Optum is a global leader in health care innovation, aiming to develop solutions that enhance health systems. The Senior Software Engineer will contribute to the design and implementation of scalable identity platform solutions, ensuring compliance with security standards and healthcare regulations.
Responsibilities:
- Contribute to system design and implement approved architecture and design patterns to ensure scalable and efficient Identity Platform solutions
- Work closely with architects and senior stakeholders to implement identity solutions across multiple platforms and ecosystems
- Ensure all solutions comply with enterprise IT principles, security standards, and healthcare regulations (HIPAA, TEFCA, CMS Interoperability)
- Participate in intake discussions, solution design, and support estimation activities for identity platform enhancements
- Assist in designing and implementing application-level and integration architectures for identity services
- Collaborate with solution engineering, development teams, partners, and vendors to maintain a coherent and consistent approach to design, implementation, and integration
- Provide hands-on technical guidance, including reference implementations, reusable design patterns, and best-practice guidelines
- Integrate AI and ML capabilities into identity workflows for adaptive authentication, fraud detection, and risk-based access control
- Design and implement AI-driven security analytics to detect anomalies, predict threats, and automate incident response in large-scale environments
- Develop machine learning models for identity proofing, behavioral risk scoring, and continuous authentication
- Architect data-driven security monitoring systems leveraging AI for real-time threat hunting, predictive analytics, and automated remediation
- Research and adopt proactive AI-based security strategies, such as anomaly detection, threat modeling, and autonomous policy enforcement
- Enable Agentic Identity frameworks, allowing AI agents to act under controlled, auditable delegated identities for secure automation
- Incorporate conversational AI and NLU into identity platforms for guided user experiences, troubleshooting, and self-service authentication flows
- Adhere to established AI governance, security, and compliance standards
Requirements:
- 8+ years of hands-on technical experience in implementing secure enterprise applications using cloud technologies
- 6+ years of experience with Identity federation, Single Sign-On, RBAC, ABAC, MFA, RBA
- 5+ years of relevant experience in Identity & Access Management and Information and application Security
- 5+ years of experience with identity protocols (OAuth2, OIDC, SAML)
- Hands-on experience with threat modeling, vulnerability remediation, and infrastructure/application security
- Hands-on working experience with SailPoint, ForgeRock, Ping, Okta, OneLogin, Azure AD or similar IAM products
- Knowledge of security data platforms (Splunk, ELK) for monitoring, troubleshooting and security analysis
- Hands-on experience with security management of virtual machines, containers, and applications
- Knowledge of SANS Top 20 Critical Security Controls and OWASP Top 10 vulnerabilities
- Working knowledge of Scripting languages (Python and PowerShell)
- Solid working knowledge of Web Application Firewalls, HTTP(s), TCP/UDP, SSL/TLS, Forward and reverse proxies, Load balancers
- Solid understanding and development experience on Java, SpringBoot, RESTful Web Services and Microservices
- Good understanding of the web application architectures, TCP/IP networking, cloud computing and data integrity and confidentiality including cryptographic techniques
- Familiarity with ML frameworks (TensorFlow, PyTorch) and AI services (Azure AI, AWS SageMaker)
- Exposure to Site Reliability Engineering concepts and production support practices
- Interest or exposure to advanced identity risk and anomaly detection concepts
- Proven solid communication skills and presentation skills, mentoring skills, problem solving and analytical skills