Engineer, Workforce Identity & Access Management - Okta

Cardinal Health, Inc.

Taguig

Hybrid

PHP 900,000 - 1,300,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Cardinal Health, Inc. is seeking an experienced IAM Engineer to lead M&A IAM workstreams, consolidate IdPs into a unified SSO, and design cross-domain authentication strategies.

You will develop automated onboarding processes, implement infrastructure-as-code for IAM, and enforce MFA, PAM, and RBAC across hybrid environments. The role requires extensive hands-on experience with Okta, Azure AD/Entra ID, and other enterprise IAM platforms, with a focus on secure, scalable access control and

Qualifications

  • Bachelor's degree or equivalent practical experience in CS/IT/Security.
  • 5+ years of progressive IAM engineering experience in enterprise environments.
  • Strong knowledge of directory services (AD/Azure AD/LDAP) and authentication standards (SAML/OAuth/OpenID Connect).

Responsibilities

  • Lead IAM workstreams for Mergers, Acquisitions, and Divestitures (M&A).
  • Consolidate IdPs into a unified enterprise SSO platform.
  • Design cross-domain authentication and federation strategies.
  • Develop automated onboarding/offboarding workflows and API-driven automations.
  • Implement IaC for IAM configurations and secure provisioning.
  • Architect and enforce enterprise SSO policies, MFA, PAM, and RBAC.

Skills

SSO
MFA
PAM
RBAC
Active Directory
Azure AD
LDAP
Okta
Ping Identity
ForgeRock
SailPoint
PowerShell
Python
RBAC
Zero Trust

Education

Bachelor's degree in Computer Science, Information Technology, Information Security, or related field

Tools

Okta
Azure AD/Entra ID
CyberArk
ForgeRock
Ping Identity
SailPoint
ISC
Saviynt

Job description

Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.


Information Security and Risk develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.


Responsibilities

M&A and SSO Integration

  • Lead IAM technical workstreams for Mergers, Acquisitions, and Divestitures.
  • Consolidate disparate identity providers (IdPs) into a unified enterprise SSO platform.
  • Design and execute cross-domain authentication and federation strategies.

Automation and Workflows

  • Develop automated workflows to streamline user onboarding, transitions, and offboarding.
  • Build API-driven automations to reduce manual provisioning overhead.
  • Implement infrastructure-as-code (IaC) principles for IAM configurations.

Security Policy and Compliance

  • Architect and enforce Enterprise SSO Security Policies, including adaptive Multi-Factor Authentication (MFA).
  • Implement Least Privilege access models and Conditional Access Policies and Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks.
  • Conduct regular access reviews and support IT compliance audits

Directory Services & Lifecycle Management

  • Manage and optimize hybrid Active Directory (AD) and Azure AD / Entra ID environments.
  • Govern the end-to-end User Lifecycle Management (LCM) process.
  • Ensure data integrity and synchronization across HRIS, downstream applications, and directories.
  • Solution Design & Implementation:Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Identity life cycle management, IGA and PAM.
  • Security & Compliance:Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
  • Technical Troubleshooting & Support:Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
  • Collaboration & Communication:Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
  • Documentation & Best Practices:Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
Qualifications
  • Education:Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
  • Experience:5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
  • Technical Expertise:
    • Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
    • Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connects and SCIM), MFA, and privileged access management (PAM).
    • Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint, ISC, Saviynt).
    • Experience with scripting languages (e.g., PowerShell, Python) for automation and integration.
    • Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
    • Understanding of modern DevOps practices and SDLC processes.
    • Familiarity with Zero Trust architecture principles as they apply to remote and hybrid workforces.
    • Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
    • IAM Platforms: Hands-on experience with enterprise IdPs (e.g., Okta, Ping Identity, Azure AD/Entra ID).
    • Directory Services: Strong command of Active Directory, Azure AD, LDAP, and group policy management.
    • Scripting/Automation: Proficiency in PowerShell, Python, or bash for automating IAM tasks.
    • M&A Track Record: Proven experience migrating or merging user populations under tight deadlines. Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
    • Detail-oriented mindset to ensure precise access control configurations and compliance.
    • Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
    • Must be a self-starter who takes full ownership of projects from inception to completion, holding oneself accountable for the security and operation integrity of IAM platform.
    • Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
    • Adaptability to stay ahead of evolving IAM technologies and security threats.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Engineer, Workforce Identity & Access Management - Okta
Engineer, Workforce Identity & Access Management - Okta

Cardinal Health International Philippines Inc. • Pateros

On-site
PHP 900,000 - 1,300,000
Engineer, Workforce Identity and Access Management - Sailpoint
Engineer, Workforce Identity and Access Management - Sailpoint

Cardinal Health, Inc. • Taguig

Hybrid
PHP 900,000 - 1,600,000
Engineer, Workforce Identity & Access Management - Okta
Engineer, Workforce Identity & Access Management - Okta

Cardinal Health • Taguig

Hybrid
PHP 800,000 - 1,400,000
Engineer, Workforce Identity and Access Management - Sailpoint
Engineer, Workforce Identity and Access Management - Sailpoint

Cardinal Health International Philippines Inc. • Pateros

On-site
PHP 800,000 - 1,400,000
Engineer, Workforce Identity and Access Management - Sailpoint
Engineer, Workforce Identity and Access Management - Sailpoint

Cardinal Health • Taguig

Hybrid
PHP 1,200,000 - 2,000,000
IAM Engineer: Workforce Identity & M&A Integrations
IAM Engineer: Workforce Identity & M&A Integrations

Cardinal Health • Taguig

Hybrid
PHP 1,200,000 - 2,000,000
IAM Engineer: Global Workforce Identity & Access
IAM Engineer: Global Workforce Identity & Access

Cardinal Health International Philippines Inc. • Pateros

On-site
PHP 800,000 - 1,400,000
IAM Engineer: M&A & SSO Automation Lead
IAM Engineer: M&A & SSO Automation Lead

Cardinal Health • Taguig

Hybrid
PHP 800,000 - 1,400,000
IAM Architect: SSO, PAM & M&A
IAM Architect: SSO, PAM & M&A

Cardinal Health, Inc. • Taguig

Hybrid
PHP 900,000 - 1,300,000
IAM Engineer: Workforce Identity & M&A Integration
IAM Engineer: Workforce Identity & M&A Integration

Cardinal Health, Inc. • Taguig

Hybrid
PHP 900,000 - 1,600,000