UC Health IS&T Information Security desires a highly skilled and experienced Information Security Manager to lead the identity management team in pursuit of the successful implementation of a new IDG/IAM solution amongst several identity governance and access management (IAM) initiatives. This is a new position within the Information Security team, reporting to the Director of Information Security, and will be responsible for the management of seven (7) positions with some future growth expected.
The successful candidate will be responsible for ensuring the security and integrity of IDG/IAM systems, development and maintenance of policies and procedures governing identity management, and operating an efficient identity program. This role requires a deep understanding of identity management principles, strong leadership abilities, and a proactive approach to security. Previous management or supervisory experience required.
A strong candidate will have also demonstrated previous experience and success in collaborating with other organizational leaders to support a complex, multi-dimensional identity sourcing process. Ideally, individuals will have recent experience in the implementation of a modern identity management system in a complex healthcare environment or superior knowledge of Epic Security and the intricacies of managing a large hospital system identity and access management process. Auditing and monitoring of identities experience a plus.
Bachelor's degree in Information Security, Computer Science, or a related field.
Minimum of 5 years of experience in identity management or information security roles.
Minimum of 6-10 years of IT experience.
Strong knowledge of IAM technologies, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Privileged Access Management (PAM).
Experience with IAM tools and platforms such as Okta, SailPoint, Imprivata, Microsoft Azure (Entra ID) Active Directory, or similar.
Excellent understanding of security frameworks and standards, such as NIST CSF, HIPAA Security and Privacy regulations, SOC 2, HITRUST, etc.
Proven ability to lead and manage a team of security professionals.
Strong analytical, problem-solving, and communication skills.
Relevant certifications such as CISSP, CISM, or similar are highly desirable.
Develop, implement, and maintain identity management policies, procedures, and standards to ensure the security of user identities and access controls.
Oversee the design, implementation, and management of IDG/IAM systems, including user provisioning, authentication, authorization, and access governance.
Collaborate with IT, security, and business teams to ensure seamless integration of IAM solutions with existing systems and processes.
Conduct regular security assessments and audits of IAM systems to identify vulnerabilities and ensure compliance with industry standards and regulations.
Lead or work collaboratively with InfoSec SecOps for incident response efforts related to identity management, including investigation, mitigation, and reporting of security incidents.
Stay current with emerging trends and technologies in identity management and recommend improvements to enhance security posture.
Provide training and guidance to staff on identity management best practices and security awareness.
Manage a team of IAM professionals, providing mentorship, performance evaluations, and career development opportunities.
Develop, implement, and maintain identity management policies, procedures, and standards to ensure the security of user identities and access controls.
Oversee the design, implementation, and management of IDG/IAM systems, including user provisioning, authentication, authorization, and access governance.
Collaborate with IT, security, and business teams to ensure seamless integration of IAM solutions with existing systems and processes.
Conduct regular security assessments and audits of IAM systems to identify vulnerabilities and ensure compliance with industry standards and regulations.
Lead or work collaboratively with InfoSec SecOps for incident response efforts related to identity management, including investigation, mitigation, and reporting of security incidents.
Stay current with emerging trends and technologies in identity management and recommend improvements to enhance security posture.
Provide training and guidance to staff on identity management best practices and security awareness.
Manage a team of IAM professionals, providing mentorship, performance evaluations, and career development opportunities.