Emory University logo
Emory University
Posted 66 days agoVerified live 7h ago

Federated Security Engineer - OIT

Brief overview

Remote
Cap-exemptNo H-1B lottery
843 H-1B approvalsDept. of Labor
13 green cardsCertified filings
Identity and Access Management (IAM)CybersecuritySingle Sign-On (SSO)Entra IDShibboleth IDPServiceNowConfiguration Management Database (CMDB)SAMLOIDCOAuth2CASSCIMOktaPing IdentityNetIQSaviyntITIL processes

Visa sponsorship history

4 years sponsoring, last filed FY2026Cap-exempt

Data powered by U.S. Department of Labor. This does not guarantee sponsorship for this specific role.
843H-1B approved
99%approval rate
414new H-1B hires
13PERM certified
$71,000median wage / yr
H-1B Petition ApprovalsVisas USCIS actually granted: the strongest sign the company sponsors.
2023251
2024268
2025289
202635
LCA Certified ApplicationsAn early filing step, not a visa approval: it signals intent, not confirmed sponsorship.
202360
202453
202548
202639
Green Card (PERM) FilingsCertified green card filings: a long-term commitment to international hires.
20231
20242
20257
20263
Top sponsored roles
Postdoctoral FellowAssistant ProfessorAssistant Academic Research ScientistAssociate Academic Research Scientist
Sponsored employees from
BangladeshArgentinaBrazil

Job description

Summary

Emory University is a leading research university that fosters excellence and attracts world-class talent to innovate today and prepare leaders for the future. The Federated Security Engineer role focuses on managing and optimizing the central secure application access ecosystem, with responsibilities including application onboarding, integration, and compliance support.

Responsibilities

  • Collaborates with the Cybersecurity and IAM teams to ensure secure onboarding and offboarding of applications into the SSO environment
  • Designs or consults on the application integration approach to enable secure access/SSO
  • Validates and maintains application integration configurations to meet cybersecurity and compliance requirements
  • Assists in developing and ensuring alignment of implementations or changes with access control policies and security standards
  • Supports audits and compliance reviews related to IAM and application integrations by facilitating responses via the proper SMEs
  • Maintains the CI's that relate to federated applications in the Configuration Management Database (CMDB), ensuring application records are accurate, complete, and current
  • Manages the application catalog to ensure all integrated applications are tracked with appropriate metadata (e.g., owners, contacts, technical details, integration type)
  • Leverages ServiceNow to manage requests, incidents, and changes related to application integrations and IAM processes
  • Coordinates application onboarding and offboarding processes, including requirement gathering, integration configuration, testing, and documentation
  • Works with application owners to ensure smooth transitions during onboarding/offboarding
  • Maintains end-to-end lifecycle documentation for each application in scope
  • Creates and maintains detailed documentation for application integrations, onboarding/offboarding procedures, and CMDB updates
  • Gathers and analyzes enhancement requests from stakeholders, prioritizes them, and coordinates with technical teams for implementation
  • Identifies opportunities to streamline IAM-related processes and improve integration workflows
  • Assists in engineering modern applications that support the SSO integration intake process and application inventory
  • Troubleshoots, develops, and supports in multiple IDPs including Entra ID and Shibboleth IDP
  • Serves as On-Call rotation for IDP support as needed
  • Performs other related duties as required

Skills

  • A bachelor's degree in a scientific or math field and three years of related experience, OR an equivalent combination of education, training, and experience
  • Hands-on programming experience and/or non-trivial scripting in a robust programming language, including the ability to write clean, maintainable code to solve practical problems
  • Hands-on experience with ServiceNow, particularly CMDB and catalog management
  • Understanding of SSO technologies (e.g., SAML, OIDC, OAuth2, CAS, SCIM) and application integration principles
  • Familiarity with provisioning/deprovisioning workflows in IAM platforms (Okta, Entra ID, Ping Identity, NetIQ, Saviynt, etc.)
  • Experience with ITIL processes and change management in ServiceNow
  • Experience with application security best practices and compliance frameworks (e.g., NIST, ISO 27001)
  • RDBMs experience including proficiency in SQL and/or PLSQL
  • Experience with low-code development platforms such as Power Platform
  • Knowledge of data governance and asset management practices
  • Familiarity with Role-Based Access Control (RBAC) models
  • Understanding of authentication concepts, including Multi-Factor Authentication (MFA), SSO, and Kerberos

Qualifications

Must Haves

  • A bachelor's degree in a scientific or math field and three years of related experience, OR an equivalent combination of education, training, and experience
  • Hands-on programming experience and/or non-trivial scripting in a robust programming language, including the ability to write clean, maintainable code to solve practical problems

Nice to Haves

  • Hands-on experience with ServiceNow, particularly CMDB and catalog management
  • Understanding of SSO technologies (e.g., SAML, OIDC, OAuth2, CAS, SCIM) and application integration principles
  • Familiarity with provisioning/deprovisioning workflows in IAM platforms (Okta, Entra ID, Ping Identity, NetIQ, Saviynt, etc.)
  • Experience with ITIL processes and change management in ServiceNow
  • Experience with application security best practices and compliance frameworks (e.g., NIST, ISO 27001)
  • RDBMs experience including proficiency in SQL and/or PLSQL
  • Experience with low-code development platforms such as Power Platform
  • Knowledge of data governance and asset management practices
  • Familiarity with Role-Based Access Control (RBAC) models
  • Understanding of authentication concepts, including Multi-Factor Authentication (MFA), SSO, and Kerberos

Benefits

  • Full Remote – Monthly
  • Occasional visits to an Emory University location may apply (Eastern (EST) time zone business hours may apply)

More jobs like this