-tech systems, like Electronic Health Records, Clinical data, etc.
-
Prior experience with a focus on tooling, automation, and distributed systems development is preferred.
-
Experience generating automated metrics to measure service and program effectiveness and consistency
-
Strong communication skills, both written and verbal, with the capability to articulate complex technical issues to a diverse audience
Identity & Access Management
- Non-Human Identity (NHI) Fundamentals: Practical experience managing service accounts, API keys, bots, and automated workload identities across cloud infrastructure.
- Identity Protocols & Governance: Proficiency in identity standards and federation protocols (SAML, OIDC, OAuth, LDAP/Directory Services), user lifecycle automation, SSO, MFA, and Just-In-Time (JIT) access.
- Experience with Identity & Access Management (IaM) systems and practices
- In-depth knowledge of authentication protocols, authorization mechanisms, and directory services
- Strong proficiency implementing IaM solutions within very complex environments
- Familiarity with regulatory compliance and security standards
- Experience generating automated metrics to measure service and program effectiveness and consistency
- Strong communication skills, both written and verbal, with the capability to articulate complex security issues to a diverse audience
Physical Requirements
Sitting for prolonged periods of time. Extensive use of computers and keyboard. Occasional walking and lifting may be required