Workday HCM Security Administrator
Location
Illinois + 1 moreAll locations: Illinois | Texas
Posted
45 days ago
Salary
$130K / year
Seniority
Mid Level
Job Description
Workday HCM Security Administrator
Hospital Housekeeping Systems
• Manage and configure Workday HCM to support HR processes, ensuring the platform aligns with organizational needs. • Configure and maintain Workday security access controls, roles, and permissions. • Monitor and audit system security to ensure compliance with company policies and regulations, and troubleshoot security-related issues as they arise. • Oversee the accuracy, consistency, and integrity of HR data within Workday, including ongoing maintenance and audits. • Collaborate with HR and business stakeholders to gather requirements, design, test, and implement business processes that improve efficiency and compliance. • Create and manage Enterprise Interface Builder (EIB) files for data uploads and integrations to streamline workflows. • Design, develop, customize, and maintain Workday reports and dashboards, including advanced reports and calculated fields, to provide actionable insights for HR and leadership teams. • Troubleshoot and resolve Workday-related issues, ensuring smooth day-to-day operations and user satisfaction. • Partner with cross-functional teams to implement new Workday features or modules, ensuring alignment with HR strategies and security requirements. • Create user guides, deliver training, and maintain documentation for Workday processes, configurations, and security protocols. • Ensure Workday processes adhere to legal and regulatory requirements, safeguarding data privacy and security. • Stay current with Workday updates and new features related to HCM, reporting, and security to proactively identify improvement opportunities.
Job Requirements
- 2+ years of experience in HRIS or HR systems administration, with a strong focus on Workday HCM.
- Experience with Workday security groups, report writing, and data management.
- Strong proficiency in Excel and experience with SQL or other data manipulation tools.
- Experience with data migration, integration, and reporting in an HRIS environment.
- Knowledge of HR processes and data structures.
- Experience with Workday HCM and/or Financials modules preferred.
- Workday certification in HCM, Reporting, or Security Administration preferred; equivalent hands-on experience will be considered.
- Additional Workday certifications are welcome but not required.
Benefits
- Full-time position
- Fully remote environment
- Paid time off (vacation and sick)
- Medical, dental, and vision insurance
- 401(k) with employer match
- Employee Assistance Program (EAP)
- Employee Resource Groups (ERGs)
- Career development and ongoing training
- On-site gym, cafe, and free fitness classes
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Act as the bridge between architectural intent and operational reality; mediate conflicts between security requirements and feasible implementation, propose compensating controls where gaps exist and help register, track and remediate residual risks. • Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code so security is enforced by design, including controls that govern how AI tools and models may be used. • Implement and enforce identity and access controls to an agreed standard, including access boundaries for AI systems and non-human/agent identities by partnering with Platform Engineering and IT to align tooling and policy to the architecture. • Assist in maintaining the InfoSec risk register; track emerging threats and translate them into actionable guidance for engineering teams. • Support third-party and vendor risk assessments, with a focus on vendors who process data through AI pipelines. • Automate repetitive security workflows (evidence collection, access reviews, alert enrichment) and build or operate AI-assisted security agents — with human-in-the-loop approval gates, least-privilege credentials, and explicit attention to each agent's own blast radius. • Integrate security tooling (SIEM, CSPM, DAST/SAST, vulnerability scanners) with LLM layers to surface actionable insight and automated responses. • Define and enforce security requirements for AI-powered features: model access controls, prompt-injection mitigations, output validation, and data-handling boundaries. • Conduct threat modelling on agentic and LLM-based systems, accounting for novel attack surfaces such as tool misuse, indirect prompt injection, and supply chain risk.
• Act as the bridge between architectural intent and operational reality; mediate conflicts between security requirements and feasible implementation, propose compensating controls where gaps exist and help register, track and remediate residual risks. • Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code so security is enforced by design, including controls that govern how AI tools and models may be used. • Implement and enforce identity and access controls to an agreed standard, including access boundaries for AI systems and non-human/agent identities by partnering with Platform Engineering and IT to align tooling and policy to the architecture. • Assist in maintaining the InfoSec risk register; track emerging threats and translate them into actionable guidance for engineering teams. • Support third-party and vendor risk assessments, with a focus on vendors who process data through AI pipelines. • Automate repetitive security workflows (evidence collection, access reviews, alert enrichment) and build or operate AI-assisted security agents — with human-in-the-loop approval gates, least-privilege credentials, and explicit attention to each agent's own blast radius. • Integrate security tooling (SIEM, CSPM, DAST/SAST, vulnerability scanners) with LLM layers to surface actionable insight and automated responses. • Define and enforce security requirements for AI-powered features: model access controls, prompt-injection mitigations, output validation, and data-handling boundaries. • Conduct threat modelling on agentic and LLM-based systems, accounting for novel attack surfaces such as tool misuse, indirect prompt injection, and supply chain risk.
• Act as the bridge between architectural intent and operational reality; mediate conflicts between security requirements and feasible implementation, propose compensating controls where gaps exist and help register, track and remediate residual risks. • Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code so security is enforced by design, including controls that govern how AI tools and models may be used. • Implement and enforce identity and access controls to an agreed standard, including access boundaries for AI systems and non-human/agent identities by partnering with Platform Engineering and IT to align tooling and policy to the architecture. • Assist in maintaining the InfoSec risk register; track emerging threats and translate them into actionable guidance for engineering teams. • Support third-party and vendor risk assessments, with a focus on vendors who process data through AI pipelines. • Automate repetitive security workflows (evidence collection, access reviews, alert enrichment) and build or operate AI-assisted security agents — with human-in-the-loop approval gates, least-privilege credentials, and explicit attention to each agent's own blast radius. • Integrate security tooling (SIEM, CSPM, DAST/SAST, vulnerability scanners) with LLM layers to surface actionable insight and automated responses. • Define and enforce security requirements for AI-powered features: model access controls, prompt-injection mitigations, output validation, and data-handling boundaries. • Conduct threat modelling on agentic and LLM-based systems, accounting for novel attack surfaces such as tool misuse, indirect prompt injection, and supply chain risk.
• Act as the bridge between architectural intent and operational reality; mediate conflicts between security requirements and feasible implementation, propose compensating controls where gaps exist and help register, track and remediate residual risks. • Implement preventive, default-on security controls across cloud and enterprise environments, codified as policy- and infrastructure-as-code so security is enforced by design, including controls that govern how AI tools and models may be used. • Implement and enforce identity and access controls to an agreed standard, including access boundaries for AI systems and non-human/agent identities by partnering with Platform Engineering and IT to align tooling and policy to the architecture. • Assist in maintaining the InfoSec risk register; track emerging threats and translate them into actionable guidance for engineering teams. • Support third-party and vendor risk assessments, with a focus on vendors who process data through AI pipelines. • Automate repetitive security workflows (evidence collection, access reviews, alert enrichment) and build or operate AI-assisted security agents — with human-in-the-loop approval gates, least-privilege credentials, and explicit attention to each agent's own blast radius. • Integrate security tooling (SIEM, CSPM, DAST/SAST, vulnerability scanners) with LLM layers to surface actionable insight and automated responses. • Define and enforce security requirements for AI-powered features: model access controls, prompt-injection mitigations, output validation, and data-handling boundaries. • Conduct threat modelling on agentic and LLM-based systems, accounting for novel attack surfaces such as tool misuse, indirect prompt injection, and supply chain risk.
