We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
Remote New

Information Security Engineer - IAM

QuidelOrtho
$130,00 to $140,000
paid time off, paid holidays, sick time, 401(k)
United States
Oct 07, 2025
The Opportunity

QuidelOrtho unites the strengths of Quidel Corporation and Ortho Clinical Diagnostics, creating a world-leading in vitro diagnostics company with award-winning expertise in immunoassay and molecular testing, clinical chemistry and transfusion medicine. We are more than 6,000 strong and do business in over 130 countries, providing answers with fast, accurate and consistent testing where and when they are needed most - home to hospital, lab to clinic.

Our culture puts our team members first and prioritizes actions that support happiness, inspiration and engagement. We strive to build meaningful connections with each other as we believe that employee happiness and business success are linked. Join us in our mission to transform the power of diagnostics into a healthier future for all.

The Role

QuidelOrtho is seeking to hire an Information Security Engineer to support our Identity and Access Management team. The Information Security Engineer (T3) will serve as a senior technical leader and subject matter expert in Identity and Privileged Access Management at QuidelOrtho. This role is responsible for designing and delivering scalable, secure, and compliant solutions across our enterprise identity landscape. This individual will own architecture and implementation of IGA and PAM platforms, act as a technical escalation point, and collaborate across IT and security teams to mature access governance, policy enforcement, and automation. The T3 engineer is expected to lead by example, mentor junior team members, and drive strategic initiatives across IAM/PAM domains.

This position is remote eligible with needed flexibility on time zone coverage.

The Responsibilities

  • Architect, implement, and maintain enterprise-wide Privileged Access Management (PAM) systems including Delinea Secret Server, CyberArk, BeyondTrust, or similar.
  • Lead technical design, deployment, and enhancement of Identity Governance solutions including SailPoint IdentityNow, with a focus on lifecycle automation and policy enforcement.
  • Serve as technical lead on cross-functional projects that involve IAM integrations (e.g., ServiceNow, Azure Entra, HRIS systems).
  • Develop and refine access certification campaigns, separation of duties controls (SoD), and recertification processes aligned with audit requirements.
  • Automate routine processes using scripting (e.g., PowerShell, Python) and develop integration scripts for REST APIs and system connectors.
  • Lead troubleshooting and root cause analysis for complex authentication, SSO, and federation issues (SAML, OIDC, OAuth, FIDO2).
  • Provide technical mentorship to junior engineers and analysts and review system configurations and access design for best practices.
  • Define KPIs and reporting standards to measure PAM and IGA program effectiveness.
  • Collaborate with audit, risk, and compliance teams to ensure control frameworks meet SOX, HIPAA, and internal GRC requirements.
  • Perform other work-related duties as assigned.

The Individual

Required:

  • This position is not currently eligible for visa sponsorship.
  • Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or equivalent experience.
  • Minimum of 5+ years in cybersecurity, with 3+ years directly supporting or leading IAM and PAM programs.
  • Expert-level experience with Delinea, CyberArk, or BeyondTrust for PAM.
  • Proven experience deploying and managing SailPoint IdentityNow, including connector development, certification campaigns, and role-based access controls.
  • Deep understanding of authentication protocols and federation technologies (SAML, OAuth, OIDC, MFA).
  • Extensive experience with Active Directory, Azure AD/Entra, and hybrid identity architectures.
  • Demonstrated experience in large-scale identity transformation or access remediation programs.
  • Strong scripting skills in PowerShell (required), Python preferred.
  • Familiarity with control frameworks and compliance
  • requirements (SOX, HIPAA, NIST).Ability to travel up to 10%.

Preferred:

  • SailPoint Certified IdentityNow Engineer or equivalent vendor certifications.
  • * Working knowledge of ITSM (ServiceNow), HRIS (Workday), and ITIL-based workflows.
  • Cloud IAM (Azure, AWS) and hybrid identity governance expertise.
  • Experience in healthcare or other regulated industries.
  • Familiarity with secrets management and DevOps integrations (e.g., API access tokens, certificate rotation, vaulting tools).

The Key Working Relationships

Internal Partners:

  • Identity and Access Management
  • Information Security Architecture
  • Internal Audit and Compliance
  • IT Operations and Application Support Teams
  • HRIS and Business System Owners

External Partners:

  • IAM & PAM Platform Vendors
  • Compliance Assessors and Security Consultants
  • Implementation and Integration Partners

The Work Environment

No strenuous physical activity, though occasional light lifting of files and related materials is required. 30% of time in meetings, working with team, or talking on the phone, 70% of the time at the desk on computer, doing analytical work. Ability to work some after hours or weekend work depending on deadlines. Minimal travel required. Travel includes airplane, automobile travel and overnight hotel.

Salary Transparency

The salary range for this position takes into account a wide range of factors including education, experience, knowledge, skills, geography, and abilities of the candidate, in addition to internal equity and alignment with market data. At QuidelOrtho, it is not typical for an individual to be hired at or near the top range for their role and compensation decisions are dependent on the facts and circumstances of each case. The salary range for this position is $130,00 to $140,000 and is bonus eligible. QuidelOrtho offers a comprehensive benefits package including medical, dental, vision, life, and disability insurance, along with a 401(k) plan, employee assistance program, Employee Stock Purchase Plan, paid time off (including sick time), and paid Holidays. All benefits are non-contractual, and QuidelOrtho may amend, terminate, or enhance the benefits provided, as it deems appropriate.

Equal Opportunity

QuidelOrtho believes in Equal Opportunity for all and is committed to ensuring all individuals, including individuals with disabilities, have an opportunity to apply for those positions that they are interested in and qualify for without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. QuidelOrtho is also committed to providing reasonable accommodations to qualified individuals so that an individual can perform the duties. If you are interested in applying for an employment opportunity and require special assistance or an accommodation to apply due to a disability, please contact us at recruiting@quidelortho.com.

Applied = 0

(web-759df7d4f5-mz8pj)