Identity System Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Sanford Health · 3 hours ago

Identity System Engineer

Sanford Health is one of the largest and fastest-growing not-for-profit health systems in the United States. The Identity Systems Engineer is responsible for implementing and securing enterprise identity and access management infrastructure across hybrid environments, ensuring reliable authentication, authorization, and access management. This role also involves managing Active Directory services and enforcing access governance policies while ensuring compliance with security standards and regulatory requirements.

ChildrenEducationHealth Care
check
H1B Sponsor Likelynote

Responsibilities

Implementing and securing enterprise identity and access management infrastructure
Deploying and managing Active Directory services, including domain controllers, OU structures, replication health, schema extensions, and trust relationships
Overseeing synchronization between AD, Entra ID, and other identity platforms
Configuring and managing secure authentication methods
Administering enterprise PKI and certificate lifecycles
Enforcing access governance policies through Group Policy Objects and role-based models
Integrating systems via API calls (REST, SOAP, JSON)
Automating provisioning and de-provisioning workflows
Supporting modern authentication protocols such as Kerberos, OAuth, OpenID Connect, and SAML
Enforcing least privilege and conducting access audits
Supporting compliance with SOX, HIPAA, and GDPR
Providing technical expertise during audits and governance reviews

Qualification

Active DirectoryEntra IDAuthentication protocolsPublic Key Infrastructure (PKI)Identity Governance Administration (IGA)Privileged Access Management (PAM)SAML 2.0OpenID Connect (OIDC)Security-first mindsetLeast-privilege enforcementCompliance with HIPAACompliance with PCITechnical expertiseAccess auditsProblem-solving skills

Required

Bachelor's degree required, in lieu of education, leadership may consider an Associate's Degree plus 3 years of applicable experience in computer science or related field
Minimum of 1 to 2 years applicable work experience required. Including but not limited to: Supporting Active Directory, Domain Services, Hybrid Identities, & Entra ID
Implementing SSO/MFA workflows using SAML 2.0 and/or OIDC
Maintaining Public Key Infrastructure (PKI)
Supporting Identity Lifecycle & Access Governance workflows and technical integrations
Implementation of information security standards and procedures including HIPAA and PCI

Preferred

Security Certifications (CISSP, CISA, CISM, Security+, CEH, etc.) are highly desired

Company

Sanford Health

company-logo
Sanford is a healthcare company providing research, education and clinical care.

H1B Sponsorship

Sanford Health has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (26)
2024 (37)
2023 (38)
2022 (51)
2021 (64)
2020 (30)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Baier Roger
CEO
linkedin
leader-logo
Bill Gassen
President & Chief Executive Officer
linkedin
Company data provided by crunchbase