IAM Identity Engineer
IT Identity and Access Mgt
Job Summary
The Identity and Access Management (IAM) Identity Engineer will assist in the development, implementation, and maintenance of IAM solutions that adhere to the University's security policies and requirements. Key responsibilities include supporting the evaluation of hosting platforms and configuration technologies to ensure consistency across production and non-production environments. This role requires collaboration with IAM Managers, Senior Engineers, Administrators, Analysts, various University departments, and external vendors to ensure secure, compliant, and efficient access and identity data management. As a member of the Identity and Lifecycle Management team, the IAM Identity Engineer will help design, implement, and maintain the technical infrastructure that supports the lifecycle of user identities within UCSF. This involves working with various IAM tools and technologies to securely manage identities from creation to deactivation, ensuring compliance with UCSF policies and regulatory requirements.
The IAM Identity Engineer should have experience in administering and supporting identity and governance (IGA) solutions. Additionally, they must possess knowledge and experience with advanced identity infrastructures. Strong troubleshooting skills are essential. Hands-on experience with technologies such as SailPoint, Bravura ID, or similar platforms is also required.
The IAM Identity Engineer will positively impact UCSF's operations and culture by ensuring UCSF's IT infrastructure is operable, secure, efficient, and effective in service of the University's mission. This team member will advance the University's mission by delivering exceptional information technology services comprehensively and consistently across customers and stakeholders. This role will execute UCSF's vision while modeling UCSF's culture and values. Note: Certain terms and conditions of employment for this position, including the rate of pay, benefits, etc., are currently subject to negotiation with the appropriate union.
The final salary and offer components are subject to additional approvals based on UC policy. Your placement within the salary range is dependent on a number of factors, including your work experience and internal equity within this position classification at UCSF. For positions that are represented by a labor union, placement within the salary range will be guided by the rules in the collective bargaining agreement. The annual salary range for this position is $101,300 - $216,700. To learn more about the benefits of working at UCSF, including total compensation, please visit: https://ucnet.universityofcalifornia.edu/compensation-and-benefits/index.html
Department Description University of California, San Francisco (UCSF) is distinguished as a leading academic healthcare organization, home to groundbreaking discoveries, world-class education, and exceptional healthcare services. Infrastructure Services (IS) is the backbone of the technological infrastructure, assuring the technical services that enable the academic, medical, and research missions of the organization. Beyond a focus on maintaining systems and resolving issues, we are committed to nurturing the potential of our team members and empowering them to excel. UCSF Infrastructure Services provides 24x7 support to the University community, always upholding the highest level of responsiveness and reliability for our customers. IS values innovation and excellence in ensuring secure and efficient Information Technology (IT) services, regardless of the hour or complexity of the issue.
The Identity and Access Management Services team within Infrastructure Services protects UCSF's resources through access management, including accounts, authentication, access, and role-based provisioning at the enterprise level. This team implements rigorous regulation of UCSF data through granular access control and the auditing of all UCSF assets on the premises and in the cloud. By ensuring information security at UCSF, the IAM Services team enables the academic, medical, and research mission of UCSF.
Required Qualifications
- Three or more years of experience working in one or more of the following fields: cybersecurity, computer science, or computer information systems.
- Bachelor's Degree or four years of relevant experience/training in one or more of the following fields: cybersecurity, information technology, computer science, public administration, business administration, communications.
- Experience with the implementation and integration of Identity and Access Management (IAM) systems and tools.
- Demonstrated skills applying security controls to computer software and hardware.
- Hands-on experience with directory services (e.g., Active Directory, Lightweight Directory Access Protocol (LDAP)), Single Sign-On (SSO) technologies, and multi-factor authentication (MFA) solutions.
- Knowledge of data encryption technologies and experience selecting and applying appropriate data encryption technologies.
- Knowledge of Identity Governance and Administration (IGA) solutions, including SailPoint, Saviynt, Bravura Identity, and similar platforms.
- Proficient in scripting and programming languages (e.g., PowerShell, Python, Java) for automation and integration purposes.
- Experience in incident response and digital forensics including reporting.
- Strong written and verbal communication skills and ability to communicate technical information and ideas to a diverse community of colleagues and stakeholders.
- Ability to establish and advance positive working relationships and a strong rapport with team members, stakeholders, and customers.
- Strong organizational skills and ability to balance competing priorities and support concurrent projects. Experience working in a project-based environment using leading project management practices including schedule management, status reporting, and communication of project risks and issues.
- Strong demonstrated problem-solving skills; scopes solutions based on knowledge of available resources and timelines. Ability to ask questions, gather information, evaluate options, and make decisions with integrity.
- Thinks creatively and proposes innovative ideas, including the incorporation of new technologies or processes. Ability to work with agility in a fast-paced environment.
Preferred Qualifications Experience in complex higher education environments, serving academic, medical, and research, medical, and research and administrative functions of a large public university.
License/Certification Preferred:
- One or more of the following certifications: CCNP Security, Cisco Certified Internetwork Expert (CCIE) Security, Offensive Security Certified Professional (OSCP), Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH)
- Cisco Certified Internetwork Expert (CCIE) Security
About UCSF The University of California, San Francisco (UCSF) is a leading university dedicated to promoting health worldwide through advanced biomedical research, graduate-level education in the life sciences and health professions, and excellence in patient care. It is the only campus in the 10-campus UC system dedicated exclusively to the health sciences. We bring together the world's leading experts in nearly every area of health. We are home to five Nobel laureates who have advanced the understanding of cancer, neurodegenerative diseases, aging and stem cells.
Pride Values UCSF is a diverse community made of people with many skills and talents. We seek candidates whose work experience or community service has prepared them to contribute to our commitment to professionalism, respect, integrity, diversity and excellence - also known as our PRIDE values.
In addition to our PRIDE values, UCSF is committed to equity - both in how we deliver care as well as our workforce. We are committed to building a broadly diverse community, nurturing a culture that is welcoming and supportive, and engaging diverse ideas for the provision of culturally competent education, discovery, and patient care. Additional information about UCSF is available at diversity.ucsf.edu
Join us to find a rewarding career contributing to improving healthcare worldwide.
Equal Employment Opportunity The University of California is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, age, protected veteran status, or other protected status under state or federal law.
Job Code and Payroll Title 5300 SYS INTEGRATION ENGR 3 TX
Job Category Clinical Systems / IT Professionals, Professional (Non-Clinical), Support Services, Technical & Technologist
Bargaining Unit University Professional Technical Employees - Technical Unit (UPTE-TX)
Location San Francisco, CA
Campus Mission Center Building (SF)
Additional Shift Details M-F / After hours when needed
|