Senior Cloud IAM Engineer

Gainwell Technologies United State
Remote
Apply
AI Summary

Lead the design, implementation, and governance of identity and access management solutions, primarily in AWS with Azure involvement. Ensure secure, compliant, and efficient access to cloud resources, aligning with healthcare data protection frameworks. Requires 5+ years of cloud engineering experience with a focus on IAM in AWS/Azure and proficiency in IaC tools.

Key Highlights
Architect and manage AWS IAM policies, roles, and permissions for least privilege.
Automate IAM provisioning and de-provisioning workflows using Terraform, CloudFormation, or Ansible.
Collaborate with security, networking, and application teams to integrate IAM best practices.
Key Responsibilities
Architect and manage AWS IAM policies, roles, and permissions to enforce least privilege and secure access across multi-account environments.
Regularly audit IAM configurations to ensure compliance with NIST CSF, HITRUST, HIPAA, SOC 2, and GDPR.
Automate IAM provisioning and de-provisioning workflows using Terraform, CloudFormation, or Ansible.
Troubleshoot IAM-related issues, including access failures, policy conflicts, and authentication errors.
Collaborate with security, networking, and application teams to integrate IAM best practices into cloud deployments.
Support incident response and forensic investigations by analyzing IAM logs and access patterns using AWS CloudTrail and Azure Monitor.
Implement and manage AWS services such as AWS Organizations for account governance, AWS Control Tower for guardrails and account provisioning, and AWS Cognito for identity federation and user authentication.
Assist in Azure IAM tasks, including conditional access policies, identity protection, and integration with Active Directory.
Technical Skills Required
AWS IAM AWS Organizations AWS Control Tower AWS Cognito Terraform CloudFormation Ansible SAML OIDC OAuth 2.0 AWS CloudTrail Azure Monitor
Benefits & Perks
Work flexibility
Learning opportunities
Career development
Generous, flexible vacation policy
Educational assistance
Comprehensive leadership and technical development academies
401(k) employer match
Comprehensive health benefits
Nice to Have
AWS or Azure certifications (e.g., AWS Certified Security – Specialty, Azure Security Engineer Associate)

Job Description


Be part of a team that unleashes the power of leading-edge technologies to help improve the health and well-being of those most vulnerable in our country and communities. Working at Gainwell carries its rewards. You’ll have an incredible opportunity to grow your career in a company that values work flexibility, learning, and career development. You’ll add to your technical credentials and certifications while enjoying a generous, flexible vacation policy and educational assistance. We also have comprehensive leadership and technical development academies to help build your skills and capabilities.

Summary

As a Senior Cloud IAM Engineer, you will lead the design, implementation, and governance of identity and access management solutions across cloud platforms, primarily AWS with some Azure involvement. Your role ensures secure, compliant, and efficient access to cloud resources, aligning with frameworks such as NIST and HITRUST to protect sensitive healthcare data. Join a team that thrives on solving complex challenges and improving the health and well-being of the communities we serve.

Your role in our mission

  • Architect and manage AWS IAM policies, roles, and permissions to enforce least privilege and secure access across multi-account environments.
  • Regularly audit IAM configurations to ensure compliance with NIST CSF, HITRUST, HIPAA, SOC 2, and GDPR.
  • Automate IAM provisioning and de-provisioning workflows using Terraform, CloudFormation, or Ansible.
  • Troubleshoot IAM-related issues, including access failures, policy conflicts, and authentication errors.
  • Collaborate with security, networking, and application teams to integrate IAM best practices into cloud deployments.
  • Support incident response and forensic investigations by analyzing IAM logs and access patterns using AWS CloudTrail and Azure Monitor.
  • Implement and manage AWS services such as:
    • AWS Organizations for account governance.
    • AWS Control Tower for guardrails and account provisioning.
    • AWS Cognito for identity federation and user authentication.
  • Assist in Azure IAM tasks, including conditional access policies, identity protection, and integration with Active Directory.

What We're Looking For

  • Bachelor’s degree in Computer Science, MIS, or related field, or equivalent experience.
  • 5+ years of experience in cloud engineering with a strong focus on IAM in AWS and/or Azure.
  • Hands-on experience with:
    • AWS IAM, Organizations, Control Tower, Cognito.
    • Infrastructure as Code tools (Terraform, CloudFormation).
  • Familiarity with authentication protocols (SAML, OIDC, OAuth 2.0).
  • AWS or Azure certifications (e.g., AWS Certified Security – Specialty, Azure Security Engineer Associate) are a plus.

What You Should Expect In This Role

  • Fully Remote Opportunity – Work from anywhere in the U.S.
  • Minimal Travel Required – Occasional travel opportunities (0-10%).
  • Video cameras must be used during all interviews, as well as during the initial week of orientation
  • The deadline to submit applications for this posting is June 30, 2026

The pay range for this position is $76,100.00 - $108,700.00 per year, however, the base pay offered may vary depending on geographic region, internal equity, job-related knowledge, skills, and experience among other factors. Put your passion to work at Gainwell. You’ll have the opportunity to grow your career in a company that values work flexibility, learning, and career development. All salaried, full-time candidates are eligible for our generous, flexible vacation policy, a 401(k) employer match, comprehensive health benefits, and educational assistance. We also have a variety of leadership and technical development academies to help build your skills and capabilities.

We believe nothing is impossible when you bring together people who care deeply about making healthcare work better for everyone. Build your career with Gainwell, an industry leader. You’ll be joining a company where collaboration, innovation, and inclusion fuel our growth. Learn more about Gainwell at our company website and visit our Careers site for all available job role openings.

Gainwell Technologies is an Equal Opportunity Employer, where all qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical condition), age, sexual orientation, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. Gainwell Technologies defines “wages” and “wage rates” to include “all forms of pay, including, but not limited to, salary, overtime pay, bonuses, stock, stock options, profit sharing and bonus plans, life insurance, vacation and holiday pay, cleaning or gasoline allowances, hotel accommodations, reimbursement for travel expenses, and benefits.


Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

the amatriot group

United State
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Not Applicable

Alignerr

United State
Visa Sponsorship Relocation Remote
Job Type Part-time
Experience Level Not Applicable

Mercor

United State

Subscribe our newsletter

New Things Will Always Update Regularly