SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Aledade is seeking a Senior Security Engineer II specializing in Identity & Access Management (IAM) to help secure the company's enterprise, cloud-native environments, and applications. This role is central to Aledade's mission of empowering independent primary care practices through technology and value-based care models.
You will work cross-functionally to design, build, and operate security solutions that continuously improve and automate Aledade's security capabilities. Key responsibilities include:
• Design, build, and operate solutions that continuously improve and automate security capabilities across the organization
• Leverage data to understand security trends, metrics, and opportunities, then execute improvements with stakeholders
• Lead and enhance incident response efforts, spearheading analysis, containment, and mitigation strategies in cross-functional environments
• Craft and refine security documentation including policies, standards, baselines, and standard operating procedures
• Mentor and coach junior engineers and analysts
The role emphasizes Security-as-Code and API-first automation over manual administration, with a focus on building resilient identity pipelines that scale with organizational growth. You'll partner across teams to drive impactful security outcomes and strengthen Aledade's digital landscape.
Aledade is a public benefit corporation founded in 2014 and is the largest network of independent primary care in the United States. The company operates a remote-first culture with flexible work schedules, comprehensive benefits including health/dental/vision insurance (80% paid), 21 days PTO in year one, 12 weeks paid parental leave, and stock options.
REQUIREMENTS:
Minimum Qualifications:
• BS/BTech or higher in Computer Science, Information Technology, Cybersecurity, or related field; OR 8+ years security domain experience without degree
• 4+ years of experience acting as a trusted advisor in a team setting, solving for short-term and long-term business value
• 4+ years of experience coaching other engineers or analysts
• Experience with Federated Identity tools (Okta, Entra ID, Ping Identity)
• Experience with Identity Governance and Administration (IGA) tools (Omada, Lumos, Sailpoint, Saviynt)
• Deep knowledge of cloud security architectures (AWS IAM, Azure Entra ID, or GCP IAM), including designing/enforcing least-privilege roles, RBAC/ABAC, and permission policies
• Experience with automation tools: Python, Terraform, PowerShell
Preferred Qualifications:
• Prior experience in healthcare industry with health-tech systems (Electronic Health Records, clinical data)
• Experience with tooling, automation, and distributed systems development
• Experience generating automated metrics to measure service and program effectiveness
• Strong written and verbal communication skills; ability to articulate complex technical issues to diverse audiences
• Non-Human Identity (NHI) fundamentals: managing service accounts, API keys, bots, and automated workload identities
• Proficiency in identity standards and federation protocols (SAML, OIDC, OAuth, LDAP/Directory Services)
• User lifecycle automation, SSO, MFA, and Just-In-Time (JIT) access experience
• In-depth knowledge of authentication protocols, authorization mechanisms, and directory services
• Familiarity with regulatory compliance and security standards