User Security & Access Analyst - Hybrid - 140760

University of California San Diego

San Diego (CA)

Hybrid

USD 100,000 - 140,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Hybrid schedule
On-call rotation

Job summary

University of California San Diego is seeking a User Security & Access Analyst III to independently manage complex IAM and security provisioning, including Epic security and SailPoint integrations, in a hybrid on-site/remote schedule at Towne Centre Drive in San Diego.

The role requires strong incident response, audit support, collaboration with IT, HR, and application teams, and on-call rotation; the analyst will implement access governance and uphold security standards.

Qualifications

  • Seven years of related experience, education/training, OR a Bachelor’s degree in related area plus three years of related experience/training.
  • Basic skill at reading and interpreting security logs.

Responsibilities

  • Independently manage complex user access, provisioning, security, and account-related requests.
  • Perform advanced Epic security administration, including analysis and maintenance of user access, roles, templates, and security configurations.
  • Maintain and support SailPoint, Okta, Microsoft Entra ID (Azure AD), Active Directory, and related identity management integrations.
  • Administer user access, role-based security, and provisioning processes while resolving access-related issues and supporting compliance requirements
  • Evaluate access requests to ensure appropriate access is provided based on business and job requirements.
  • Troubleshoot complex access and security issues across multiple applications and systems.
  • Collaborate with managers, application analysts, system owners, HR, IT, and operational teams to resolve access issues.
  • Participate as a security subject matter expert on projects and system implementations.
  • Support audits by gathering evidence, reviewing access, researching discrepancies, and assisting with remediation.
  • Identify opportunities to improve processes, documentation, and workflows.
  • Assist with standardization and automation efforts within the analyst's area of responsibility.
  • Provide technical guidance and knowledge sharing to team members.
  • Escalate high-risk or policy-related decisions to leadership.
  • 7/24 On Call for User Security and Access Team rotation.

Skills

IAM
Epic security
RBAC
Audit & compliance
Security troubleshooting
Incident response
Security policy
Team collaboration

Education

Bachelor’s degree + 3 years experience
7 years related experience

Tools

SailPoint
Okta
Microsoft Entra ID (Azure AD)
Epic Security
Active Directory

Job description

Payroll Title: IT SCRTY ANL 3 TX

Department: INFORMATION SERVICES

Hiring Pay Scale: $100,000 - 140,000 / Year

Worksite: Towne Centre Drive

Appointment Type: Career

Appointment Percent: 100%

Union: TX Contract

Total Openings: 1

Work Schedule: Days, 8 hrs/day, Monday-Friday

#140760 User Security & Access Analyst - Hybrid

Filing Deadline: Wed 9/30/2026

UC San Diego values and welcomes people from all backgrounds. If you are interested in being part of our team, possess the needed licensure and certifications, and feel that you have most of the qualifications and/or transferable skills for a job opening, we strongly encourage you to apply.

UCSD Layoff from Career Appointment: Apply by 09/18/26 for consideration with preference for rehire. All layoff applicants should contact their Employment Advisor.

Reassignment Applicants: Eligible Reassignment clients should contact their Disability Counselor for assistance.

This position has recently been accreted by UPTE TX and will be a part of that union moving forward.

This position will work a hybrid schedule which includes a combination of working both onsite at Towne Centre Drive (San Diego, CA) and remote.

DESCRIPTION

The User Security & Access Analyst III is an experienced technical professional responsible for independently performing complex identity, access management, Epic security, and security administration activities.

This position serves as a subject matter resource within assigned provisioning and security domains, manages complex access and security requests, and partners with application and operational teams to resolve issues while ensuring organizational security standards, policies, and procedures are followed.

Primary Responsibilities:

  • Independently manage complex user access, provisioning, security, and account-related requests.
  • Perform advanced Epic security administration, including analysis and maintenance of user access, roles, templates, and security configurations.
  • Maintain and support SailPoint, Okta, Microsoft Entra ID (Azure AD), Active Directory, and related identity management integrations.
  • Administer user access, role-based security, and provisioning processes while resolving access-related issues and supporting compliance requirements
  • Evaluate access requests to ensure appropriate access is provided based on business and job requirements.
  • Troubleshoot complex access and security issues across multiple applications and systems.
  • Apply established security policies, procedures, and standards when making access decisions.
  • Identify inappropriate, excessive, duplicate, or conflicting access and recommend remediation.
  • Collaborate with managers, application analysts, system owners, HR, IT, and operational teams to resolve access issues.
  • Participate as a security subject matter expert on projects and system implementations.
  • Support audits by gathering evidence, reviewing access, researching discrepancies, and assisting with remediation.
  • Identify opportunities to improve existing processes, documentation, and workflows.
  • Assist in the development, implementation, and continuous improvement of procedures, standards, documentation, and technical training programs.
  • Assist with standardization and automation efforts within the analyst's area of responsibility.
  • Provide technical guidance and knowledge sharing to team members as needed.
  • Escalate high-risk, unprecedented, policy-related, or organizational-level decisions to appropriate leadership.
  • 7/24 On Call for User Security and Access Team rotation

Decision Making & Independence

Works independently within established policies, procedures, security standards, and governance requirements. Exercises professional judgment when resolving complex access and security issues and recognizes when matters require broader technical review or leadership involvement.

Technical Knowledge

Working knowledge of:

  • Identity and Access Management (IAM)
  • Epic security and provisioning
  • SailPoint, Okta, Microsoft Entra ID (Azure AD), and Epic Security
  • Role-Based Access Control (RBAC)
  • User lifecycle and account provisioning
  • Access governance principles
  • Security controls and least privilege
  • Audit and compliance requirements
  • Access troubleshooting and remediation

Typical Level of Work

The Level 3 Analyst is expected to independently manage complex operational work and contribute subject matter expertise to projects and process improvements. The position may assist other analysts but is not considered a senior or supervisory position.

MINIMUM QUALIFICATIONS
  • Seven (7) years of related experience, education/training, OR a Bachelor’s degree in related area plus three (3) years of related experience/training.
  • Basic skill at reading and interpreting security logs.
  • Ability to follow department processes and procedures.
  • Interpersonal skills sufficient to work effectively with both technical and non-technical personnel at various levels in the organization.
  • Experience using IT security systems and tools. Knowledge of data encryption techniques.
  • Experience analyzing logs for security breaches.
  • Knowledge of other areas of IT, department processes and procedures.
  • Demonstrated skills applying security controls to computer software and hardware.
  • Experience in incident response and digital forensics including data collection, examination and analysis.
  • Demonstrated skill at administering complex security controls and configurations to computer hardware, software and networks.
  • Knowledge of computer hardware, software and network security issues and approaches.
  • Demonstrated experience selecting and applying appropriate data encryption technologies.
PREFERRED QUALIFICATIONS
  • 4–6 years of progressively responsible experience in Identity and Access Management (IAM), Epic security, enterprise application security, or a related field.
  • Experience supporting Epic security, including EMP security, security templates/classes, role-based access, provisioning, and access troubleshooting.
  • Experience working with enterprise identity technologies such as Active Directory, Microsoft Entra ID (Azure AD), Okta, and/or SailPoint.
  • Working knowledge of Role-Based Access Control (RBAC), least privilege, and access-management principles.
  • Experience supporting identity lifecycle processes, including onboarding, transfers, role changes, terminations, and access modifications.
  • Experience analyzing and resolving complex access issues involving multiple systems, roles, departments, or workflows.
  • Experience identifying excessive, duplicate, outdated, or inappropriate access and assisting with remediation.
  • Experience following and applying established access governance, security standards, procedures, and controls.
  • Experience evaluating provisioning, deprovisioning, and access-request workflows to identify process gaps, inefficiencies, and opportunities for optimization, standardization, and reduction of manual effort.
  • Experience supporting audit, compliance, access-review, and remediation activities, preferably within a healthcare or other regulated environment.
  • Working knowledge of healthcare security and regulatory requirements, including HIPAA, least privilege, separation of duties, and appropriate access controls.
  • Ability to independently evaluate complex access requests, identify potential risks, and recommend appropriate solutions or elevate when broader technical, policy, or management review is required.
  • Ability to provide technical assistance and knowledge sharing to other analysts while recognizing when issues require escalation to a Level 4 Analyst, Supervisor, or Manager.
  • Strong written and verbal communication skills with the ability to work effectively with application teams, operational leaders, HR, IT, compliance, and other stakeholders.
  • Epic Security certification, Epic Security Coordinator experience, IAM/security certification, or comparable training.
SPECIAL CONDITIONS
  • 7/24 On Call for User Security and Access Team rotation
  • Must be able to work various hours and locations based on business needs.
  • Employment is subject to a criminal background check and pre-employment physical.

Pay Transparency Act

Annual Full Pay Range: Unclassified - No data available (will be prorated if the appointment percentage is less than 100%)

Hourly Equivalent: Unclassified - No data available

Factors in determining the appropriate compensation for a role include experience, skills, knowledge, abilities, education, licensure and certifications, and other business and organizational needs. The Hiring Pay Scale referenced in the job posting is the budgeted salary or hourly range that the University reasonably expects to pay for this position. The Annual Full Pay Range may be broader than what the University anticipates to pay for this position, based on internal equity, budget, and collective bargaining agreements (when applicable).

If employed by the University of California, you will be required to comply with our Policy on Vaccination Programs, which may be amended or revised from time to time. Federal, state, or local public health directives may impose additional requirements.

If applicable, life-support certifications (BLS, NRP, ACLS, etc.) must include hands-on practice and in-person skills assessment; online-only certification is not acceptable.

UC San Diego Health is the only academic health system in the San Diego region, providing leading-edge care in patient care, biomedical research, education, and community service. Our facilities include two university hospitals, a National Cancer Institute-designated Comprehensive Cancer Center, Shiley Eye Institute, Sulpizio Cardiovascular Center, the only Burn Center in the county, and dozens of outpatient clinics. We invite you to join our team!

Applications/Resumes are accepted for current job openings only. For full consideration on any job, applications must be received prior to the initial closing date. If a job has an extended deadline, applications/resumes will be considered during the extension period; however, a job may be filled before the extended date is reached.

To foster the best possible working and learning environment, UC San Diego strives to cultivate a rich and diverse environment, inclusive and supportive of all students, faculty, staff and visitors. For more information, please visit UC San Diego Principles of Community.

The University of California is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, age, protected veteran status, or other protected status under state or federal law.

For the University of California’s Anti-Discrimination Policy, please visit https://policy.ucop.edu/doc/1001004/Anti-Discrimination.

UC San Diego is a smoke and tobacco free environment. Please visit smokefree.ucsd.edu for more information.

UC San Diego Health maintains a marijuana and drug free environment. Employees may be subject to drug screening.

Misconduct Disclosure Requirement: As a condition of employment, the final candidate who accepts an offer of employment will be required to disclose if they have been subject to any final administrative or judicial decisions within the last seven years determining that they committed any misconduct; or have filed an appeal of a finding of substantiated misconduct with a previous employer.

a. "Misconduct" means any violation of the policies governing employee conduct at the applicant’s previous place of employment, including, but not limited to, violations of policies prohibiting sexual harassment, sexual assault, or other forms of harassment, or discrimination, as defined by the employer. For reference, below are UC’s policies addressing some forms of misconduct:

  • UC Sexual Violence and Sexual Harassment Policy
  • UC Anti-Discrimination Policy
  • Abusive Conduct in the Workplace
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. User Security & Access Analyst - Hybrid - 140754
Sr. User Security & Access Analyst - Hybrid - 140754

University of California San Diego • San Diego (CA)

Hybrid
USD 125,000 - 176,000
Information Security Analyst - Hybrid - 140203
Information Security Analyst - Hybrid - 140203

UC San Diego Health • San Diego (CA)

On-site
USD 125,000 - 165,000
IS Customer Support Analyst - 141360
IS Customer Support Analyst - 141360

University of California San Diego • San Diego (CA)

Hybrid
USD 44,000 - 72,000
IS Customer Support Analyst - 141360
IS Customer Support Analyst - 141360

San Diego Supercomputer Center • San Diego (CA)

On-site
USD 45,000 - 72,000
Sr. Academic Affairs Analyst, VC-Health Sciences - 140588
Sr. Academic Affairs Analyst, VC-Health Sciences - 140588

University of California San Diego • San Diego (CA)

Hybrid
USD 79,200 - 105,000
Sr. Epic Cadence / Referral Analyst - Hybrid - 141252
Sr. Epic Cadence / Referral Analyst - Hybrid - 141252

University of California San Diego • San Diego (CA)

Hybrid
USD 125,000 - 182,000
Enterprise Imaging Analyst - 141215
Enterprise Imaging Analyst - 141215

University of California San Diego • San Diego (CA)

On-site
USD 115,000 - 145,000
JPA Epic Implementation Manager - Hybrid - 141093
JPA Epic Implementation Manager - Hybrid - 141093

UC San Diego Health • San Diego (CA)

Hybrid
USD 125,000 - 167,000
Patient Support Representative III, Student Health
Patient Support Representative III, Student Health

University of California San Diego • San Diego (CA)

On-site
USD 43,000 - 61,000
Med. Group Office Asst.-Per Diem-Student Health - 139756
Med. Group Office Asst.-Per Diem-Student Health - 139756

University of California San Diego • San Diego (CA)

On-site
USD 59,000