Logo for Sharp HealthCare

IAM Epic Security Analyst II

Role overview

Qualifications

  • 3 Years experience in application access control and information systems security administration
  • 3 Years experience with IT Epic support
  • Bachelor's degree in Computer Science, Healthcare, or related field; or 4 years of relevant experience in Information Technology
  • Extensive operational knowledge of IAM concepts and principles

Responsibilities

  • Provide guidance and support to the IAM Security team and business partners
  • Maintain identity and access management systems and ensure appropriate access to systems and data
  • Respond to IAM and Epic Security incidents, service requests and audits
  • Coordinate activities with IT teams and departments to support and enhance Epic access and security

Key facts

Other skills

  • Communication
  • Leadership
  • Problem Solving
  • Customer Service

About the company

Sharp HealthCare logo

Sharp HealthCare

Hospitals & Health Care

Sharp HealthCare is a not-for-profit health care system based in San Diego, California, with four acute care hospitals, three specialty hospitals, three medical groups and a health plan. We provide medical services in virtually all fields of medicine, including primary care, heart care, cancer, orthopedics, stroke/neurology, women’s health, rehabilitation, robotic surgery, bariatric surgery, chemical dependency and behavioral health. Sharp sets the community standard for exceptional care. Sharp Chula Vista Medical Center, Sharp Grossmont Hospital and Sharp Memorial Hospital have received the prestigious Magnet recognition by the American Nurses Credentialing Center for excellence in nursing practices and quality patient care. At the heart of our organization are more than 20,000 nurses, staff, affiliated physicians, and volunteers who are on a journey to make health care better for our patients and their families. It’s what we call The Sharp Experience – treating each person with dignity, compassion and respect, and using our clinical excellence and advanced technology to deliver the highest-quality patient care. We are dedicated to transforming the health care experience by making Sharp the best place to work, the best place to practice medicine and the best place to receive care in San Diego.

Company details

IndustryHospitals & Health Care
Company size10001

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Hours:

Shift Start Time:

7 AM

Shift End Time:

3:30 PM

AWS Hours Requirement:

8/40 - 8 Hour Shift

Additional Shift Information:

Felxible start

Weekend Requirements:

As Needed

On-Call Required:

Yes

Hourly Pay Range (Minimum - Midpoint - Maximum):

$49.700 - $64.130 - $71.820


 

The stated pay scale reflects the range that Sharp reasonably expects to pay for this position.β€― The actual pay rate and pay grade for this position will be dependent on a variety of factors, including an applicant’s years of experience, unique skills and abilities, education, alignment with similar internal candidates, marketplace factors, other requirements for the position, and employer business practices. 


 


What You Will Do
Provides guidance and support to the IAM Security team, organization and business partners on Sharp HealthCare's Identity and Access Management (IAM) and Epic Security strategy; ensuring policies and security standards are met. Responsible for the maintenance of identity and access management systems, ensuring authorized individuals have appropriate access to systems and data. Efficiently and effectively, respond to IAM and Epic Security incidents, service requests, application access requests and audits. Provides support to peers as well as various other departments of the organization. Responsible for coordinating activities with multiple IT teams and Sharp departments to develop, maintain, support, and enhance Epic access and security.

Required Qualifications
  • 3 Years experience in application access control including experience in information systems security administration in a multi entity health care system, experience with supporting, improving, reporting, documenting audits and compliance with internal and external audits.
  • 3 Years experience with IT Epic support.

Preferred Qualifications
  • Experience with Active Directory Management.
  • Extensive operational knowledge and experience with IAM concepts, principles and best practices such as identity federation, role-based access control and access management processes.
  • Six Sigma Yellow Belt Certification - Various-No accreditation board -PREFERRED
  • CompTIA Security+ - CompTIA -PREFERRED

Other Qualification Requirements
  • Bachelor's degree in Computer Science, Healthcare, or related field; or 4 years of relevant experience in Information Technology may substitute for degree. - REQUIRED.

Essential Functions
  • Operational Management
    Ensure readiness for internal and external audits, including action plan to promptly resolve issues identified and ensure Standard Operating Procedures are created and followed.
    Report out on agreed upon Key Performance Indicators (KPIs) related to IAM, Epic Security, SER, incident/service request management and compliance.
    Manage on-call rotations.
    Train new IT staff in system functions and operations in order to maximize user effectiveness and utilization of systems.
    Develop and maintain Standard Operating Procedures (SOPs) for IAM, Epic Security, and SER.
    Develop system documentation for on-call and other operational requirements.
    Monitor and analyze IAM and Epic system performance, make recommendations for improvements.
    Monitor the daily operations of IAM systems (IGA, Active Directory and other IAM systems), ensuring efficient and secure access management.
    Demonstrate in depth, detailed technical knowledge of security requirements and solutions.
    Develop and/or follow practices/guidelines in relation to compliance with IAM Policies, Epic Security, standards, regulatory requirements and ensure the proper processes are followed when exceptions arise.
    Demonstrate content expertise regarding application and business operations by mentoring staff.
  • Compliance
    Ensure compliance and adherence with corporate security controls and standards as they relate to Identity and Access Management (IAM).
    Conduct assessments, on demand and routine audits to identify and mitigate compliance risks.
    Prepare documentation for audits and act as the point of contact for audit related responsibilities.
    Perform certification of RBAC.
    Perform data contamination management, including coordinating clean-up efforts and reporting requirements and ensuring auditing requirements are completed.
    Mitigate risk by addressing security vulnerabilities and audit gaps.
    Participate in efforts regarding audit findings, adherence to compliance and organizational change.
    Partner with Compliance Department to assure all internal and external customers system access and Sharp HealthCare user agreement forms are appropriate and adhered to.
    Develop and maintain documentation related to IAM, Epic Security and Provider SER compliance activities.
  • Department Support
    Provide operational support including, but not limited to: account provisioning, de-provisioning, periodic access reviews, emergency access, and privileged access management.
    Provide support for IAM-related issues, troubleshooting and resolving complex problems.
    Support the implementation of IAM tools and technologies to enhance security and user experience.
    Partner closely with the Identity and Access Management (IAM) Development team to align role-based access models (RBAC) with Epic security templates and coordinate downstream provisioning through tools like SailPoint.
    Serve as the bridge between Epic application teams and provisioning stakeholders, ensuring that design decisions reflect operational needs and compliance expectations.
    Build and maintain Epic security templates, shared security classes, and application-level role structures in collaboration with analysts and business partners.
    Build and maintain Epic SER records and Blueprints.
    Maintain guidelines for appropriate access in Epic, including compliance with regulatory limitations.
    Document and adhere to standards for naming conventions, template usage, ownership definitions, and cross-application alignment.
    Maintain version control and history for Epic security structures and changes across environments.
    Contribute to risk mitigation strategies related to role structure, over-permissions, or shared access issues.
    Maintain functionality and resolve issues with the provider HL7 interface or API.
    Participate in on call support for the IAM and Epic Security group.
    Ensure operational procedures are created and followed.
    Ensure that all accounts are configured to support the access control policy of Sharp HealthCare.
    Correctly configure accounts based on the completion of a standardized access request form.
    Adjust work schedule as needed for department coverage.
    Facilitate and participate in a multidisciplinary Epic Security Workgroup with representation from ISD Application teams, Compliance, IAM, Training, Clinical Informatics and Operations.
    Participate in initiatives to standardize data and workflows to better utilize IAM automation tools.
    Identify high risk situations, inform Management with recommendation on next steps. Coordinate the activities to reduce the risk.
    Lead Epic Security projects and initiatives to improve the access management process.
  • Customer Service

    Maintain active relationships with all customers by continuously assessing needs, preferences and level of satisfaction with tasks.
    Work effectively with physicians, management, staff, auditors, investigators, consultants and vendors.
    Provide continuing support of remote connections, including VPN and Citrix.
    Accept escalation messages and calls from customers.
    Develop knowledge base articles for the Technical Assistance Center.
    Provide in-service or knowledge transfer sessions to Technical Assistance Center staff and other departments, as needed.
    Train and mentor new members in the department to appropriate customer service skills.
    Monitor Change Management tickets for timeliness, quality, and documented processes are followed.
    Monitor Service Desk tickets for timeliness.
    Provider Incident/Service Request support and quality customer service.
    Respond to IAM/Epic incidents in a timely manner.
  • Professional Competency
    Epic Security Certification - REQUIRED
    Epic Data Courier Badge - REQUIRED
    Epic Provider Administration Badge is required within 90 days of hire.
    Epic Security Post Live Badge is required within 90 days of hire.
    Epic Bridges Certification - PREFERRED
    Epic Cogito Certification - PREFERRED
    Maintains required certifications.
    Obtains other certifications and attends seminars or training as required by the department.
    Maintains knowledge of systems and applications.

Knowledge, Skills, and Abilities
  • Knowledge of clinical and business operations in a healthcare environment.
  • Ability to interpret functional requirements into applications design.
  • Ability to communicate technical issues to technical staff and nontechnical users/clients.
  • Must have strong leadership and communication skills.
  • Knowledge of hospital and clinic culture, business practices, regulatory requirements (e.g., TJC), and health care requirements as it relates to information security and privacy (e.g., HIPAA).
  • Knowledge and understanding of RBAC.
  • Knowledge of Identity and Access Management structures/processes such as provisioning, entitlement certification, access removal and privileged access.
  • Knowledge of IT security, compliance and Identity Management.
  • Ability to work on-call.
  • Ability to cross cover shifts as needed.

Sharp HealthCare is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, gender, gender identity, sexual orientation, age, status as a protected veteran, among other things, or status as a qualified individual with disability or any other protected class


Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
Β·

Security Analyst Related jobs

Other jobs at Sharp HealthCare

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.