Sr. Identity & Access Management Engineer
BlueCross BlueShield of TennesseeAbout the role
We are hiring a Sr. Identity and Access Management Engineer on our Identity and Access Management team at BCBST!
To be successful in this role, in addition to the core job requirements, you’ll bring deep hands-on experience with Saviynt and a strong foundation in IAM and IGA principles. You will be a strong candidate if you have expertise in scripting and automation, building API-based integrations for user lifecycle management, and onboarding systems and applications using SCIM, REST APIs, flat files, JDBC, and directory services like Active Directory and LDAP. Experience with identity federation (SAML, OAuth, OIDC), cloud IAM platforms (Entra ID, AWS IAM, Google Cloud IAM), and tools such as Entra, Okta, or Ping is highly valued. Additionally, strong SQL query development skills, working knowledge of JSON/XML, and experience configuring certifications, access controls, and role-based models (RBAC, SoD rule creation, birthright access) will set you apart—especially if you’ve leveraged automation or AI to optimize identity workflows.
- This is a remote, work-from-home position, but the final round of interviews will take place on-site in our Chattanooga, TN office.
- On-call rotation is required (1 week every 8 weeks).
- Occasional onsite presence is expected (approximately once per quarter).
- Sponsorship is not available for this role.
Job Duties & Responsibilities
- Engineering and implementation of security technology solutions centric to Identity and Access Management security, participating and/or assisting other team members in a rotating on-call schedule to promptly resolve high-priority issues that surface outside of normal business hours.
- Implementation, integration, configuration, and monitoring of Identity and Access Management solutions to ensure system health and proper SSO, MFA, provisioning/deprovisioning, and reduction of system related errors, while ensuring compliance with corporate security standards and policies.
- Provides input into Access Control design and implementation, Application Credentials, ABAC (Attribute-Based Access Control) and RBAC (Role Based Access Control) roles, User Access Policy Management, Privileged Access Management, User Entitlements, Workflow, and Rule centralization, while ensuring documentation is kept accurate with environment changes.
- Scripting, automation, and orchestration to drive efficiencies within Identity and Access Management, while partnering with security and risk teams to implement and maintain security policies and configurations in accordance with corporate requirements and guidelines.
- Assist in development/management of the password vault solution, while ensuring accounts are properly identified and setup in the centralized repository, actual application/system, and IAM solution with appropriate ownership across all three application/systems.
Job Qualifications
Education
- Bachelor's Degree in a Computer Sciences or Information Systems related field or equivalent work experience.
Experience
- 5 years - Experience in Information Security and/or IT related experience required.
- Comprehensive experience configuring and leveraging SSO and step-up authentication to support authorization, including federation services.
Skills\Certifications
- Demonstrated ability to lead, document, and meet deadlines for projects from milestones to tasks and identify ownership per project with implementation knowledge and expectations.
- Demonstrated ability to interpret and translate technical and/or
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s