Sr Cybersecurity Engineer
About the Role
This highly experienced Senior Cybersecurity IAM Engineer will lead the design, implementation, and security architecture of our patient portal digital identity platform. The role focuses on building and securing patient-facing authentication, identity proofing, consent management, and protected access to electronic health information. The ideal candidate brings deep expertise in Okta Customer Identity Access Management (CIAM) and a strong background in healthcare security. This candidate will partner with Digital Product, Application Development, Compliance, and Clinical Informatics teams to deliver a secure, scalable, and frictionless patient identity experience.
Responsibilities
- Design and implement secure patient identity solutions using Okta CIAM.
- Architect authentication for patient portals, mobile health apps, telehealth platforms, and billing systems.
- Implement password-less authentication and adaptive MFA.
- Design secure self-service registration workflows and implement identity proofing and fraud prevention controls.
- Build secure account recovery processes.
- Architect access controls aligned with HIPAA Security Rule, including role-based and claims-based authorization models.
- Design step-up authentication for sensitive transactions.
- Secure APIs using OAuth 2.0 and OIDC, and integrate CIAM platform with EHR, MyChart, CRM, billing, and telehealth systems using SCIM 2.0.
- Ensure HIPAA, HITRUST, and regulatory compliance; monitor identity-based threats and integrate logs with SIEM platforms.
- Lead complex projects related to information security regulatory compliance and the implementation and maintenance of cybersecurity programs, processes, and technologies.
- Assure the implementation of appropriate security configurations or re-configurations and collaborate with teams to execute them.
- Foster a culture of improvement, efficiency gains, and innovative thinking; coach and mentor team members.
- Demonstrate ability to provide service adjusting approaches to reflect developmental level and cultural differences of the population served.
- Communicate respectfully and ensure a safe, secure environment.
- Fulfill all organizational requirements, including completing required learning and complying with relevant laws, regulations, policies, and procedures.
Requirements
- Bachelor’s degree in computer science, Computer Engineering, Technology Information Systems, Engineering, or related technical discipline or combination of relevant experience/education.
- 10+ years of cumulative experience in Information Technology with progressive responsibility.
- 5+ years of hands-on experience with Okta (preferably CIAM implementations).
- Experience designing customer-facing or patient-facing identity platforms such as MyChart.
- Deep knowledge of OAuth 2.0, OIDC, SAML, adaptive MFA, and API security.
- Experience securing REST APIs and microservices architectures.
- Experience in healthcare or other regulated environments, supporting HIPAA compliance and audits.
- Proficiency in Agile project management methodology.
- Hands-on experience with Microsoft Azure, Azure AD (AAD), AAD Connect, ADFS, SailPoint ISC, and Office 365.
- Ability to author and edit scripts, such as PowerShell, VBS, or similar.
- Experience with Identity Management and Access Governance tools such as SailPoint, including custom development.
- Expert ability to use Visio and infographic-based visual aids in articulating solution design, integration, and onboarding of applications.
- Excellent documentation and communication skills.
- Experience collaborating with Digital Product, Engineering, Privacy, and Clinical teams.
- Ability to operate in high-availability healthcare environments.
Preferred Qualifications
- Bachelor’s degree or higher in Computer Science, Computer Engineering, Technology Information Systems, Engineering, or related technical discipline.
- Experience with patient portals, digital front door initiatives, and cloud platforms (Azure/AWS).
- Experience designing identity solutions for high-scale environments (100k+ users).
- Okta Certified Administrator or Consultant.
- CISSP, CISM, or HCISPP certification.
Skills
- Ability to effectively communicate both verbally and in writing with all levels within the organization.
- Ability to explain technical concepts and adjust messaging based on the audience, including non-technical groups.
- Ability to influence through outstanding interpersonal skills, collaboration, and negotiation skills.
- Ability to work well within a team environment, as well as independently.
Benefits
Fairview offers a generous benefit package including:
- Medical, dental, and vision plans.
- Life insurance, short-term and long-term disability insurance.
- Paid time off (PTO) and Sick and Safe Time.
- Tuition reimbursement.
- Retirement benefits.
- Early access to earned wages.
For additional information, visit Fairview Benefits.
Pay
The posted pay range is for a 40-hour workweek (1.0 FTE). The actual rate of pay offered within this range may depend on several factors, such as FTE, skills, knowledge, relevant education, experience, and market conditions. Additionally, the organization values pay equity and considers the internal equity of the team when making any offer. Hiring at the maximum of the range is not typical. If eligible, a sign-on bonus may be offered based on the approved program at the time of the offer.