SECTION I · THE BRIEF
Brief #24788Updated 06 AUG 2026AUSTIN, TXLeverLIGHTSPEED VENTURE PARTNERS
Employbl Company Profile

Staff Security Engineer - IAM

Aledade is a new company with an old-fashioned goal: putting doctors back in control of health care. Aledade partners with independent, primary care physicians to provide everything the doctors need to create and run an…

Location
Austin, TX
Company size
50–1,000
Posted
1w ago
Via
Lever
Section II · Premium ProfileMembers only
  • 01Comp band & equity packageLocked
  • 02Seniority & experience requirementsLocked
  • 03Interview process & rubricLocked
  • 04Hiring manager & team contextLocked
  • 05Growth trajectory in this roleLocked
  • 06Offer & decision timelineLocked

7-day free trial · $25/mo · cancel anytime

Aledade logo

Staff Security Engineer - IAM · Aledade

View company profile
Job title
Staff Security Engineer - IAM
Job location
Austin, TX
Job description
The Staff Security Engineer will be responsible for designing, implementing, and maintaining security identity services that support our business. You will understand data and automation are important ingredients to our mission and know how to actively employ these ingredients at scale. Beyond the technical expertise, we value individuals who can partner cross-functionally across various teams, driving impactful outcomes and further securing our digital landscape.
Primary Duties
  1. Lead the development, implementation, and ongoing maintenance of comprehensive security strategies and solutions.

  2. Design and deploy advanced identity security controls to safeguards networks, systems, and applications.

  3. Work across disciplines to shape our security services strategy and execution

  4. Set and uphold the standard for security processes to support high-quality engineering

  5. Mentor and galvanize new engineers to do their best work

Minimum Qualifications
  • BS/BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field

  • 8+ years of experience in software or security engineering within Cloud Native environments

  • Domain Specific Minimum Requirements

    • Cloud IAM Architecture: Deep knowledge of cloud security architectures (AWS IAM, Azure Entra ID, or GCP IAM), including designing/enforcing least-privilege roles, RBAC/ABAC, and permission policies.

    • Identity Protocols & Governance: Proficiency in identity standards and federation protocols (SAML, OIDC, OAuth, LDAP/Directory Services), user lifecycle automation, SSO, MFA, and Just-In-Time (JIT) access.

    • Automation & IaC: Strong hands-on proficiency with Infrastructure as Code (Terraform or CloudFormation) and scripting (Python or PowerShell) to automate identity provisioning, drift detection, and access workflows.

    • Non-Human Identity (NHI) Fundamentals: Practical experience managing service accounts, API keys, bots, and automated workload identities across cloud infrastructure.

Preferred KSA’s
  • Experience architecting, developing, and deploying large-scale distributed systems at scale

  • Experience with cloud technologies, e.g., AWS, Azure, GCP

  • Experience building continuous integration and continuous development (CI/CD) pipelines

  • Familiarity with server-side web technologies (eg: Java, Python, Scala, C#, C++, Go)

  • 4+ years of experience acting as a trusted technical decision-maker in a team setting, solving for short-term and long-term business value

  • Experience with health-tech systems, like Electronic Health Records, Clinical data, etc.

  • Domain Specific Experience

    • AI Identity & Access Management

      • NHI Architecture: Design secure, scalable, and automated solutions for managing service accounts, machine identities, secrets, certificates, APIs, and cloud-native workloads.

      • AI/ML Security & Threat Modeling: Hands-on experience with AI/ML tools (e.g., Gemini, Claude, AWS Bedrock), conducting threat modeling for AI systems, or managing automated permission guardrails for AI agents.

      • AI/ML Security & Threat Modeling: Hands-on experience with AI/ML tools (e.g., Gemini, Claude, AWS Bedrock), conducting threat modeling for AI systems, or managing automated permission guardrails for AI agents.

      • Advanced Protocols & Microservice Security: Familiarity with SPIFFE/SPIRE, zero-trust network architectures, or complex containerized identity frameworks.

      • SIEM & Security Observability Tools: Experience orchestrating VPC flow logs and audit feeds into security analytics tools (e.g., Crowdstrike, Sumo Logic, Wiz, Zscaler).

      • Industry & Regulatory Context: Experience with health-tech systems, clinical data environments (EHRs), and regulatory standards (HIPAA, SOC 2, ISO 27001).

      • Certifications: CISSP, OSCP, CEH, Certified AI Security Specialist (CAISS), or GIAC Machine Learning Security Engineer (GMSE).

Physical Requirements
Sitting for prolonged periods of time. Extensive use of computers and keyboard. Occasional walking and lifting may be required.
View job listing ↗

Get the Saturday tech briefing

New company profiles, funding moves, and who’s hiring across the market — every Saturday morning.

Aledade headquarters

Bethesda, MD

Company size

501,000 employees

Founded

2014

Total raised

$1,177,899,959

View company profile ↗

Funding rounds

  • Debt Financing$500M
  • Series F$260M
  • Series E$123M
  • Series D$100M
  • Series C$64M
  • Corporate Round$10M
  • Series C$46.1M
  • Series B$40.2M
  • Series B$30M
  • Series A$4.5M