Principal Software Engineer - Remote or Hybrid in MN and DC
Indexed description
The Optum Technology Chief Digital Office (CDO) Leadership team is transforming Optum to be an industry-leading Consumer brand. We are on a journey towards delivering a best-in-the-industry consumer experience to our patients and providers by delivering personalized digital solutions that support our consumers throughout their healthcare journeys. This team is transforming to meet the moment - to begin radically altering the way our customers engage with the healthcare system using modern tech to solve some of the most complex problems experienced along the way.
Serving all of UnitedHealth Group's digital technology needs, the CDO team is responsible for driving outcomes across nearly 30 million+ human lives with UnitedHealthcare insurance, a number which puts UHC at the top of the pack as the largest managed care provider in the United States.
We are looking for a Principal Engineer, Identity to drive consumer identity architecture across the Identity Platform and the products built on it. This is identity for members, patients, and care providers, not workforce identity. The role partners with peer leaders in the Non-Human Identity (NHI) and Security & Trust domains. Together, these roles cover the full identity architecture surface of the platform; this role anchors the human identity domain.
You'll enjoy the flexibility to work remotely * from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.
Primary Responsibilities
- Architecture and strategy. Set the architectural direction for consumer identity across the Identity Platform and the products that consume it, driving convergence of consumer (B2C) and provider (B2B) experiences onto shared platform capabilities
- Standards and patterns. Establish reference designs and platform standards for authentication, authorization, federation, delegation, identity lifecycle, proofing, and account recovery
- Modern identity roadmap. Own the direction for modern authentication and assurance, including passwordless, adaptive authentication, and alignment to NIST 800-63
- Cross-team influence. Influence and align architecture across product engineering teams as a trusted technical advisor, and raise the engineering bar across the identity organization
- Peer collaboration. Partner with peer leaders in NHI and Security & Trust at the boundaries where human, machine, and risk intersect, including delegated access and on-behalf-of flows for AI agents
Required Qualifications
- 10+ years building production identity and access management systems, with significant time at Staff or Principal level as an individual contributor
- Production architecture experience with at least one enterprise IDP (Ping, Okta, ForgeRock, Auth0, or Microsoft Entra)
- Production experience operating business-critical identity services in cloud environments
- Deep expertise in identity foundations: authentication, authorization, SSO, federation, IGA, and identity lifecycle
- Proven solid command of OAuth 2.0 and 2.1, OpenID Connect, and SAML 2.0, with the ability to make architectural trade-offs at scale
- Track record influencing architecture across multiple product engineering teams as an individual contributor
- Production experience across both CIAM (B2C) and B2B or workforce federation, including multi-tenant SSO and SCIM
- Identity proofing and assurance at IAL2 / AAL2 in production
- Healthcare identity context (HIPAA, SMART-on-FHIR, UDAP, TEFCA, or similar)
- Operating CIAM as a multi-tenant platform consumed by other product teams
- Passwordless or passkey rollouts in production at consumer scale
- Familiarity with emerging identity primitives such as decentralized identifiers (DIDs), verifiable credentials, and digital wallets
- Experience with identity orchestration and adaptive identity journeys
- All employees working remotely will be required to adhere to UnitedHealth Group's Telecommuter Policy
Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search