Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.
University of California - San Diego Medical Centers (UCSD) seeks a User Security & Access Analyst III to independently manage complex identity, access management, Epic security, and security administration activities. You will partner with application and operational teams to uphold security standards and resolve access issues end-to-end.
The role requires strong knowledge of SailPoint, Okta, Entra ID (Azure AD), RBAC, lifecycle provisioning, audits, and remediation, with emphasis on least
UCSD Layoff from Career Appointment: Apply by 09/18/26 for consideration with preference for rehire. All layoff applicants should contact their Employment Advisor.
Reassignment Applicants: Eligible Reassignment clients should contact their Disability Counselor for assistance.
This position has recently been accreted by UPTE TX and will be a part of that union moving forward.
This position will work a hybrid schedule which includes a combination of working both onsite at Towne Centre Drive (San Diego, CA) and remote.
The User Security & Access Analyst III is an experienced technical professional responsible for independently performing complex identity, access management, Epic security, and security administration activities.
This position serves as a subject matter resource within assigned provisioning and security domains, manages complex access and security requests, and partners with application and operational teams to resolve issues while ensuring organizational security standards, policies, and procedures are followed.
Works independently within established policies, procedures, security standards, and governance requirements. Exercises professional judgment when resolving complex access and security issues and recognizes when matters require broader technical review or leadership involvement.
Working knowledge of:
The Level 3 Analyst is expected to independently manage complex operational work and contribute subject matter expertise to projects and process improvements. The position may assist other analysts but is not considered a senior or supervisory position.
Seven (7) years of related experience, education/training, OR a Bachelor's degree in related area plus three (3) years of related experience/training.
Basic skill at reading and interpreting security logs.
Ability to follow department processes and procedures.
Interpersonal skills sufficient to work effectively with both technical and non-technical personnel at various levels in the organization.
Experience using IT security systems and tools. Knowledge of data encryption techniques.
Experience analyzing logs for security breaches.
Knowledge of other areas of IT, department processes and procedures.
Demonstrated skills applying security controls to computer software and hardware.
Experience in incident response and digital forensics including data collection, examination and analysis.
Demonstrated skill at administering complex security controls and configurations to computer hardware, software and networks.
Knowledge of computer hardware, software and network security issues and approaches.
Demonstrated experience selecting and applying appropriate data encryption technologies.
4-6 years of progressively responsible experience in Identity and Access Management (IAM), Epic security, enterprise application security, or a related field.
Experience supporting Epic security, including EMP security, security templates/classes, role-based access, provisioning, and access troubleshooting.
Experience working with enterprise identity technologies such as Active Directory, Microsoft Entra ID (Azure AD), Okta, and/or SailPoint.
Working knowledge of Role-Based Access Control (RBAC), least privilege, and access-management principles.
Experience supporting identity lifecycle processes, including onboarding, transfers, role changes, terminations, and access modifications.
Experience analyzing and resolving complex access issues involving multiple systems, roles, departments, or workflows.
Experience identifying excessive, duplicate, outdated, or inappropriate access and assisting with remediation.
Experience following and applying established access governance, security standards, procedures, and controls.
Experience evaluating provisioning, deprovisioning, and access-request workflows to identify process gaps, inefficiencies, and opportunities for optimization, standardization, and reduction of manual effort.
Experience supporting audit, compliance, access-review, and remediation activities, preferably within a healthcare or other regulated environment.
Working knowledge of healthcare security and regulatory requirements, including HIPAA, least privilege, separation of duties, and appropriate access controls.
Ability to independently evaluate complex access requests, identify potential risks, and recommend appropriate solutions or elevate when broader technical, policy, or management review is required.
Ability to provide technical assistance and knowledge sharing to other analysts while recognizing when issues require escalation to a Level 4 Analyst, Supervisor, or Manager.
Strong written and verbal communication skills with the ability to work effectively with application teams, operational leaders, HR, IT, compliance, and other stakeholders.
Epic Security certification, Epic Security Coordinator experience, IAM/security certification, or comparable training.
7/24 On Call for User Security and Access Team rotation
Must be able to work various hours and locations based on business needs.
Employment is subject to a criminal background check and pre-employment physical.
Pay Transparency Act
Annual Full Pay Range: Unclassified - No data available (will be prorated if the appointment percentage is less than 100%)
Hourly Equivalent: Unclassified - No data available
Factors in determining the appropriate compensation for a role include experience, skills, knowledge, abilities, education, licensure and certifications, and other business and organizational needs. The Hiring Pay Scale referenced in the job posting is the budgeted salary or hourly range that the University reasonably expects to pay for this position. The Annual Full Pay Range may be broader than what the University anticipates to pay for this position, based on internal equity, budget, and collective bargaining agreements (when applicable).