IT Analyst II - Access and Provisioning Specialist

Midwest Physicians Administrative Services, LLC dba Duly Health and Care

Highland Oaks (GA)

On-site

USD 68,000 - 102,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Health benefits
Mental health benefit
401(k) match
Tuition reimbursement
Volunteer time off
Parental leave
Life & disability insurance

Job summary

Duly Health and Care is seeking an experienced IT Access & Provisioning Specialist to design, implement, and maintain automated identity lifecycle management across the enterprise. The role focuses on onboarding/offboarding automation using SailPoint, AD, and Entra ID, collaborating with Cybersecurity, IT, and compliance teams.

You will configure RBAC, SoD, and access reviews, develop connectors to HRIS like Workday, troubleshoot provisioning issues, and contribute to continuous IAM improvements

Qualifications

  • 5+ years in identity and access management.
  • Experience with cloud-based enterprise environments.
  • Strong knowledge of Active Directory and Microsoft Entra ID.
  • Experience automating provisioning/deprovisioning workflows with HR systems.
  • Familiarity with RBAC, SoD, and access certifications.
  • Scripting basics for integrations.

Responsibilities

  • Design and maintain onboarding/offboarding workflows with SailPoint and AD/Entra ID.
  • Automate account provisioning, role assignment, licensing, and deprovisioning.
  • Manage IAM solutions across cloud apps (Azure AD, Okta, Imprivata, Ping, etc.).
  • Develop connectors between SailPoint, HRIS, AD, and downstream apps.
  • Configure RBAC and SoD policies and run access certifications.
  • Troubleshoot provisioning issues and sync errors.
  • Collaborate with HR, security, and application teams on data flows.
  • Create documentation and participate in IAM improvements.
  • Assist in incident response related to identity and access.

Skills

IAM expertise
Cloud environments
RBAC & SoD
PowerShell
Communication skills

Education

Bachelors in IT

Tools

SailPoint
Azure AD
PowerShell
Okta

Job description

At Duly Health and Care, you are supported to do your best work and make a meaningful impact every day. You will be part of a collaborative, physician-led team that works as one and puts patients at the center of everything we do. With a connected network of providers, care teams, and services across primary and specialty care, surgery centers, imaging, lab, and therapy, you are part of a system designed to deliver high-quality, coordinated care. Together, we create an environment where you can grow, contribute, and help improve the experience and outcomes for every patient we serve.

Benefits
  • Comprehensive medical, dental, and vision benefits that include healthcare navigation assistance.
  • Access to a mental health benefit at no cost.
  • Employer provided life and disability insurance.
  • $5,250 Tuition Reimbursement per year.
  • Immediate 401(k) match.
  • 40 hours paid volunteer time off.
  • A culture committed to community engagement and social impact.
  • Up to 12 weeks parental leave at 100% pay and a financial benefit for adoption and surrogacy for non-physician team members once eligibility requirements are met.

Let’s start with what matters. People. Purpose. Care. At Duly Health and Care, we believe healthcare works best when it's personal, connected, and led by people who truly care. We are a physician-led medical group built on trusted relationships, teamwork, and a shared commitment to putting patients first in every decision we make. Our team members are caregivers, collaborators, problem-solvers, and leaders. Together, we show up with compassion, act with purpose, and take ownership of the care we deliver and the experience we create. Whether you're caring directly for patients or supporting the teams who do, your role matters here, and your voice is valued. We listen with intention, work as one, and challenge ourselves to keep improving, not for recognition, but because our patients, families, and communities count on us. Innovation at Duly isn't about chasing what's next for its own sake. It's about finding better ways to deliver high-quality, affordable, and accessible care, today and into the future. If you're looking for meaningful work, supportive teammates, and the opportunity to help shape the future of care while staying grounded in compassion and community, you'll find your place at Duly.

Job Description

We are seeking an experienced IT Access & Provisioning Specialist to design, implement, and maintain automated identity lifecycle management across the enterprise with a strong focus on onboarding/offboarding automation using tools like SailPoint IdentityIQ/IdentityNow, Active Directory, and Azure AD (Entra ID). The Specialist partners closely with Cybersecurity, IT Network & Infrastructure, application owners, business stakeholders, and compliance teams on access reviews, role-based access controls, provisioning workflows, and process improvement initiatives.

Key Responsibilities
  • Design, build, and maintain automated onboarding and offboarding workflows using SailPoint (or equivalent IGA tools) integrated with Active Directory and Azure AD/Entra ID.
  • Manage identity lifecycle events (joiners, movers, leavers) by automating account creation, role/group assignment, license provisioning, and deprovisioning.
  • Deep experience managing IAM solutions (e.g. Azure AD, Okta, Imprivata, Ping, AuthX, etc.) in a cloud-centric environment (e.g. Epic, D365, WorkDay, Salesforce, Five9, etc.).
  • Develop and maintain connectors, rules, and workflows between SailPoint, HRIS systems (e.g., Workday), AD, Azure AD, and downstream applications.
  • Configure and manage access certification campaigns, role-based access control (RBAC), and segregation of duties (SoD) policies within the IGA platform.
  • Troubleshoot provisioning/deprovisioning failures, sync errors, and connector issues across AD, Azure AD, and SailPoint.
  • Partner with HR, IT Service Desk, and business units to ensure timely and accurate identity data flows and lifecycle triggers.
  • Create and maintain documentation for IAM processes, workflows, and standard operating procedures.
  • Monitor identity-related audit logs and compliance reports to ensure adherence to internal policies and regulatory requirements (e.g., HIPAA).
  • Support access request and approval workflows, ensuring least-privilege principles are enforced.
  • Participate in IAM tool upgrades, testing, and continuous improvement initiatives, including scripting enhancements (PowerShell, Python, or similar) to extend automation capabilities.
  • Assist in incident response related to identity and access issues, including emergency account disablement and access reviews.
Required Qualifications
  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or related field (or equivalent work experience).
  • 5+ years’ hands on experience in identity and access management and privileged access management.
  • 5+ years of experience with complex, cloud-based enterprise environments.
  • Strong working knowledge of Active Directory (OUs, group policy, group management) and Azure AD / Microsoft Entra ID (users, groups, conditional access, licensing).
  • Experience building or supporting automated provisioning/deprovisioning workflows tied to HR systems of record.
  • Familiarity with identity lifecycle concepts: joiner/mover/leaver processes, RBAC, SoD, access certifications.
  • Basic scripting/automation skills (Java, PowerShell, Python, or similar) for extending or troubleshooting integrations.
  • Understanding of directory synchronization tools (Azure AD Connect / Entra Connect) and SSO/federation concepts (SAML, OAuth, OIDC).
  • Strong analytical and troubleshooting skills, with attention to detail in high-volume, process-driven environments.
  • Excellent communication skills and ability to work cross-functionally with HR, security, and application teams.
Preferred Qualifications
  • Experience with SailPoint IdentityIQ SailPoint certifications (e.g., SailPoint Certified IdentityNow Engineer/Administrator).
  • Experience with additional IAM/IGA/PAM tools (Okta, Ping Identity, CyberArk, Saviynt).
  • Knowledge of ITSM platforms (Zendesk) for access request/ticketing integration.
  • Experience supporting compliance frameworks (PCI, GLBA, HIPAA, GDPR, SOC 2 etc.).
  • Familiarity with cloud platforms (AWS, Azure) IAM constructs beyond Azure AD.
  • Prior experience in a regulated industry (finance, healthcare, insurance).
  • Experience supporting IAM automation, APIs, integrations, or workflow enhancements.

The compensation for this role includes a base pay range of 67,953 - 101,930, with the actual pay determined by factors such as skills, experience, education, certifications, geographic location, and internal equity. Additional compensation may be available through shift differentials, bonuses, and other incentives. Base pay is only a portion of the total rewards package.

Artificial Intelligence Disclosure

Artificial Intelligence (AI) tools may be used in some portions of the candidate review process for this position, however, all employment decisions will be made by a person.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Analyst II - Access and Provisioning Specialist
IT Analyst II - Access and Provisioning Specialist

Duly Health and Care • Chicago (IL)

On-site
USD 68,000 - 102,000
Medical, dental, vision benefits
Mental health benefit
401(k) with match
+3
IAM SailPoint Engineer, Consultant
IAM SailPoint Engineer, Consultant

Releady • Denver (CO)

Hybrid
USD 103,000 - 117,000
IAM SailPoint Engineer, Senior
IAM SailPoint Engineer, Senior

Releady • Denver (CO), Northern (KY)

Hybrid
USD 96,000 - 103,000
Senior IAM Engineer
Senior IAM Engineer

Centene Corporation • Missouri

On-site
USD 87,000 - 161,000
Health insurance
401K and stock purchase plans
Tuition reimbursement
+3
Engineer, IAM & Endpoint Platform
Engineer, IAM & Endpoint Platform

1P284 THE CARLYLE GROUP EMPLOYEE CO., LLC • Washington

On-site
USD 160,000 - 180,000
SYSTEM ADMINISTRATOR
SYSTEM ADMINISTRATOR

Atos SE • United States

On-site
USD 105,000 - 145,000
Senior IAM Engineer
Senior IAM Engineer

Centene Corporation • Town of Florida (NY)

On-site
USD 87,000 - 161,000
Health insurance
Paid time off
401K and stock purchase plans
+1
Senior IAM Engineer
Senior IAM Engineer

Total Quality Logistics • Cincinnati (OH)

On-site
USD 120,000 - 180,000
Hybrid work model
Relocation assistance
Health, dental, vision
SYSTEM ADMINISTRATOR
SYSTEM ADMINISTRATOR

Atos • Beaverton (OR)

On-site
USD 100,000 - 140,000
Identity Governance and Administration (IGA) Engineer
Identity Governance and Administration (IGA) Engineer

Capgemini • San Antonio (TX)

On-site
USD 110,000 - 125,000