About this opportunity
Capital Rx lists this IT Engineer II - IAM opportunity in denver, Colorado. Review the employer’s description below for duties, qualifications and application requirements.
Job description
About Judi Health
Judi Health is a health technology company providing benefit administration solutions to employers, unions, health plans, and government entities. Judi Health replaces fragmented, outdated systems with the industry's first Unified Claims Processing architecture, seamlessly consolidating pharmacy and medical benefit administration on a single, secure platform. By delivering true price transparency, eliminating unnecessary middleman fees, and leveraging advanced AI-powered care delivery, Judi Health helps clients achieve unprecedented operational efficiency and service levels.
At Judi Health, we're deploying the infrastructure our country needs to deliver the healthcare we all deserve. We are the intelligence platform powering benefits plans for millions of Americans and proudly leading the next generation of care. To learn more, visit
Location : Hybrid3 days a week in-office(NYC, Denver, CO or Charlotte, NC)
Position Summary
The IT Engineer II is a mid-level technical contributor responsible for independently delivering complex IT solutions and leading medium-scale initiatives that improve reliability, security, and user experience. This role serves as a key escalation point for IT Engineer I staff, drives cross-functional projects, and applies advanced technicalexpertiseacross identity and access management, endpoint management, SaaS platforms, and cloud-integrated systems.
The IT Engineer II is expected to influence standards, mentor junior engineers, and proactivelyidentifyopportunities for automation, access governance, and process improvement. This role serves as a subject matter expert for identity lifecycle management, role-based access controls, and Okta platform administration.
Position Responsibilities:
Serve as a senior escalation point for complex or high-impact end-user and systems issues beyond Helpdesk and IT Engineer I scope
Lead and deliver medium-to-large IT projects involving identity management, endpoint management, security controls, and SaaS platforms
Design, implement, andmaintainscalable onboarding, offboarding, and identity lifecycle management processes
Administer and enhance Okta Identity Cloud, including authentication, authorization, application integrations, and access policies
Design andmaintainrole-based access control (RBAC) frameworks to ensureappropriate accessgovernance and least-privilege security models
Develop andmaintainOkta Workflows to automate provisioning, deprovisioning, approval processes, and operational tasks
Configure and support Okta Identity Governance processes, including access requests, certifications, entitlement reviews, and lifecycle governance controls
Partner with Security, Compliance, Engineering, and Business stakeholders to implement access governance and security best practices
Evaluate, test, and deploy new software solutions, acting as the technical owner throughout rollout and adoption
Develop andmaintaintechnical documentation, runbooks, knowledge articles, and access governance procedures
Identifyrecurring operational issues and implement systemic and automated solutions to improve efficiency and reduce risk
Mentor IT Engineer I team members andprovidetechnical guidance across identity and access management disciplines
Contribute scripts and automation using Bash, PowerShell, Python, or similar languages
Participate in on-call or off-hours support rotations asrequired
Required Qualifications:
4-6+ years of experience in IT engineering, systems administration, identity and access management, or equivalent roles
Proven ability to independently resolve complex technical issues and deliver end-to-end solutions
Advanced experience administering and supportingOkta Identity Cloud
Hands-on experience designing and implementingrole-based access control (RBAC) models and access governance processes
Experience developing andmaintainingOkta Workflows for identity automation and lifecycle management
Experience implementing and administeringOkta Identity Governance , including access requests, certifications, entitlement management, and lifecycle governance
Strong experience managing:
Identity and access management platforms
User provisioning and deprovisioning processes
Endpoint management and device lifecycle operations
SaaS application deployment and governance
Demonstrated experience leading medium-scale IT projects involving multiple systems or business stakeholders
Ability to partner effectively with Security, Engineering, Compliance, and Business teams
Proficiencyadministering Office 365 and supporting macOS in a remote-first environment
Experience deploying, evaluating, and operationalizing new software solutions
Working knowledge of at least one major cloud platform (AWS, Azure, or Google Cloud preferred)
Strong scripting and automation skills using Bash, PowerShell, Python, or similar languages
Experience mentoring junior engineers orprovidingtechnical guidance to peers
Comfortable participating in on-call or off-hours support rotations
Preferred Qualifications:
Okta Certified Professional, Administrator, or Identity Governance certifications
Experience with SCIM provisioning, SAML, OIDC, OAuth, and modern identity standards
Experience performing access reviews, audit support, and compliance-focused identity governance activities
Experience integrating identity platforms with HRIS, MDM, ticketing, and security systems
Experience supporting healthcare, financial services, or other regulated environments
New York, NY Salary Range
$92,000—$115,000 USD
Denver, CO Salary Range
$84,400—$105,500 USD
Charlotte, NC Salary Range
$76,800—$96,000 USD
All employees are responsible for adherence to the Judi Health Code of Conduct including the reporting of non-compliance. This position description is designed to be flexible, allowing management the opportunity to assign or reassign duties and responsibilities as needed to best meet organizational goals.
We provide equal employment opportunities to all employees and applicants for employment and prohibit discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, medical condition, genetic information, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
By submitting an application, you agree to the retention of your personal data for consideration for a future position at Judi Health. More details about Judi Health's privacy practices can be found at
Who can apply
Review the original listing for work authorization, qualifications and employer requirements.