Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
OpenLoop

Senior Staff IAM Engineer

OpenLoop

Sr. Staff IAM Engineer architecting workforce, customer, partner, and AI-agent identity for OpenLoop’s nationwide telehealth platform.

Posted 8/10/2026full-timeRemote • 🇺🇸 United StatesSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive expertise in identity and access management, particularly in designing and implementing customer identity and access management (CIAM) solutions using Auth0. Proficient in architecting secure identity frameworks that comply with HIPAA, HITRUST, and SOC 2 standards while integrating identity threat detection and response mechanisms.

Highest-signal resume keywords
Identity And Access ManagementAuth0 Customer Identity ArchitectureSAML, OIDC, OAuth 2.0Enterprise Workforce IdP ArchitectureIdentity Security Posture Management

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Auth0 Tenant And Organization ModellingMulti-Factor Authentication (MFA)Machine-To-Machine AuthenticationSCIM ProvisioningFederation And Directory ArchitectureIdentity Threat DetectionAccess Control DesignTerraform For Identity InfrastructureCloud-Native IdentityService Account Governance
Soft Skills
Clear Written CommunicationArchitectural Direction Setting
Tools & Technologies
OktaAWSGCPSIEMSailPoint
Certifications & Qualifications
CISSPCISMTOGAFSABSAOkta CertificationAuth0 Certification
Industry Keywords
HIPAAHITRUSTSOC 2Digital HealthTelehealth

Tech Stack

Tools & technologies
AWSAzureCloudGoogle Cloud PlatformTerraform

About the role

Key responsibilities & impact
  • Own the target-state identity architecture across workforce, non-employee, external, non-human, and AI agent identity types
  • Set identity standards, reference patterns, and architecture decision records
  • Own Auth0 customer identity architecture, including tenant and organization modelling, MFA, phishing-resistant authentication, and machine-to-machine patterns
  • Separate customer and patient identity from the workforce plane and design external, partner, developer, and B2B customer identity models
  • Architect consolidation of authentication paths onto a single workforce IdP
  • Design SSO, SCIM provisioning, and automated deprovisioning patterns for sensitive-data applications
  • Define federation and directory architecture across Okta, Entra ID, AWS, and GCP, including subsidiary and acquisition integration patterns
  • Build Identity Security Posture Management, extending the posture warehouse and remediation engine
  • Define identity posture metrics and integrate identity threat detection and response into the existing SIEM
  • Design HIPAA, HITRUST, and SOC 2-compliant access controls and maintain architecture documentation and control mappings
  • Serve as design authority between identity-risk and engineering functions, providing architectural remediation paths
  • Deliver an approved target-state architecture, customer identity architecture, workforce IdP consolidation architecture, and production Identity Security Posture Management baseline

Requirements

What you’ll need
  • 8+ years in identity and access management, security engineering, or platform architecture
  • At least 3 years at a staff, principal, or architect level
  • Deep hands-on customer identity experience designing and delivering a CIAM platform end to end, ideally Auth0
  • Experience with Auth0 tenant and organization modelling, MFA, and machine-to-machine authentication
  • Strong command of SAML, OIDC, OAuth 2.0, SCIM, WebAuthn, and FIDO2
  • Enterprise workforce IdP architecture experience with Okta or equivalent
  • Experience migrating from legacy or fragmented authentication sources
  • Ability to set architectural direction and gain engineering adoption without direct authority
  • Clear written communication, including architecture decision records and reference designs
  • Preferred: HIPAA/PHI safeguards or comparable regulated-industry access requirements
  • Preferred: identity governance, joiner-mover-leaver lifecycle, RBAC, access certification, segregation of duties, and SailPoint ISC/NERM or comparable platforms
  • Preferred: cloud PAM and zero-standing-privilege models, particularly Britive or similar tooling
  • Preferred: cloud-native identity across AWS, GCP, and Azure
  • Preferred: Identity Security Posture Management, identity threat detection, and SIEM integration
  • Preferred: non-human identity, service account governance, secrets management, or AI agent identity
  • Preferred: Terraform for identity infrastructure as code
  • Preferred: HITRUST, SOC 2, or SOX access controls
  • Preferred: relevant certifications such as CISSP, CISSP-ISSAP, CISM, TOGAF, SABSA, Okta, Auth0, SailPoint, or professional-level cloud architect certification
  • Preferred: digital health, telehealth, or another regulated high-growth environment
  • Authorization to work in the location of the job posting

Benefits

Comp & perks
  • Medical, Dental, and Vision plans
  • Flexible Spending/Health Savings Accounts
  • Flexible PTO
  • 401(k) + Company Match
  • Life Insurance
  • Pet insurance