Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Senior Identity Security Engineer

HealthVerity
CompanyHealthVerity
CategoryEngineering
LocationPhiladelphia
RemoteOn-site (inferred)
EmploymentNot stated
LevelSenior
SalaryNot stated by the employer
Posted27 Jul 2026
Last verified2 Aug 2026
SourceEmployer ATS (greenhouse)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
Please note:  This is a hybrid role requiring 3 days in office at our Philadelphia HQ - 1818 Market Street. ROLE OVERVIEW As a Senior Identity Security Engineer at HealthVerity, you will serve as the technical owner for the company's Identity and Access Management program. You will define, implement, and evolve identity services that secure workforce and customer access across HealthVerity's platforms and products. You will own critical identity technologies including Active Directory, Okta, Auth0, and AWS Cognito, ensuring secure authentication, authorization, provisioning, and lifecycle management for employees, customers, partners, and applications. Working closely with Security, IT, Engineering, and Product teams, you will build scalable identity services that support HealthVerity's growth while meeting healthcare security and compliance requirements. This role will be instrumental in advancing Zero Trust initiatives, strengthening access governance, and ensuring the right individuals have the right access to the right resources at the right time.   KEY RESPONSIBILITIES Own the architecture, engineering, and operation of HealthVerity's Identity and Access Management platforms across workforce and customer environments. Design, implement, and support enterprise Active Directory services and identity infrastructure. Design and implement scalable identity architectures using Active Directory, Okta, Auth0, AWS Cognito, and related technologies. Develop and maintain identity federation solutions leveraging SAML, OAuth 2.0, OpenID Connect (OIDC), SCIM, LDAP, and Kerberos. Manage and enhance workforce identity services including Active Directory, Entra ID, and Okta. Support and enhance customer identity platforms including Auth0 and AWS Cognito. Develop and maintain the IAM roadmap aligned to business growth, security requirements, and regulatory obligations. Develop identity-focused security monitoring, alerting, and response playbooks. Assist in implementing and maintaining Zero Trust security principles. Partner with Security, IT, Engineering, Product, and Compliance teams on strategic initiatives.   QUALIFICATIONS Required 7+ years of experience in Identity and Access Management, Identity Security, Security Engineering, or related disciplines. Expert-level experience with Active Directory administration, architecture, and security. Hands-on experience with customer identity platforms such as Auth0, AWS Cognito, Ping Identity, ForgeRock, or similar solutions. Strong experience administering and engineering Okta environments. Strong understanding of SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), SCIM, LDAP, and Kerberos. Experience implementing SSO, MFA, Conditional Access, and Privileged Access Management (PAM). Strong understanding of cloud identity and AWS security services. Experience supporting HIPAA, SOC 2, HITRUST, FedRAMP, or similar compliance frameworks. Experience with Python, PowerShell, Terraform, or similar automation technologies.   Preferred Experience with Entra ID, Identity Governance and Administration (IGA), and Zero Trust architectures preferred. Healthcare industry experience is a plus.   Base salary for the role is commensurate with experience and can range between $145,000 - 175,000 + annual bonus opportunity.     Hiring Locations Our main office is located in Center City, Philadelphia, where we operate on a hybrid model with in-office work required three days a week for local employees. We believe collaboration is most effective when teams come together, which is why we prioritize hiring in the Philadelphia area. For certain roles, we also hire from hub locations —regions where we have an established presence with multiple team members working remotely. While these employees primarily work from home, we bring them together in person at least once a year for team-bu
HOUSE ADYou found the opening. Now track it.Tracker, radar and AI drafts in one place.erioun.com →