We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

User Security & Access Analyst - Hybrid - 140760

UC San Diego
Unclassified - No data available
United States, California, San Diego
Sep 17, 2026

UCSD Layoff from Career Appointment: Apply by 09/18/26 for consideration with preference for rehire. All layoff applicants should contact their Employment Advisor.

Reassignment Applicants: Eligible Reassignment clients should contact their Disability Counselor for assistance.

This position has recently been accreted by UPTE TX and will be a part of that union moving forward.

This position will work a hybrid schedule which includes a combination of working both onsite at Towne Centre Drive (San Diego, CA) and remote.

DESCRIPTION

The User Security & Access Analyst III is an experienced technical professional responsible for independently performing complex identity, access management, Epic security, and security administration activities.

This position serves as a subject matter resource within assigned provisioning and security domains, manages complex access and security requests, and partners with application and operational teams to resolve issues while ensuring organizational security standards, policies, and procedures are followed.

Primary Responsibilities:

  • Independently manage complex user access, provisioning, security, and account-related requests.
  • Perform advanced Epic security administration, including analysis and maintenance of user access, roles, templates, and security configurations.
  • Maintain and support SailPoint, Okta, Microsoft Entra ID (Azure AD), Active Directory, and related identity management integrations.
  • Administer user access, role-based security, and provisioning processes while resolving access-related issues and supporting compliance requirements
  • Evaluate access requests to ensure appropriate access is provided based on business and job requirements.
  • Troubleshoot complex access and security issues across multiple applications and systems.
  • Apply established security policies, procedures, and standards when making access decisions.
  • Identify inappropriate, excessive, duplicate, or conflicting access and recommend remediation.
  • Collaborate with managers, application analysts, system owners, HR, IT, and operational teams to resolve access issues.
  • Participate as a security subject matter expert on projects and system implementations.
  • Support audits by gathering evidence, reviewing access, researching discrepancies, and assisting with remediation.
  • Identify opportunities to improve existing processes, documentation, and workflows.
  • Assist in the development, implementation, and continuous improvement of procedures, standards, documentation, and technical training programs.
  • Assist with standardization and automation efforts within the analyst's area of responsibility.
  • Provide technical guidance and knowledge sharing to team members as needed.
  • Escalate high-risk, unprecedented, policy-related, or organizational-level decisions to appropriate leadership.
  • 7/24 On Call for User Security and Access Team rotation

Decision Making & Independence

Works independently within established policies, procedures, security standards, and governance requirements. Exercises professional judgment when resolving complex access and security issues and recognizes when matters require broader technical review or leadership involvement.

Technical Knowledge

Working knowledge of:

  • Identity and Access Management (IAM)
  • Epic security and provisioning
  • SailPoint, Okta, Microsoft Entra ID (Azure AD), and Epic Security
  • Role-Based Access Control (RBAC)
  • User lifecycle and account provisioning
  • Access governance principles
  • Security controls and least privilege
  • Audit and compliance requirements
  • Access troubleshooting and remediation

Typical Level of Work

The Level 3 Analyst is expected to independently manage complex operational work and contribute subject matter expertise to projects and process improvements. The position may assist other analysts but is not considered a senior or supervisory position.

MINIMUM QUALIFICATIONS
  • Seven (7) years of related experience, education/training, OR a Bachelor's degree in related area plus three (3) years of related experience/training.

  • Basic skill at reading and interpreting security logs.

  • Ability to follow department processes and procedures.

  • Interpersonal skills sufficient to work effectively with both technical and non-technical personnel at various levels in the organization.

  • Experience using IT security systems and tools. Knowledge of data encryption techniques.

  • Experience analyzing logs for security breaches.

  • Knowledge of other areas of IT, department processes and procedures.

  • Demonstrated skills applying security controls to computer software and hardware.

  • Experience in incident response and digital forensics including data collection, examination and analysis.

  • Demonstrated skill at administering complex security controls and configurations to computer hardware, software and networks.

  • Knowledge of computer hardware, software and network security issues and approaches.

  • Demonstrated experience selecting and applying appropriate data encryption technologies.

PREFERRED QUALIFICATIONS
  • 4-6 years of progressively responsible experience in Identity and Access Management (IAM), Epic security, enterprise application security, or a related field.

  • Experience supporting Epic security, including EMP security, security templates/classes, role-based access, provisioning, and access troubleshooting.

  • Experience working with enterprise identity technologies such as Active Directory, Microsoft Entra ID (Azure AD), Okta, and/or SailPoint.

  • Working knowledge of Role-Based Access Control (RBAC), least privilege, and access-management principles.

  • Experience supporting identity lifecycle processes, including onboarding, transfers, role changes, terminations, and access modifications.

  • Experience analyzing and resolving complex access issues involving multiple systems, roles, departments, or workflows.

  • Experience identifying excessive, duplicate, outdated, or inappropriate access and assisting with remediation.

  • Experience following and applying established access governance, security standards, procedures, and controls.

  • Experience evaluating provisioning, deprovisioning, and access-request workflows to identify process gaps, inefficiencies, and opportunities for optimization, standardization, and reduction of manual effort.

  • Experience supporting audit, compliance, access-review, and remediation activities, preferably within a healthcare or other regulated environment.

  • Working knowledge of healthcare security and regulatory requirements, including HIPAA, least privilege, separation of duties, and appropriate access controls.

  • Ability to independently evaluate complex access requests, identify potential risks, and recommend appropriate solutions or escalate when broader technical, policy, or management review is required.

  • Ability to provide technical assistance and knowledge sharing to other analysts while recognizing when issues require escalation to a Level 4 Analyst, Supervisor, or Manager.

  • Strong written and verbal communication skills with the ability to work effectively with application teams, operational leaders, HR, IT, compliance, and other stakeholders.

  • Epic Security certification, Epic Security Coordinator experience, IAM/security certification, or comparable training.

SPECIAL CONDITIONS
  • 7/24 On Call for User Security and Access Team rotation

  • Must be able to work various hours and locations based on business needs.

  • Employment is subject to a criminal background check and pre-employment physical.

Pay Transparency Act

Annual Full Pay Range: Unclassified - No data available (will be prorated if the appointment percentage is less than 100%)

Hourly Equivalent: Unclassified - No data available

Factors in determining the appropriate compensation for a role include experience, skills, knowledge, abilities, education, licensure and certifications, and other business and organizational needs. The Hiring Pay Scale referenced in the job posting is the budgeted salary or hourly range that the University reasonably expects to pay for this position. The Annual Full Pay Range may be broader than what the University anticipates to pay for this position, based on internal equity, budget, and collective bargaining agreements (when applicable).

Applied = 0

(web-665cd84569-2tbf8)