Senior Software Engineer II – AWS IAM
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by diversity and inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health equity on a global scale. Join us to start Caring. Connecting. Growing together.
Primary Responsibilities:
- In depth workings of AWS Logging and monitoring strategies for platform level
- Vulnerability management and security automation in AWS
- Ways to integrate AWS security services with third-party tools
- Cryptography and key management in AWS
- Data retention and lifecycle management
- Multi-account governance and organizational compliance
- Threat detection and incident response strategies
- Implement the cloud security best practices and support the Cloud IAM roadmap and implementation of enterprise wide IAM policies across the AWS platform
- Define the IAM cloud centric measures and performance metrics to track the effectiveness of the services and enforcement of controls
- Manage the automation of cloud components using Infrastructure-as-Code (IaC) principles with Terraform & Cloud formation templates with CI/CD framework
- Create/enhance automation scripts, CICD pipelines to implement IAM roles, policy bindings in the AWS Orgs/Account across multiple environments
- Support AWS hosted applications and infrastructure services by maintaining and enforcing IAM policies and procedures
- Work on any escalation for IAM issues within public cloud platforms (AWS)
- Identify gaps and recommend solutions to improve operational efficiencies across IAM processes and patterns
- Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regards to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so
Required Qualifications:
- B.Tech or Master’s degree or equivalent experience
- 10+ years of working experience in:
- Public Cloud Platforms (AWS) with focus on AWS Identiy Center (Identity and access management) concepts and security frameworks
- Directory services, multi-factor authentication, user provisioning, privileged Identity management, single sign-on, federation technologies and protocols such as SAML, OAuth, OIDC etc.
- Cloud IAM functionality across multiple public cloud services (IAM Roles, Permissions and Policies)
- Infrastructure and application deployment automation experience using Terraform and Jenkins to public clouds
- Solid understanding & implementation skills on Azure DevOps, GitHub Automation with CICD pipelines
- Automating system administration tasks, deployments, and other repeatable tasks
- Solid Scripting skills on AWS ACLI, AWS SDK, AWS Graph API, Python and Shell Scripting languages
- Extensive hands-on experience with Amazon Web Services including IAM, IAM Identity Center, AWS IAM Access Analyzer, AWS Firewall Manager, AWS Security Hub, Amazon Guard Duty, and CloudTrail
- Extensive experience operating a Cloud Workload Protection platform such as Palo Alto Prisma Cloud (preferred), AWS Security Hub
- Experience writing Bash and Python scripts that leverage cloud platform APIs, Applying IAM solutions for multi-account and complex organization structures (for example, SCPs, assuming roles), solid familiarity with Linux operating systems, especially using the AWS SDK & command line tools
- Experience on Terraform to design & write infrastructure-as-code
- Proven excellent problem-solving skills, ability to troubleshoot, resolve complex data-related issues, solid analytical, excellent communication and decision making skills
Preferred Qualifications:
- AWS Certified Solutions Architect – Professional exam (SAP-C02) & AWS Certified Security – Specialty (SCS-C02) Exam
- Knowledge via certifications in cloud platforms and/or cyber security AWS Certified Solutions Architect, AWS Security Specialty, CCSP, Security+
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes – an enterprise priority reflected in our mission.
#LETSGROW
Información adicional sobre la vacante
Número de la requisición 2255342
Segmento de negocio Optum
Disponibilidad para viajar No
País IN
Estado de horas extras Exempt
Vacante de teletrabajo No