Identity and Access Management Lead jobs in United States
cer-icon
Apply on Employer Site
company-logo

State of Washington · 5 months ago

Identity and Access Management Lead

The State of Washington is committed to improving health insurance accessibility for residents. The Identity and Access Management (IAM) Lead is responsible for overseeing the development and management of IAM solutions, ensuring robust security controls and compliance with regulatory standards.

AssociationCommunitiesEducationEmploymentEventsGovernmentInformation TechnologyNewsNon Profit

Responsibilities

Develop and lead the WAHBE’s Identity and Access Management (IAM) strategy, ensuring alignment with delivery team goals and WAHBE policies
Design and architect IAM solutions that seamlessly integrate with existing and future infrastructure
Lead the evaluation, deployment, migration, and management of IAM technologies
Provide hands-on expertise in configuring and deploying IAM solutions
Ensure the availability, scalability, and reliability of IAM systems
Manage the end-to-end integration of IAM systems with cloud-based applications and services
Oversee the entire user identity lifecycle, including provisioning, deprovisioning, and account management
Implement and manage Single Sign-On (SSO), federation (SAML, OAuth, OIDC), Multi-Factor Authentication (MFA), and risk-based authentication
Ensure IAM compliance with regulatory standards such as NIST, CMS MARS-E, IRS publication 1075, and OWASP
Monitor and audit IAM systems to identify and address potential security incidents
Lead cross-functional teams to deliver successful IAM initiatives
Collaborate with IT, Security, Risk Management, and Delivery teams to define and refine IAM requirements
Manage vendor relationships, including monitoring performance, product updates, and organizational impacts
Serve as a subject matter expert during security incidents and investigations related to IAM
Perform root cause analysis and implement solutions to address IAM-related issues effectively
Mentor and manage a team of IAM administrators and engineers, promoting best practices and professional growth
Track and resolve IAM bugs and release issues, reporting progress to management
Conduct access re-certifications for privileged user accounts within the IAM framework
Manage and resolve day-to-day IAM issues, ensuring escalation and process adherence
Configure both standard and custom reporting using industry-standard tools
Stay informed about emerging trends and capabilities in IAM technologies
Advise management on IAM risk-related issues and recommend actions to support risk management and compliance goals
Lead risk assessments for proposed IAM solutions, escalating issues when necessary and ensuring resolution
Assist WAHBE in reviewing and updating policies, procedures, and standards related to IAM solutions
Collaborate with the Risk Management Office to remediate vulnerabilities and address audit findings
Collaborate closely with architects and engineers to share insights, best practices, and technical requirements
Perform additional responsibilities as needed within the scope of IAM solutions

Qualification

IdentityAccess ManagementForgeRock technologyIAM compliance standardsCloud IAM solutionsSAMLOAuthOIDCDirectory ServicesVendor managementProject managementLeadershipCommunication skillsProblem-solvingAttention to detail

Required

7+ years of experience in Identity and Access Management (IAM) using tools like Oracle, ForgeRock, Okta, PingOne, or similar technologies, including at least 3 years in a lead or architect role
In-depth knowledge of IAM technologies such as ForgeRock, SailPoint, Okta, Ping Identity, or Oracle Identity Suite
Proficiency in SAML, OAuth, OIDC, MFA, and risk-based authentication mechanisms
Strong understanding of Directory Services, RESTful APIs, and microservices architectures
Ability to assess the impact of new requirements on IAM and all upstream and downstream applications, systems, and processes
Advanced troubleshooting capabilities, including log analysis and root cause identification
Hands-on experience with implementing IAM solutions in cloud environments, such as AWS, Azure, and Google Cloud Platform (GCP)
Knowledge of hybrid cloud IAM deployments and integrations
Exceptional leadership and decision-making abilities with a proactive approach to problem-solving
Excellent verbal and written communication skills, with the ability to effectively convey technical concepts to diverse audiences
Strong project management skills, with the ability to prioritize and manage multiple projects simultaneously
Experience developing and documenting business processes and workflows within IAM implementations
Experience assisting in security/privacy incident investigations and collaborating with incident response teams
Experience in vendor management and oversight, with the ability to escalate concerns to management when necessary
Motivated self-starter with the ability to take initiative and ownership of responsibilities
Ability to maintain a high level of confidentiality and demonstrate sound judgment
Creative, proactive analytical person who can independently make decisions and manage work priorities
Highly organized, flexible, and resourceful, with strong attention to detail

Preferred

Minimum of 3 years of hands-on experience with ForgeRock Identity and Access Management (IAM) solutions
Strong knowledge and practical experience in understanding and implementing IT security controls
Experience working with Security Information and Event Management (SIEM) systems
Background in government and/or healthcare industries
Comprehensive understanding of standards and guidelines, including IRS 1075, MARS-E, NIST, FISMA, and HITECH
Proven experience in contracts management
Bachelor's or master's degree in Cybersecurity or a related field
Relevant certifications such as CISSP, CISM, or vendor-specific IAM credentials (e.g., ForgeRock Certified Identity Management Specialist, Okta Certified Professional)
Demonstrated ability to quickly learn and apply new concepts effectively

Benefits

Employees and their families are covered by medical (including vision), dental and basic life insurance.
Staff are eligible to enroll each year in a medical flexible spending account which enables them to use tax-deferred dollars toward their health care expenses.
Employees are also covered by basic life and long-term disability insurance, with the option to purchase additional coverage amounts.
Dependent care assistance allows the employee to save pre-tax dollars for a child or elder care expenses.
Other insurance coverage for auto, boat, home, and renter insurance is available through payroll deduction.
The Washington State Employee Assistance Program promotes the health and well-being of employees.
State Employees are members of the Washington Public Employees' Retirement System (PERS).
Employees also have the ability to participate in the Deferred Compensation Program (DCP).
All state employees are covered by the federal Social Security and Medicare systems.
If you are employed by a government or not-for-profit organization, and meet the qualifying criteria, you may be eligible to receive student loan forgiveness under the Public Service Loan Forgiveness Program.
Full-time and part-time employees are entitled to paid holidays and one paid personal holiday per calendar year.
Full-time employees earn eight hours of sick leave per month.
Full-time employees accrue vacation leave at the rates specified in WAC 357-31-165(1) or the applicable collective bargaining agreement (CBA).
Washington State supports members of the armed forces with 21 days paid military leave per year.
Most employees whose family member or household member dies, or for loss of pregnancy, are entitled to five (5) days of paid bereavement leave.

Company

State of Washington

company-logo
Washington state public employees help to create a working Washington built on education and innovation, where all Washingtonians thrive.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Matt Manweller
State Representative
linkedin
Company data provided by crunchbase