Skip to content
← Back to job listings

Senior Security Engineer (IAM)

Oscar Health · New York, United States

External listingfull-time17 days ago

About The Role

Join Oscar Health as a Senior Security Engineer specializing in Identity and Access Management (IAM). In this role, you will build and enhance Oscar's IAM disciplines across various platforms and applications. You will design access models, create enterprise identity architectures, and develop identity threat detection and response capabilities. You will report to the Associate Director of Platform Security and collaborate with software engineering teams to improve access controls in custom applications. The ideal candidate will have 4+ years of relevant experience in identity engineering and a strong understanding of authentication and authorization protocols.

  • Construire les disciplines de gestion des identités et des accès d'Oscar à travers les applications internes, les plateformes d'identité standard et les systèmes hébergés sur AWS.
  • Concevoir des modèles d'accès au moindre privilège, créer des architectures d'identité d'entreprise et construire des capacités de détection et de réponse aux menaces liées à l'identité.
  • Collaborer avec les équipes d'ingénierie logicielle pour examiner les modèles de permission, concevoir des modèles d'autorisation sécurisés et améliorer les contrôles d'accès dans les applications personnalisées.
  • Strong written and verbal communication skills, including the ability to explain identity risk and architecture tradeoffs to technical and non-technical audiences
  • Experience designing or implementing identity and access management controls for enterprise systems, cloud environments, SaaS platforms, or internally built applications
  • Ability to reason about identity telemetry, detection logic, high-risk configuration states, and incident response workflows
  • Experience partnering with software engineering teams to review permission models, design secure authorization patterns, and improve access controls in custom applications
  • 4+ years of relevant experience in Identity engineering
  • Working knowledge of authentication and authorization protocols such as SAML, OAuth, OIDC, SCIM, LDAP, and related session, token, and federation patterns
  • Strong understanding of least privilege, role-based and attribute-based access control, privileged access patterns, identity lifecycle management, and access review processes
  • Hands-on experience with identity platforms such as Okta, Google Workspace Identity, and Google Cloud permission models
  • Experience building identity controls in AWS environments and data platforms such as BigQuery
  • Experience in healthcare, insurance, fintech, or another regulated technology environment
  • Experience building or operating ITDR, UEBA, SIEM, SOAR, or other security detection and response capabilities
  • Experience writing automation, queries, or production-quality code to support identity workflows, detections, or platform integrations

This is an external listing. JobSpring does not represent or verify the employer. Report this listing