Ascension is a leading nonprofit Catholic health system committed to reimagining healthcare with a supportive environment for its associates. They are seeking an Identity Security Engineering Leader to execute a cloud-first identity governance and administration modernization roadmap while leading a high-performing engineering team. The role involves optimizing security infrastructure and serving as the primary technical authority for identity risk management.
Responsibilities:
- Execute the cloud-first IGA/IAM modernization roadmap, orchestrating enterprise-wide application onboarding and replacing legacy systems with highly scalable, standardized identity service platforms
- Engineer and automate end-to-end identity lifecycle event flows (Joiner/Mover/Leaver) and access certification workflows, eliminating manual operations through API integrations, infrastructure-as-code, and platform-native automation capabilities
- Direct and mentor a high-performing engineering team using Agile frameworks, establishing standard operating procedures, robust change management, and a culture of continuous delivery for identity security solutions
- Optimize and secure hybrid directory infrastructure, maintaining deep technical control over Microsoft Active Directory, Entra ID, and market-leading enterprise IGA platforms (e.g., SailPoint, Saviynt, Okta, OneIdentity)
- Serve as the primary technical escalation authority and compliance SME, managing internal/external IAM audits, designing robust security control documentation, and translating complex identity risk data into strategic counsel for senior leadership
Requirements:
- High School diploma equivalency with 3 years of cumulative experience OR Associate's degree/Bachelor's degree with 2 years of cumulative experience OR 7 years of applicable cumulative job specific experience required
- Advanced Technical Degree: Bachelor's degree or higher in Computer Science, Information Security, or a closely related engineering discipline
- Industry Security Credentials: Possession of active, recognized cybersecurity certifications such as CISSP, CISM, or CIAM
- Vendor Platform Certification: Current, formal engineering or administration certifications on enterprise-grade IGA/IAM platform ecosystems (e.g., SailPoint, Saviynt, Okta)
- 3 years of leadership or management experience preferred