-
Access Control: Understanding and implementing role-based access control (RBAC), attribute-based access control (ABAC), and other access management models.
-
Authentication Protocols: Knowledge of authentication protocols such as OAuth, OpenID Connect, and SAML for secure user authentication.
-
Identity Management: Familiarity with identity management systems, including user provisioning, de-provisioning, and identity lifecycle management.
-
Security Standards: Awareness of security standards like ISO 27001, NIST, and compliance requirements related to authorization and access.
-
API Security: Understanding of securing APIs, including token-based authentication and authorization mechanisms.
-
Encryption Techniques: Knowledge of encryption methods for securing sensitive data during transmission and storage.
-
Authorization Policies: Creating and managing authorization policies, defining permissions, and ensuring compliance with regulatory requirements.
-
Security Frameworks: Familiarity with security frameworks such as OAuth 2.0, JWT (JSON Web Tokens), and best practices for securing web applications.
-
Risk Management: Ability to assess and mitigate security risks related to authorization, ensuring a balance between usability and security.
-
Communication Skills: Effective communication to convey technical details to non-technical stakeholders and understand business requirements.
-
Gather/validate requirements with stakeholders and the project team.
-
Discuss issues and questions related to claims data analysis, issue documentation; work with business stakeholders to review and resolve these issues.
-
perform data analysis, using in-depth knowledge of databases and healthcare data.
-
Support all phases of the software development lifecycle (SDLC).
-
Experience in delivery of software solutions.
-
Demonstrates effectiveness of working in a highly matrixed environment.