- Home
- Remote Jobs
- Senior Professional, Architectural Engineer
Be part of a team that unleashes the power of leading-edge technologies to help improve the health and well-being of those most vulnerable in our country and communities. Working at Gainwell carries its rewards. You'll have an incredible opportunity to grow your career in a company that values work flexibility, learning, and career development.
Summary
As a Senior Cloud IAM Engineer, you will lead the design, implementation, and governance of identity and access management solutions across cloud platforms, primarily AWS with some Azure involvement. Your role ensures secure, compliant, and efficient access to cloud resources, aligning with frameworks such as NIST and HITRUST to protect sensitive healthcare data.
Your role in our mission
- Architect and manage AWS IAM policies, roles, and permissions to enforce least privilege and secure access across multi-account environments.
- Regularly audit IAM configurations to ensure compliance with NIST CSF, HITRUST, HIPAA, SOC 2, and GDPR.
- Automate IAM provisioning and de-provisioning workflows using Terraform, CloudFormation, or Ansible.
- Troubleshoot IAM-related issues, including access failures, policy conflicts, and authentication errors.
- Collaborate with security, networking, and application teams to integrate IAM best practices into cloud deployments.
- Support incident response and forensic investigations by analyzing IAM logs and access patterns using AWS CloudTrail and Azure Monitor.
- Implement and manage AWS services such as:
- AWS Organizations for account governance.
- AWS Control Tower for guardrails and account provisioning.
- AWS Cognito for identity federation and user authentication.
- Assist in Azure IAM tasks, including conditional access policies, identity protection, and integration with Active Directory.
What we're looking for
- Bachelor's degree in Computer Science, MIS, or related field, or equivalent experience.
- 5+ years of experience in cloud engineering with a strong focus on IAM in AWS and/or Azure.
- Hands-on experience with:
- AWS IAM, Organizations, Control Tower, Cognito.
- Infrastructure as Code tools (Terraform, CloudFormation).
- Familiarity with authentication protocols (SAML, OIDC, OAuth 2.0).
- AWS or Azure certifications (e.g., AWS Certified Security - Specialty, Azure Security Engineer Associate) are a plus.
What you should expect in this role
- Fully Remote Opportunity - Work from anywhere in the U.S.
- Minimal Travel Required - Occasional travel opportunities (0-10%).
- Video cameras must be used during all interviews, as well as during the initial week of orientation.
- The deadline to submit applications for this posting is June 30, 2026.
Compensation and Benefits
The pay range for this position is $76,100.00 - $108,700.00 per year. All salaried, full-time candidates are eligible for our generous, flexible vacation policy, a 401(k) employer match, comprehensive health benefits, and educational assistance.
#LI-GD1
#LI-REMOTE
Gainwell Technologies is an Equal Opportunity Employer.