Tempus AI Logo

Tempus AI

Associate IAM Engineer

Posted 4 Days Ago
Be an Early Applicant
Hybrid
Chicago, IL, USA
70K-95K Annually
Junior
Hybrid
Chicago, IL, USA
70K-95K Annually
Junior
Configure and support SSO integrations (SAML/OIDC), troubleshoot authentication/MFA and provisioning issues, maintain automated lifecycle provisioning across HRIS/AD/apps, assist with Okta Device Assurance and endpoint posture, and support identity governance/compliance using Okta tools.
The summary above was generated by AI

Passionate about precision medicine and advancing the healthcare industry?

Recent advancements in underlying technology have finally made it possible for AI to impact clinical care in a meaningful way. Tempus' proprietary platform connects an entire ecosystem of real-world evidence to deliver real-time, actionable insights to physicians, providing critical information about the right treatments for the right patients, at the right time.

As an Associate IAM Engineer, you will be the frontline defender and administrator of our identity perimeter. You will focus on day-to-day identity operations, single sign-on (SSO) integrations, device assurance, and troubleshooting authentication issues. This role is perfect for someone with a strong foundational understanding of identity protocols (SAML, OIDC) who wants to grow their hands-on skills in enterprise automation, identity governance, and cloud identity management using Okta.

Key Responsibilities

  • SSO & App Integration: Configure, test, and deploy standard SAML 2.0 and OIDC/OAuth 2.0 integrations for onboarding new SaaS applications.

  • Operational Support & Troubleshooting: Serve as the Tier 2/3 point of contact for identity-related tickets. Deep-dive into system logs and protocol traces to resolve authentication, MFA, and provisioning failures.

  • Lifecycle Management (LCM): Monitor and maintain automated user provisioning (Joiner/Mover/Leaver processes) across HRIS, Active Directory, and downstream applications. Help triage Okta Workflow errors.

  • Device Assurance & Endpoint Security: Assist in configuring and monitoring Okta Device Assurance policies to ensure only secure, compliant devices can access corporate resources.

  • Identity Governance & Compliance: Support user access reviews and regular entitlement certifications using Okta Identity Governance (OIG) to ensure alignment with SOC2, ISO 27001, and SOX frameworks.

Technical Qualifications

  • Experience: 1–3 years of experience in an IT, Security, or Systems Administration role, with at least 1 year of dedicated hands-on exposure to Okta administration.

  • Protocol Fundamentals: A solid conceptual understanding of the "Identity Trinity":

    • SAML 2.0: Understanding assertions, entity IDs, and ACS URLs.

    • OpenID Connect: Basic understanding of tokens (ID, Access, Refresh), scopes, and authorization flows.

    • SCIM: Familiarity with how automated provisioning works.

  • Directory Services: Comfortable navigating and managing Universal Directory (managing users, groups, and basic OU structures).

  • RESTful APIs: Foundational understanding of REST API concepts (HTTP methods like GET, POST, PUT, DELETE, and status codes) and comfort using OKTA Workflows.

  • Security Mindset: Understanding of basic security principles like Multi-Factor Authentication (MFA), Least Privilege, and Zero Trust.

Soft Skills

  • The "Log Detective": You enjoy digging into event logs and browser developer tools (SAML tracers) to find out exactly why a login failed.

  • Clear Communicator: Ability to guide non-technical employees (or partners in HR) through password resets, MFA setups, or access requests with patience and clarity.

  • Hungry to Learn: The identity space moves fast. You are excited to learn advanced tools like Okta Workflows, Terraform, or API management on the job.

Bonus Points

  • Okta Device Assurance: Prior exposure to configuring Okta Device Assurance policies and a basic understanding of how they interface with MDM tools (e.g., Jamf, Intune) to check device posture.

  • Identity Governance (IGA): Hands-on exposure to Okta Identity Governance (OIG) for managing access requests, approvals, and access certification campaigns.

  • Okta Workflows & Automation: Foundational knowledge or exposure to Okta Workflows (or similar low-code automation platforms) used to orchestrate lifecycle management.

  • Certifications: Okta Certified Professional or Okta Certified Administrator.

#LI-Hybrid

#LI-HR1

CHI - $70,000 - $95,000

The expected salary range above is applicable if the role is performed from Illinois and may vary for other locations (California, Colorado, New York). Actual salary may vary based on qualifications and experience. Tempus offers a full range of benefits, which may include incentive compensation, restricted stock units, medical and other benefits depending on the position.

We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. 

HQ

Tempus AI Chicago, Illinois, USA Office

Tempus AI Chicago - Tempus Headquarters & Lab Office

Our Chicago office is located in downtown River North. Right on the river and close to neighborhoods like Fulton Market, Central Business District, Lincoln Park, and Streeterville, it's a lively area with convenient transportation access and is home to many bars, restaurants, and coffee shops.

Similar Jobs at Tempus AI

12 Hours Ago
Remote or Hybrid
3 Locations
200K-250K Annually
Expert/Leader
200K-250K Annually
Expert/Leader
Artificial Intelligence • Big Data • Healthtech • Machine Learning • Analytics • Biotech • Generative AI
The Area Vice President leads a regional team in the Life Sciences division, developing strategic sales plans, achieving revenue targets, and fostering client relationships within the biotech sector.
Top Skills: MS OfficeSalesforce
12 Hours Ago
Remote or Hybrid
3 Locations
185K-225K Annually
Senior level
185K-225K Annually
Senior level
Artificial Intelligence • Big Data • Healthtech • Machine Learning • Analytics • Biotech • Generative AI
The Area Director leads strategic sales and team development for precision medicine solutions, managing key accounts and ensuring clinical integration and physician engagement.
Top Skills: Ehr IntegrationGenomic TechnologiesPrecision Medicine
12 Hours Ago
Remote or Hybrid
USA
90K-130K Annually
Senior level
90K-130K Annually
Senior level
Artificial Intelligence • Big Data • Healthtech • Machine Learning • Analytics • Biotech • Generative AI
The Senior Data Modeler I collaborates with teams to develop clinical data models, ensuring data integration and quality while maintaining knowledge bases for clinical concepts and monitoring performance.
Top Skills: DbtIcd-10Icd-9LoincPythonRRxnormSnomed Ct

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account