Advisor Identity & Access Management (IAM) Engineer
Any city, CA, US, 99999
Be part of a team that unleashes the power of leading-edge technologies to help improve the health and well-being of those most vulnerable in our country and communities. Working at Gainwell carries its rewards. You’ll have an incredible opportunity to grow your career in a company that values work flexibility, learning, and career development. You’ll add to your technical credentials and certifications while enjoying a generous, flexible vacation policy and educational assistance. We also have comprehensive leadership and technical development academies to help build your skills and capabilities.
Summary
As Advisor Identity & Access Management (IAM) Engineer at Gainwell, you can contribute your skills as we harness the power of technology to help our clients improve the health and well-being of the members they serve — a community’s most vulnerable. Connect your passion with purpose, teaming with people who thrive on finding innovative solutions to some of healthcare’s biggest challenges. Here are the details on this position.
Your role in our mission
Discover career satisfaction by design in this challenging position, where you will:
- Develop, implement, and maintain identity and access management solutions and systems.
- Troubleshoot, identify, and resolve technical identity and access management related issues.
- Improve identity and access management solutions and systems for protection against evolving threats and efficiency.
- Coach other members of the organization on the best practices that should be followed in identity and access management.
- Stay up-to-date on current IAM threats and industry solutions.
- Strong analytical and troubleshooting skills to resolve IAM-related issues.
- Ability to work across teams and effectively communicate technical concepts to both technical and non-technical stakeholders.
What we're looking for
10+ years of experience in IT, Information Security and Identity & Access Management (IAM) Engineering with advanced skills in Okta, ForgeRock, and Ping Identity. Requires a broad and versatile skill set to effectively handle these platforms:
- Proficiency in implementing and managing Okta (SSO, MFA, Workflows), ForgeRock (OpenAM, OpenIDM, OpenDJ, OpenIG), and Ping Identity (PingFederate, PingAccess, PingDirectory).
- Strong knowledge of authentication protocols like OAuth, SAML, OpenID Connect, and Kerberos for secure user authentication and authorization.
- Programming and scripting with Java, Python, JavaScript, Groovy, and PowerShell for automations, customizations, and integrations.
- Hands-on experience integrating IAM platforms with AWS cloud, on-premises systems, and SaaS applications.
- Familiarity with RESTful APIs for extending functionalities across the platforms.
- Understanding of identity federation principles to connect and secure users across different domains or organizations.
- Security Protocols: Expertise in SSL/TLS, PKI, and encryption standards.
- Knowledge of regulations like GDPR, HIPAA, and SOC2 to ensure IAM systems meet compliance requirements.
- Familiarity with managing identities in hybrid and cloud environments.
- DevOps Tools: Jenkins, Kubernetes, Docker, and Terraform for deployments and automation.
Certifications in one of the platforms: Okta Certified Professional, ForgeRock Identity Management Specialist, and Ping Identity Certified Professional
What you should expect in this role
- HYRBRID ROLE: Applicants who live in the Sacramento/Roseville, CA area will be required to be in the office 2-3 days per week. Applicants who do not live within a commutable distance in CA, or live out of state in the USA, will work remotely 100%.
- Willingness to work a flexible schedule to accommodate business needs and travel as required
- Video cameras must be used during all interviews, as well as during the initial week of orientation
#LI-SH1
#LI-REMOTE
The deadline to submit applications for this posting is February 27, 2026
The pay range for this position is $100,000 - $125,000 per year, however, the base pay offered may vary depending on geographic region, internal equity, job-related knowledge, skills, and experience among other factors. Put your passion to work at Gainwell. You’ll have the opportunity to grow your career in a company that values work flexibility, learning, and career development. All salaried, full-time candidates are eligible for our generous, flexible vacation policy, a 401(k) employer match, comprehensive health benefits, and educational assistance. We also have a variety of leadership and technical development academies to help build your skills and capabilities.
We believe nothing is impossible when you bring together people who care deeply about making healthcare work better for everyone. Build your career with Gainwell, an industry leader. You’ll be joining a company where collaboration, innovation, and inclusion fuel our growth. Learn more about Gainwell at our company website and visit our Careers site for all available job role openings.
Gainwell Technologies is an Equal Opportunity Employer, where all qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical condition), age, sexual orientation, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. Gainwell Technologies defines “wages” and “wage rates” to include “all forms of pay, including, but not limited to, salary, overtime pay, bonuses, stock, stock options, profit sharing and bonus plans, life insurance, vacation and holiday pay, cleaning or gasoline allowances, hotel accommodations, reimbursement for travel expenses, and benefits.