St. Jude Children's Research Hospital

Senior Security Analyst - IAM

US-AnywhereRemote in Tennessee, US
Healthcare
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree required; MBA or related Master's preferred.
  • 4+ years of demonstrable work experience in security, preferably in healthcare research.
  • Hands-on expertise with Saviynt IGA and Auth0 CIAM.
  • Strong understanding of identity lifecycle management and access governance.
  • Experience with modern authentication standards (SAML, OAuth 2.0, OIDC, SCIM, JWT) preferably.

Responsibilities

  • Coordinate daily delivery activities for the Agile team and engineering workstreams.
  • Train and guide users on security controls, processes, and issues.
  • Lead implementation of security controls and risk assessment processes.
  • Participate in cross-functional meetings to identify emerging security requirements.
  • Track progress against stories, tasks, and technical work.

Benefits

  • Eligible for remote work within approved U.S. locations.
  • Opportunity to travel to Memphis for interviews and quarterly on-site work.
  • Engagement in strategic IAM initiatives and process improvements.
Full Job Description
We are seeking a highly motivated Senior Security Analyst to join our Identity & Access Management (IAM) team, supporting both Identity Governance & Administration (IGA) and Customer Identity & Access Management (CIAM) capabilities. In this role, you will be responsible for the administration, optimization, and continuous improvement of enterprise identity solutions, partnering with security, application, infrastructure, and business teams to deliver secure, compliant, and seamless identity experiences. The ideal candidate will possess hands-on expertise with Saviynt IGA and Auth0 CIAM, including identity lifecycle management, access governance, provisioning, authentication, authorization, role management, and customer identity services. This position will support strategic IAM initiatives, troubleshoot complex identity and access issues, drive automation and process improvements, assist with audit and compliance activities, and contribute to the overall security posture of the organization. Successful candidates will demonstrate strong analytical and problem-solving skills, a deep understanding of IAM best practices, and the ability to influence stakeholders in a fast-paced, collaborative environment.

This position may be eligible for remote work. However, St. Jude requires all remote employees to:
  • Travel to our Memphis campus for the interview process and/or orientation, if selected
  • Travel to Memphis to work on-site for one week per quarter, or as requested based on business needs, if hired.


By applying, you acknowledge and agree to these travel requirements as a condition of employment.

This position is remote within approved U.S. locations. Due to state-specific employment regulations, we are unable to consider applicants currently residing in California for remote work; however, candidates based in California who are willing to relocate to an approved location may be considered.

Job Responsibilities:
  • Coordinate day-to-day delivery activities across the Agile team and across engineering workstreams.
  • Help the team understand sprint goals and delivery expectations.
  • Track progress against committed stories, tasks, defects, and technical work.
  • Align technical activities with the overall solution design.
  • Ensure engineers understand technical dependencies and sequencing.
  • Facilitate technical discussions and decision-making.
  • Help resolve implementation questions or conflicts.
  • Ensure work across multiple engineers integrates into a complete solution.
  • Escalate technical concerns to the Systems Engineering Lead or Architecture when needed.
  • Independently lead activities related to assigned project/area (including implementation of security controls, risk assessments, security risk management processes, risk awareness activities).
  • Lead setting up and optimization of security management processes for internal customers as assigned.
  • Guide and direct team members around issues related to systems/procedures.
  • Actively contribute in project teams, panels, technological platforms and meetings.
  • Participate in meetings with cross-functional teams to understand business/organizational processes and identify emerging security requirements.
  • Train and guide users and other business teams in relation to security controls, processes, and issues.
  • Train and mentor team members around new security controls/ systems/ processes.
  • Perform other duties as assigned to meet the goals and objectives of the department and institution.
  • Maintains regular and predictable attendance.


Minimum Education and/or Training:
  • Bachelor's degree required.
  • MBA or related Master's in technology field preferred.


Minimum Experience:
  • Minimum requirement: 4+ years of demonstrable work experience in security preferably in the healthcare research industry.
  • Demonstrated experience working with securing IT technology (e.g., cloud, SaaS, network/server management) with an insight into IT risk, threat actors, and attack vectors.
  • Experience managing more complex IT security processes/ projects.
  • Experience administering and configuring IGA platforms e.g. Saviynt Enterprise Identity Cloud (EIC) and SailPoint preferred.
  • Experience with Auth0 including customer identity management, authentication flows, MFA, federation, and API security preferred.
  • Knowledge of identity governance, access certifications, RBAC, SoD controls, and automated provisioning/deprovisioning preferred.
  • Familiarity with modern authentication and authorization standards, including SAML, OAuth 2.0, OpenID Connect (OIDC), SCIM, and JWT preferred.
  • Experience supporting compliance and audit requirements related to identity and access management preferred.
  • Strong communication, stakeholder management, and project delivery skills preferred.


Licensure, Registration and/or Certification Required by SJCRH Only:
  • Certifications such as GSEC, Security+, CIAM, CISSP, CISM, CISA, OKTA, ISC2 Certified in Cybersecurity (CC) or similar required.


Special Skills, Knowledge and Abilities:
  • Promptly and effectively responds to customer queries and requests.
  • Explores optimal solutions for customer needs.
  • Escalates/redirects effectively for quicker customer support.
  • Authors and maintains any applicable Disaster Recovery Plans for services in own area.
  • Proactively maintains security controls in order to monitor assets (data, applications, servers, networks) against attacks and unauthorized access.
  • Enforces information security policies and manages any assigned security incidents to closure.
  • Consults with customers, IS teams, and de-centralized IT workforce members on security controls and improvements.
  • Manages security vendors and consultants to delivery of services agreed.
  • Assesses potential security threats and risks to operations.
  • Is aware of interdependencies across work and considers all parts of the work and its impact while executing own work.
  • Collaborates across scrum teams and contractors to deliver common team goals.
  • Navigates and flexes work style to requirements that can change frequently, continues to communicate and influence others.
  • Effectively relays understanding of diverse perspectives.
  • Can handle communication upwards and downwards as needed.
  • Presents information in a clear, well thought out way and tailored to the audience.
  • Shows support for the new direction even when the details have not been finalized.
  • Uses a data-driven approach to spot early indications of underperformance and takes corrective actions. Celebrates successes.
  • Works with partners in their function to find the best solutions that align with functional priorities. Works effectively to find solutions.
  • Ability to look at data more critically and draw meaningful conclusions. Conducts root-cause analysis as needed.
  • Quickly rebounds from setbacks, including creating viable plans to move forward.
  • Helps others understand the need for change and adapt to it.


Compensation
In recognition of certain U.S. state and municipal pay transparency laws, St. Jude is including a reasonable estimate of the compensation range for this role. This is an estimate offered in good faith and a specific salary offer takes into account factors that are considered in making compensation decisions including but not limited to skill sets, experience and training, licensure and certifications, and other business and organizational needs. It is not typical for an individual to be hired at or near the top of the salary range and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current salary range is $94,640 - $169,520 per year for the role of Senior Security Analyst - IAM.

Explore our exceptional benefits!

No Search Firms

St. Jude Children's Research Hospital does not accept unsolicited assistance from search firms for employment opportunities. Please do not call or email. All resumes submitted by search firms to any employee or other representative at St. Jude via email, the internet or in any form and/or method without a valid written search agreement in place and approved by HR will result in no fee being paid in the event the candidate is hired by St. Jude.

About St. Jude Children's Research Hospital

St. Jude Children's Research Hospital is a pediatric treatment and research facility focused on children's catastrophic diseases, particularly leukemia and other cancers. The hospital was founded in 1962 by entertainer Danny Thomas and is located in Memphis, Tennessee. St. Jude is the first and only pediatric cancer center to be designated as a Comprehensive Cancer Center by the National Cancer Institute. The hospital has treated children from all 50 states and from around the world. St. Jude is known for its groundbreaking research and treatment of childhood cancer and other life-threatening diseases.
Learn more about St. Jude Children's Research Hospital
Size
4,500 employees
Industry
Founded
1962

Similar Jobs

More Jobs at St. Jude Children's Research Hospital

More Healthcare Jobs

Find similar Senior Security Analyst - IAM jobs: