Logo for HealthEdge

Cloud IAM Engineer

Role overview

Qualifications

  • 2–4 years of experience in cloud security, IAM, or cloud technologies in AWS
  • Working experience with AWS IAM fundamentals (roles, policies, permission sets, least-privilege design)
  • Strong interpersonal and communication skills alongside relevant technical experience
  • Working experience implementing or administering Just-In-Time (JIT) access management tools in a cloud environment

Responsibilities

  • Review AWS access requests against least-privilege and organizational access policy
  • Provision and implement approved access using Infrastructure as Code (CDK preferred; or similar IaC tools considered)
  • Manage and maintain the organization's Just-In-Time (JIT) access management tool
  • Support periodic access reviews and recertification processes

About the company

HealthEdge logo

HealthEdge

Digital Health & Health Tech

HealthEdge is on a mission to drive a digital transformation in healthcare. We’re connecting health plans, providers, and patients with end-to-end digital technology solutions to support new business models, reduce administrative costs and improve health outcomes. Our growing portfolio of products (HealthRules® Payer, Source, GuidingCare, and Wellframe) provides talented and passionate professionals with opportunities to lead change and make a lasting, global impact in healthcare. Driving our mission are 2,000+ professionals worldwide. Together, we are committed to innovating a world where healthcare can focus on people.

Company details

IndustryDigital Health & Health Tech
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Overview:

About HealthEdge: 

HealthEdge® offers AI-powered operational infrastructure for health insurance companies, guaranteeing an enduring financial edge in an increasingly competitive market. We're experiencing strong market momentum, with a growing number of health plans choosing HealthEdge to modernize their operations and compete more effectively. As we expand, we're investing in the people who power that growth, making this a pivotal moment to join us and shape the future of healthcare technology. Learn more at HealthEdge.com.

HealthEdge’s mission is to revolutionize healthcare through transaction automation and the enablement of real-time business and clinical engagement among healthcare payers, providers, and patients. Our team works to deliver technology that powers some of the most complex health plan organizations in the country — organizations responsible for the care and coverage of millions of members. 

Our product portfolio — HealthRules Payer, GuidingCareWellframe, and Source — addresses the full spectrum of payer operations, from core administrative processing to care management and member engagement. We are growing, we are building, and we are looking for people who want to grow and build alongside us. If you are looking for a role where your work has direct relevance to how healthcare gets delivered, and where your development is taken seriously, HealthEdge is that place. 

HealthEdge is committed to an inclusive workplace where every employee has the opportunity to belong, make an impact, and do the best work of their career. We welcome candidates of all backgrounds, experiences, and perspectives. 

 

Position Overview: 
We're seeking a Cloud IAM Operations Engineer to manage day-to-day identity and access provisioning across our AWS environment. This is a hands-on, execution-focused role; you'll review incoming access requests against least-privilege principles and implement approved access using Infrastructure as Code. This role operates in alignment with established policy rather than defining it, and you'll partner closely with security architecture on escalations and edge cases.  

 

Responsibilities: 

  • Review AWS access requests against least-privilege and organizational access policy  
  • Provision and implement approved access using Infrastructure as Code (CDK preferred;  or similar IaC tools considered)  
  • Manage and maintain the organization's Just-In-Time (JIT) access management tool, ensuring all human-use AWS access is provisioned on-demand through JIT workflows rather than persistent permissions, reinforcing least-privilege and audit readiness  
  • Maintain accurate, auditable records of access grants, changes, and revocations  
  • Identify and escalate access requests that fall outside standard policy or carry elevated risk  
  • Support periodic access reviews and recertification processes  
  • Contribute to runbooks and documentation to improve consistency and repeatability of the access request lifecycle  
  • Partner with security architecture and IAM leadership on process improvements and automation opportunities  
  • Conduct periodic reviews of AWS IAM permission sets using IAM Access Analyzer and other tooling to identify unused permissions and overly permissive policies, refining access controls to align with least-privilege principles across the environments.  

What you bring: 

2–4 years of experience in cloud security, IAM, or cloud technologies in AWS    

Working experience with AWS IAM fundamentals (roles, policies, permission sets, least-privilege design)   

This is a people-facing role, and the ideal candidate will bring strong interpersonal and communication skills alongside relevant technical experience.   

Working experience with Infrastructure as Code (CDK preferred;  Pulumi, or CloudFormation also considered)   

Understanding of access review and audit requirements in a regulated environment   

Working experience implementing or administering Just-In-Time (JIT) access management tools in a cloud environment, with a strong understanding of least-privilege access principles and standing-access risk reduction   

Strong attention to detail and sound judgment on what access should and shouldn't be granted   

Clear written communication for documentation and access decision records   

 

Preferred Experience 

Experience in a healthcare or other regulated industry (HIPAA/HITRUST - aware)     

Familiarity with identity governance tooling and access certification workflows    

Basic scripting ability (Python, TypeScript, or similar) to support IaC workflows    

 

Geographic Responsibility:  Remote, US

Type of Employment: Full-time, permanent 

FLSA Classification (USA Only): Exempt 

Work Environment: The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job:  

  • The employee is occasionally required to move around the office. Specific vision abilities required by this job include close vision, color vision, peripheral vision, depth perception, and ability to adjust focus.  
  • Work across multiple time zones in a hybrid or remote work environment. 
  • Long periods of time sitting and/or standing in front of a computer using video technology. 
  • May require travel dependent on company needs. 

 

The above statements are intended to describe the general nature and level of the job being performed by the individual(s) assigned to this position. They are not intended to be an exhaustive list of all duties, responsibilities, and skills required. HealthEdge reserves the right to modify, add, or remove duties and to assign other duties as necessary. In addition, reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of this position in compliance with the Americans with Disabilities Act of 1990.  Candidates may be required to go through a pre-employment criminal background check. 

 

HealthEdge is an equal opportunity employer. We are committed to workforce diversity and actively encourage all qualified persons to seek employment with us, including, but not limited to, racial and ethnic minorities, women, veterans and persons with disabilities. 

#LI-Remote 

**The annual US base salary range for this position is $107,000 to $114,000. This salary range may cover multiple career levels at HealthEdge. Final compensation will be determined during the interview process and is based on a combination of factors including, but not limited to, your skills, experience, qualifications and education.  

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Cloud Engineer Related jobs

Other jobs at HealthEdge

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.