xelys jobs xelys jobs

API Security Developer - Hybrid

Genesis10

hybridmidcontractsecuritybackend Eagan, MN 2 days ago via LinkedIn
150,240 - 174,960 USD/annual

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

Tags

API SecurityOAuth 2.0OpenID ConnectAuth0OktaOAuth2/OIDCFHIRSMART on FHIRNode.jsSpring Boot

About the role

Role Overview

API Security Developer to support enterprise interoperability and patient access initiatives for a healthcare payer. The work focuses on identity and access management modernization, API security, and secure healthcare data integrations using FHIR-based interoperability.

Responsibilities

  • Support API security and identity modernization across enterprise healthcare applications
  • Design, develop, and enhance secure authentication and authorization solutions
  • Migrate authentication capabilities from Okta to Auth0, including mapping security constructs/policies
  • Refactor and modernize authentication/authorization flows
  • Implement and support OAuth 2.0 and OpenID Connect integrations (including PKCE, client credentials, ID tokens, scopes, and claims)
  • Configure and support token transformation, claim mapping, and API authorization strategies
  • Develop and support secure backend integrations and APIs using Node.js/JavaScript, Java, and Spring Boot
  • Support SMART on FHIR authorization frameworks and interoperability initiatives
  • Work with FHIR resources (e.g., Patient, Practitioner, Observation)
  • Collaborate with engineering, architecture, security, and interoperability teams
  • Participate in solution analysis, technical design, development, testing, and implementation
  • Help define and document API security standards, best practices, and governance

Requirements

  • Healthcare insurance (healthcare payer) industry experience
  • Strong IAM (Identity and Access Management) concepts and enterprise authentication frameworks
  • Hands-on experience migrating Okta to Auth0
  • Strong hands-on OAuth 2.0 and OpenID Connect experience
  • Experience with API gateway and secure integration patterns
  • Ability to translate security constructs (e.g., groups → roles/permissions, policies → actions/rules, auth servers → APIs, token/claim transformations)
  • Ability to understand Java
  • Experience with Node.js
  • Experience building/supporting RESTful APIs and backend integrations
  • Strong understanding of secure authentication and authorization flows
  • Agile development experience

Nice-to-haves / Desired Skills

  • Healthcare payer experience
  • Experience with Kong API gateway
  • SMART on FHIR experience
  • Experience supporting interoperability/patient access initiatives
  • Familiarity with FHIR resources and healthcare API standards
  • Experience with cloud-native or enterprise modernization
  • Experience with API gateway or enterprise security tooling

Contract Details

  • Contract duration: 4–6+ months
  • Work style: Remote or hybrid (Eagan, MN)
  • Pay: $62.60–$72.60 per hour (W2)

About Genesis10

Genesis10 is a U.S. staffing firm that places consultants and employees with clients across contract, contract-for-hire, and permanent placement roles. It works with a wide range of industries and organizations, including many Fortune 100 and mid-market companies.

Scraped 7/30/2026