Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
MTA - Lead IAM Engineer image - Rise Careers
Job details

MTA - Lead IAM Engineer

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve – we care.

What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow’s health today, we want to hear from you.

Job Description:

The Lead Information Security Analyst will provide subject matter expertise and lead the analysis, design, and implementation for hybrid on-prem and cloud Active Directory environments and Azure Active Directory/Entra ID tenants. This role includes leading the engagement and collaboration with business and technical partners to integrate systems and applications with centralized authentication such as Active Directory or Azure Active Directory/Entra ID.

Responsibilities:

  • Provide subject matter expertise and lead the analysis, design, and implementation for hybrid on-prem and cloud Active Directory environments and Azure Active Directory/Entra ID tenants.
  • Lead the engagement and collaboration with business and technical partners to integrate systems and applications with centralized authentication such as Active Directory or Azure Active Directory/Entra ID.
  • Provide subject matter knowledge and expertise on Active Directory, Azure Active Directory/Entra ID, and Okta Active Directory synchronization.
  • Lead new product comparison, vetting, and selection process to ensure technology is relevant and meets business requirements.
  • Lead Active Directory and Entra ID disaster recovery drills.
  • Continually enhance authentication platforms, ensuring systems are protected from new and evolving Cyber threats and systems are operationally stable.
  • Collaborate closely with global cross-functional teams to ensure the stability, scalability, and security of the Active Directory and Azure Active Directory/Entra ID environments and Okta. Lead discussions on all aspects of identity and access management.
  • Lead response and resolution of complex, high-severity incidents.
  • Lead regular reviews of deployed infrastructure, develop detailed architecture, and create and update new technical documentation and Standard Operating Procedures (SOP).
  • Analyze the current authentication services platforms to identify both technical and operational opportunities for enhancements and develop continuous improvement action plans.
  • -Lead regular assessment of systems and process hygiene and identify and implement automation.
  • Actively seek to research innovations in IT security as well as IAM technologies and services, striving to ensure McKesson continues to deliver best practices and standards.
  • Provide on-call support as needed for operational continuity of Identity platforms.

Minimum Requirements:

  • Proven experience as a Lead Active Directory/Entra ID Engineer or similar role with a minimum of 10 years of experience.
  • Proven ability to effectively prioritize and execute tasks with competing priorities; strong influencing skills to work with various service owners.
  • Demonstrated experience effectively leading and managing collaborative, service management solutions across disparate functional teams.

Critical Skills:

  • Expert-level understanding of Active Directory, Azure Active Directory/Entra ID, Lightweight Directory Access Protocol, Active Directory Federation Services, and other centralized identity stores.
  • Expert-level understanding of Microsoft Azure and familiarity with IAM permissions on Management Groups, subscriptions, and resources.
  • Provide expert knowledge of Azure Active Directory/Entra ID capabilities such as Conditional Access Policies, Privileged Identity Manager, and Application Registrations.
  • Expert-level understanding of Active Directory attributes, LDAP Queries, PowerShell Scripting, Active Directory Federation Services (ADFS), Group Policy Object (GPO) analysis, configuration, and item-level targeting, active directory replication, Active Directory backup and restore, as well as certificate installation.
  • Expert-level understanding of implementing security on Active Directory and Entra ID and hardening those platforms.
  • Expert-level understanding of Active Directory and Entra ID backup and restore processes and experience of performing Disaster Recovery exercises.
  • Expert-level understanding of Windows Server operating systems and Active Directory/Azure Active Directory/Entra ID services.
  • Expert-level understanding of PowerShell scripting with proven experience implementing automation, including experience utilizing APIs such as Microsoft Graph.
  • Expert-level understanding of Single-Sign On and authentication protocols such as SAML & OIDC.
  • Expert knowledge of security best practices for Active Directory and Azure Active Directory/Entra ID.
  • Expert knowledge with directory synchronization tools, such as Azure Active Directory/Entra ID Connect and Okta Active Directory integration.
  • Excellent problem-solving skills and ability to work well under pressure.
  • High-energy, detail-oriented, proactive, and able to handle multiple high-priority demands while driving consistent results.
  • Self-Starter that requires minimal supervision, multi-tasks effectively, and can provide oversight and coaching to others for any assigned projects or tasks.
  • Strong communication and collaboration skills to work effectively with cross-functional teams.

Additional Skills:

  • Actively seeks to research innovations in IT security as well as IAM technologies and services, striving to ensure McKesson continues to deliver best practices and standards.
  • Provide on-call support as needed for operational continuity of Identity platforms.

Education:

Degree or equivalent and typically requires 10+ years of relevant experience. Less years required if has relevant Master’s or Doctorate qualifications

We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please  click here.

Our Base Pay Range for this position

$132,400 - $220,600

McKesson is an Equal Opportunity Employer

 

McKesson provides equal employment opportunities to applicants and employees and is committed to a diverse and inclusive environment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age or genetic information. For additional information on McKesson’s full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page.

 

Join us at McKesson!

McKesson Glassdoor Company Review
3.7 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
McKesson DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of McKesson
McKesson CEO photo
Brian Tyler
Approve of CEO

Average salary estimate

$176500 / YEARLY (est.)
min
max
$132400K
$220600K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About MTA - Lead IAM Engineer, McKesson

At McKesson, we are more than just a Fortune 10 company; we’re a team dedicated to the health and well-being of patients and communities. We’re excited to announce an opportunity for a MTA - Lead IAM Engineer to join our vibrant team in Aurora, IL. In this role, you’ll harness your expertise in Active Directory and Azure Active Directory/Entra ID to spearhead projects that enhance our identity and access management systems. Your primary mission will be to lead the analysis, design, and implementation for both hybrid on-prem and cloud environments while collaborating closely with various business and technical teams. You’ll play a pivotal role in evolving our security strategies, ensuring our authentication platforms are safeguarded against emerging cyber threats. If you’re experienced with systems integrations and bring a problem-solving mindset, then you’ll fit right in. You’ll also conduct regular assessments and enhancements of our systems, and, as the subject matter expert, you’ll guide a team in disaster recovery efforts and automate processes wherever possible. Your contributions will be instrumental in shaping how we manage identity and access across our organization, creating a secure and scalable environment. At McKesson, you’re empowered to grow and innovate, and your work truly matters – come help us shape the future of healthcare together!

Frequently Asked Questions (FAQs) for MTA - Lead IAM Engineer Role at McKesson
What are the primary responsibilities of a Lead IAM Engineer at McKesson?

As a Lead IAM Engineer at McKesson, you will be responsible for analyzing, designing, and implementing identity and access management services specifically focused on Active Directory and Azure Active Directory/Entra ID environments. You’ll collaborate with business and technical partners to facilitate seamless system integrations and maintain operational stability amidst evolving security threats. Leading disaster recovery drills and providing expert knowledge on best practices in IAM will also be vital to your role.

Join Rise to see the full answer
What qualifications are needed for the Lead IAM Engineer role at McKesson?

To qualify for the Lead IAM Engineer position at McKesson, candidates should have a minimum of 10 years of experience in information security, especially with Active Directory and Azure Active Directory/Entra ID. Excellence in problem-solving, project management, and strong communication skills are essential. Advanced knowledge in IAM technologies, Windows Server operating systems, and PowerShell scripting will set you apart.

Join Rise to see the full answer
How does McKesson support the professional growth of its Lead IAM Engineers?

At McKesson, we deeply value the growth of our employees. As a Lead IAM Engineer, you will be encouraged to pursue continuous learning opportunities such as certifications in IAM technologies, attend relevant conferences, and participate in cross-functional team projects. Our culture promotes innovation and the exploration of new ideas, ensuring that you have the resources to evolve your professional skills.

Join Rise to see the full answer
What types of technologies and platforms will I work with as a Lead IAM Engineer at McKesson?

In the role of Lead IAM Engineer at McKesson, you will work extensively with Active Directory, Azure Active Directory/Entra ID, and associated technologies like Okta for identity synchronization. Your expertise in security best practices and protocols, such as SAML and OIDC, will be essential as you help us fortify our authentication platforms.

Join Rise to see the full answer
What are the biggest challenges faced by a Lead IAM Engineer at McKesson?

The challenges for a Lead IAM Engineer at McKesson include managing complex integrations across multiple systems, addressing emerging cyber threats, and ensuring seamless recovery during incidents of high severity. Balancing competing priorities while leading cross-functional collaborations and driving the security initiatives can also be demanding, but it’s all part of contributing to a vital healthcare mission.

Join Rise to see the full answer
Common Interview Questions for MTA - Lead IAM Engineer
Can you describe your experience with Active Directory and Azure AD technologies?

Talk about your hands-on experience managing Active Directory environments, detailing specific tasks like user provisioning and deployment. Highlight your familiarity with Azure AD features and how they enhance user authentication, focusing on tangible outcomes from your past projects.

Join Rise to see the full answer
How do you prioritize tasks when managing multiple identity solutions?

Explain your approach to prioritization, perhaps mentioning tools or methods such as Agile methodologies or project management software. Discuss how you assess importance and urgency, and share a specific example where you successfully juggled competing projects.

Join Rise to see the full answer
What steps do you take to ensure security within identity and access management?

Outline the best practices you adhere to for securing identity environments, including regular audits, implementing Conditional Access Policies, and maintaining compliance with security frameworks. Offer examples of how you've defended against or responded to threats in your previous roles.

Join Rise to see the full answer
How have you led disaster recovery exercises in your previous experience?

Share your direct involvement in planning and executing disaster recovery drills, including the objectives of the exercise and what technology stacks were involved. Highlight the importance of these exercises in maintaining operational continuity, referencing any successes or learnings.

Join Rise to see the full answer
Can you provide an example of a complex problem you solved in an IAM setting?

Describe a significant challenge you faced, such as a security breach or system integration issue. Detail the steps you took to diagnose the problem, the solutions you implemented, and the lessons learned thereafter.

Join Rise to see the full answer
What tools and technologies do you rely on for automating IAM processes?

Discuss any IAM tools or scripting languages you use, such as PowerShell or APIs like Microsoft Graph, emphasizing how these tools help streamline processes—giving specific examples of automated tasks you've successfully implemented.

Join Rise to see the full answer
How do you stay updated with the latest IAM technologies and security threats?

Talk about the resources you utilize for staying informed, such as industry blogs, webinars, or professional networks. Share your engagement in continuous learning and how you apply that knowledge to enhance your IAM strategies.

Join Rise to see the full answer
Describe your experience working with cross-functional teams.

Provide examples of projects where you collaborated across different teams, focusing on your role as a liaison and how you facilitated communication and understanding between technical and non-technical members.

Join Rise to see the full answer
What is your approach to evaluating and selecting new IAM products?

Explain your criteria when assessing new IAM products, such as performance metrics, security features, and scalability. Mention an instance where you led a product selection process and the impact it had on your organization.

Join Rise to see the full answer
How do you handle high-severity incidents related to identity and access management?

Walk through your incident response process, highlighting how you gather information, manage stakeholders, and develop action plans. Providing an example of a past incident can further illustrate your capability in managing crises.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 4 days ago

Join Sarah Cannon Research Institute as a Study Lead Coordinator to support innovative oncology research while working remotely.

Photo of the Rise User
Posted 4 days ago

Join Sarah Cannon Research Institute as an Administrative Assistant, where you'll play a vital role in supporting groundbreaking cancer research initiatives.

Photo of the Rise User

DeepSource Technologies is looking for a Senior Consultant to lead the charge in strengthening network security and resilience for clients.

Join Tri-State as a Voice and Data Engineer, where you'll enhance network reliability and security using state-of-the-art technologies.

Photo of the Rise User

The Principal Site Reliability Engineer at Bright Horizons will ensure the reliable operation of our digital infrastructure while fostering a culture of innovation and collaboration.

Photo of the Rise User
Posted 9 days ago

Join Agile Defense as a System Administrator III and play a crucial role in enhancing IT operations for key national missions.

Posted 11 days ago

As a ServiceNow Integration Developer, you'll leverage your tech expertise to create seamless integrations and enhance system performance.

Photo of the Rise User
Posted 9 days ago

Saviynt seeks an experienced Director of Information Security to advance their FedRAMP compliance strategies in a dynamic, remote environment.

Join Bank of America as an Application Security Product Manager to integrate security in software development and enhance application protection against emerging threats.

Together with our customers and partners, we are creating a sustainable future for health care. And working to improve patient care in every setting — one product, one partner, one patient at a time.

117 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
April 15, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
S
Someone from OH, Ottoville just viewed Full Stack Developer at Sunreef Yachts
Photo of the Rise User
Someone from OH, Ottoville just viewed Senior Developer at NRF
P
Someone from OH, Ottoville just viewed Principal Software Developer - TS/SCI at Parsons
F
Someone from OH, Ottoville just viewed Software Developer at Fil
Photo of the Rise User
Someone from OH, Ottoville just viewed Senior Backend Developer - Big Data at LiveRamp
Photo of the Rise User
Someone from OH, Ottoville just viewed Software Developer - Product Analytics (Python) at Autodesk
Photo of the Rise User
Someone from OH, Ottoville just viewed Software Application Developer at Boeing
Photo of the Rise User
Someone from OH, Ottoville just viewed Senior FullStack Developer at CVS Health
Photo of the Rise User
Someone from OH, Ottoville just viewed Senior Software Developer at Cinemark
T
Someone from OH, Ottoville just viewed Full Stack Developer at Talent Worx
B
Someone from OH, Ottoville just viewed Digital Designer/Front-End Developer at Blackbridge
M
Someone from OH, Ottoville just viewed Full Stack Developer (React/NodeJS) at MySigrid
b
Someone from OH, Ottoville just viewed .Net Developer, ReactJS at bbinsurance
D
Someone from OH, Ottoville just viewed Full Stack Developer (Automation), AVP at DB
Photo of the Rise User
Someone from OH, Ottoville just viewed Fullstack / PHP Backend Developer at Dentsu
A
Someone from OH, Ottoville just viewed FullStack Automation Developer at Abra
Photo of the Rise User
Someone from OH, Ottoville just viewed Senior Backend Developer at Sourcescrub
Photo of the Rise User
Someone from OH, Ottoville just viewed Sr Software Developer II (R&D) at B. Braun
Photo of the Rise User
Someone from OH, Ottoville just viewed Appian Software Developer at Qualysoft
Photo of the Rise User
Someone from OH, Ottoville just viewed Senior API Developer at Midland States Bank
Photo of the Rise User
Someone from OH, Ottoville just viewed 929 | Middle+ Backend Developer at Intetics
Photo of the Rise User
Someone from OH, Ottoville just viewed It Software Developer at Eurofins
Photo of the Rise User
Someone from OH, Ottoville just viewed Senior Fullstack Developer (S) at Blue Coding
Photo of the Rise User
71 people applied to SOC Analyst I at Epsilon
Photo of the Rise User
10 people applied to Security Analyst at Maximus
Photo of the Rise User
75 people applied to Security Analyst Jr at DEUNA