Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Staff Security Engineer - IAM role.
Rezi rewrites your resume against Aledade's job description. Free.

Tailor your resume to this Staff Security Engineer - IAM role.
Rezi rewrites your resume against Aledade's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Staff Security Engineer - IAM posting at Aledade — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Staff Security Engineer - IAM posting at Aledade — free, in seconds.
About the Role
The Staff Security Engineer will design, implement, and maintain security identity services. This role requires understanding and utilizing data and automation at scale, partnering cross-functionally to drive impactful outcomes and enhance digital security.
Responsibilities
- Lead the development, implementation, and ongoing maintenance of comprehensive security strategies and solutions.
- Design and deploy advanced identity security controls to safeguard networks, systems, and applications.
- Work across disciplines to shape our security services strategy and execution.
- Set and uphold the standard for security processes to support high-quality engineering.
- Mentor and galvanize new engineers to do their best work.
Requirements
- BS/BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field.
- 8+ years of experience in software or security engineering within Cloud Native environments.
- Deep knowledge of cloud security architectures (AWS IAM, Azure Entra ID, or GCP IAM), including designing/enforcing least-privilege roles, RBAC/ABAC, and permission policies.
- Proficiency in identity standards and federation protocols (SAML, OIDC, OAuth, LDAP/Directory Services), user lifecycle automation, SSO, MFA, and Just-In-Time (JIT) access.
- Strong hands-on proficiency with Infrastructure as Code (Terraform or CloudFormation) and scripting (Python or PowerShell) to automate identity provisioning, drift detection, and access workflows.
- Practical experience managing service accounts, API keys, bots, and automated workload identities across cloud infrastructure.
- Experience architecting, developing, and deploying large-scale distributed systems at scale.
- Experience with cloud technologies, e.g., AWS, Azure, GCP.
- Experience building continuous integration and continuous development (CI/CD) pipelines.
- Familiarity with server-side web technologies (eg: Java, Python, Scala, C#, C++, Go).
- 4+ years of experience acting as a trusted technical decision-maker in a team setting, solving for short-term and long-term business value.
- Experience with health-tech systems, like Electronic Health Records, Clinical data, etc.
- Design secure, scalable, and automated solutions for managing service accounts, machine identities, secrets, certificates, APIs, and cloud-native workloads.
- Hands-on experience with AI/ML tools (e.g., Gemini, Claude, AWS Bedrock), conducting threat modeling for AI systems, or managing automated permission guardrails for AI agents.
- Familiarity with SPIFFE/SPIRE, zero-trust network architectures, or complex containerized identity frameworks.
- Experience orchestrating VPC flow logs and audit feeds into security analytics tools (e.g., Crowdstrike, Sumo Logic, Wiz, Zscaler).
- Experience with health-tech systems, clinical data environments (EHRs), and regulatory standards (HIPAA, SOC 2, ISO 27001).
- Sitting for prolonged periods of time.
- Extensive use of computers and keyboard.
- Occasional walking and lifting may be required.
Skills
- Cloud IAM Architecture
- Identity Protocols & Governance
- Automation & IaC
- Non-Human Identity (NHI) Fundamentals
- AI Identity & Access Management
- AI/ML Security & Threat Modeling
- Advanced Protocols & Microservice Security
- SIEM & Security Observability Tools
- AWS IAM
- Azure Entra ID
- GCP IAM
- SAML
- OIDC
- OAuth
- LDAP/Directory Services
- SSO
- MFA
- JIT access
- Terraform
- CloudFormation
- Python
- PowerShell
- SPIFFE/SPIRE
- Crowdstrike
- Sumo Logic
- Wiz
- Zscaler
- HIPAA
- SOC 2
- ISO 27001
Location
- Remote
Work Type
- Remote-first
- Full-time
Experience Level
- 8+ years of experience in software or security engineering
- 4+ years of experience acting as a trusted technical decision-maker
Education Level
- BS/BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field
Benefits
- Flexible work schedules
- Ability to work remotely
- Health, dental and vision insurance paid up to 80% for employees, dependents and domestic partners
- Robust time-off plan (21 days of PTO in your first year)
- Two paid volunteer days
- 11 paid holidays
- 12 weeks paid parental leave for all new parents
- Six weeks paid sabbatical after six years of service
- Educational Assistant Program
- Clinical Employee Reimbursement Program
- 401(k) with up to 4% match
- Stock options
About the Company
- Aledade, a public benefit corporation, exists to empower the most transformational part of our health care landscape - independent primary care.
- Founded in 2014, Aledade has become the largest network of independent primary care in the country, helping practices, health centers and clinics deliver better care to their patients and thrive in value-based care.
- By creating value-based contracts across a wide variety of health plans, Aledade aims to flip the script on the traditional fee-for-service model.
- Their work strengthens continuity of care, aligns incentives and ensures primary care physicians are paid for what they do best - keeping patients healthy.
- Aledade fosters a collaborative, inclusive and remote-first culture.
- At Aledade, you will be part of a creative culture that is driven by a passion for tackling complex issues with respect, open-mindedness and a desire to learn.
- You will collaborate with team members who bring a wide range of experiences, interests, backgrounds, beliefs and achievements to their work - and who are all united by a shared passion for public health and a commitment to the Aledade mission.
Equal Opportunity
- At Aledade, we don’t just accept differences, we celebrate them!
- We strive to attract, develop and retain highly qualified individuals representing the diverse communities where we live and work.
- Aledade is committed to creating a diverse environment and is proud to be an equal opportunity employer.
- Employment policies and decisions at Aledade are based on merit, qualifications, performance and business needs.
- All qualified candidates will receive consideration for employment without regard to age, race, color, national origin, gender (including pregnancy, childbirth or medical conditions related to pregnancy or childbirth), gender identity or expression, religion, physical or mental disability, medical condition, legally protected genetic information, marital status, veteran status, or sexual orientation.