Software Engineer – Identity & Access Management

McKesson

Columbus (OH)

On-site

USD 100,100 - 166,900

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

McKesson is seeking a Software Engineer in Columbus, OH, focused on Identity and Access Management (IAM). This role involves designing and securing authentication systems, integrating with identity platforms like Okta and Auth0, and implementing secure engineering practices. Candidates should have over 4 years of experience in software development and a strong understanding of identity threats. McKesson offers a competitive salary ranging from $100,100 to $166,900 and emphasizes equal employment opportunities.

Qualifications

  • 4+ years' experience building and shipping production software as an individual contributor.
  • Deep experience with Okta and/or Auth0.
  • Hands-on experience implementing or integrating authentication and authorization.
  • Strong understanding of secure engineering practices.

Responsibilities

  • Design, build, and maintain authentication and authorization solutions.
  • Integrate applications with identity platforms.
  • Apply industry-standard security practices.
  • Build production-quality systems using various programming languages.

Skills

Okta
Auth0
OIDC
OAuth 2.0
SAML
JavaScript
Python
Ruby
C#
Secure engineering practices

Education

Degree or equivalent

Job description

Overview

We are seeking a Software Engineer with deep interest and experience in Identity & Access Management (IAM) to help design, build, and secure authentication and authorization capabilities across CoverMyMeds’ platforms. This role sits on a core IAM platform team that owns end‑user identity, federated authentication, and authentication infrastructure for web applications, partnering closely with Security, Product, and other engineering teams.

This is a hands‑on individual contributor role in a product‑oriented, Kanban-driven environment, where impact is achieved through technical depth, secure engineering practices, and collaboration.

What You’ll Do
Identity Engineering & Integrations
  • Design, build, and maintain authentication and authorization solutions using OIDC, OAuth 2.0, and SAML.
  • Integrate applications and APIs with identity platforms such as Okta, Auth0, Ping, or Microsoft Entra ID.
  • Implement SSO, MFA, federated authentication, session management, and secure token handling.
  • Contribute to identity services such as login gateways, authorization middleware, claims transformation, and access policy enforcement.
  • Support SMART on FHIR (OAuth 2.0) use cases and unified authentication initiatives.
Security & Standards
  • Apply industry‑standard security practices including least privilege, secure defaults, defense in depth, and secure secret handling.
  • Partner with Security on threat modeling, risk reviews, and secure SDLC practices.
  • Implement identity solutions aligned with NIST‑based identity and access control principles.
Software Development & Delivery
  • Build production‑quality systems using one or more of JavaScript/TypeScript, Ruby, Python, or C#.
  • Write clean, testable, maintainable code with strong engineering discipline (CI/CD, code reviews, automated testing).
  • Create clear technical documentation for APIs, integrations, and operational support.
  • Participate in on‑call or operational support for critical identity services as needed.
Ways of Working
  • Work within a Kanban delivery model, managing flow and continuously improving quality and throughput.
  • Collaborate with Product, Security, and stakeholders to define outcomes and manage tradeoffs.
  • Bring an enterprise‑first mindset, constructively challenging designs and contributing new ideas.

Priority will be given to candidates who reside in the Columbus, OH metropolitan area.

We are unable to provide sponsorship for this role now or in the future.

Minimum Qualifications

Degree or equivalent and typically requires 4+ years of relevant experience.

Education
  • Degree not required.
Critical Skills:
  • 4+ years' experience building and shipping production software as an individual contributor.
  • Deep experience (4+ years) with Okta and/or Auth0 (policies, apps, federation, claims).
  • Hands‑on experience (4+ years) implementing or integrating authentication and authorization using OIDC, OAuth 2.0, and/or SAML.
  • Strong understanding of secure engineering practices and common identity threats.
  • Experience working in at least one of the following: JavaScript/TypeScript, Ruby, Python, C#.
  • Ability to collaborate across engineering, product, and security teams and communicate technical decisions clearly.
Preferred Qualifications
  • Experience with SMART on FHIR, SCIM, directory integrations, or identity lifecycle management.
  • Familiarity with RBAC/ABAC, claims‑based authorization, or policy engines.
  • Experience in regulated environments and audit support.
  • Experience improving reliability of critical auth systems (SLIs/SLOs, graceful degradation).
Compensation

We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long‑term incentive opportunities may be offered. For more information regarding benefits at McKesson, click here.

Our Base Pay Range for this position

$100,100 - $166,900

Equal Employment Opportunity

McKesson is an Equal Opportunity Employer. McKesson provides equal employment opportunities to applicants and employees, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, genetic information, or any other legally protected category. For additional information on McKesson’s full Equal Employment Opportunity policies, visit Equal Employment Opportunity page.

McKesson welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process. If you require accommodation please contact us by sending an email to Disability_Accommodation@McKesson.com.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Software Engineer - Identity & Access Management
Software Engineer - Identity & Access Management

McKesson Corporation • Columbus (OH)

On-site
USD 100,000 - 167,000
Software Engineer – Identity & Access Management
Software Engineer – Identity & Access Management

CoverMyMeds • North Carolina

Hybrid
USD 100,100 - 166,900
Software Engineer – Identity & Access Management
Software Engineer – Identity & Access Management

CoverMyMeds • Columbus (OH)

On-site
USD 100,000 - 167,000
Software Engineer - Identity & Access Management
Software Engineer - Identity & Access Management

McKesson Corporation • United States

On-site
USD 100,000 - 167,000
Software Engineer – Identity & Access Management
Software Engineer – Identity & Access Management

McKesson’s Corporate • Columbus (OH)

On-site
USD 100,100 - 166,900
Annual bonus opportunities
Long-term incentive opportunities
Total Rewards program benefits
Staff Software Developer
Staff Software Developer

CoverMyMeds • Columbus (OH)

On-site
USD 155,000 - 259,000
Staff Software Developer
Staff Software Developer

McKesson Corporation • United States

On-site
USD 155,000 - 259,000
Staff Software Developer
Staff Software Developer

McKesson Corporation • Columbus (OH)

On-site
USD 155,000 - 259,000
Staff Software Developer
Staff Software Developer

McKesson • Columbus (OH)

On-site
USD 155,000 - 259,000
Senior Data Security Architect (Data Platform Security)
Senior Data Security Architect (Data Platform Security)

McKesson Corporation • Columbus (OH)

Hybrid
USD 124,000 - 207,000