
Identity & Access Management Analyst
Posted 16 hours ago

Posted 16 hours ago
This is a fully remote position, open to applicants in United States.
• Assist in the Identity and Access Management program across cloud environments and remote sites.
• Implement IAM controls and spearhead initiatives to enhance their effectiveness.
• Oversee, facilitate, and manage identity and access lifecycle management controls.
• Deploy and manage NIST 800-53 Rev. 5 controls for AWS, AWS-hosted applications, SaaS, and additional services.
• Supervise, report, and facilitate access certification for relevant SaaS, AWS, Azure, and company-managed resources.
• Conduct directory-based provisioning utilizing MS Active Directory Domain Services, Azure Active Directory, and AWS IAM Services.
• Administer end-user accounts, access groups, entitlements, and ownerships.
• Handle requests related to account, group, entitlement, and ownership modifications.
• Ensure that privileged identity lifecycle management tools and processes are utilized correctly.
• Continuously evaluate IAM controls to ensure effective operation.
• Provision access to cloud-based SaaS services according to business requirements.
• Address internal audit and third-party assessment inquiries, including control walkthroughs and evidence presentation.
• Investigate and resolve control-related issues with an emphasis on automation and operational efficiency.
• Engage in cybersecurity incident response, incident investigations, and audit reporting.
• Provide 24/7 coverage as necessary, including weekends.
• Lead IAM readiness for Disaster Recovery Management Plans and assist in disaster recovery drills.
• Develop, maintain, and enhance IAM strategies, policies, standards, and guidelines.
• Consistently communicate with stakeholders using a customer-focused approach.
• Bachelor's degree or equivalent experience in an IT-related discipline.
• At least 2 years of experience with Identity and Access Lifecycle Management Operations and Controls.
• A minimum of 2 years of experience supporting and operating Cloud IAM Services, preferably AWS.
• At least 2 years of experience with MS Active Directory Domain Services, Azure Active Directory (MS Entra ID), Azure Web Federation, and Active Directory Connect.
• Minimum of 1 year of experience supporting Privileged Identity Management Tools.
• At least 1 year of experience with scripting languages (PowerShell, JSON, Python, etc.).
• Familiarity with IAM controls in line with ISO 27001/2, FISMA, or NIST guidelines.
• Experience collaborating across teams to deliver IAM services across various business lines.
• Working knowledge and practical experience with Sailpoint IdentityNow, Okta, common operating systems and domain structures, LDAP, servers, services, and directory services.
• Hands-on experience with Microsoft Directory Services Products, including Active Directory, Azure, Entra ID, Office 365, Exchange, SharePoint, and MS Teams.
• Practical experience with the ServiceNow Ticketing System for integration with Sailpoint and other connected systems.
• Experience managing Access Certification campaigns in Sailpoint.
• Proven ability to enable automation for identity lifecycle management and scripting technologies.
• Proficiency with Windows, Linux, Red Hat, and relevant hosts, operating systems, and applications.
• Strong interpersonal, presentation, verbal, and written communication skills.
• Capability to document and convey processes and procedures to both business and technical stakeholders.
• Ability to influence peers and management while working collaboratively across functions.
• Solid understanding of information security policies, standards, and industry best practices.
• Strong organizational and time-management abilities.
• Capacity to manage multiple priorities, projects, deliverables, and stakeholder expectations.
• Willingness to learn new technologies and tools while developing new processes.
• Must have authorization to work in the US without requiring employer sponsorship now or in the future.
• Candidate will participate in an after-hours and weekend on-call rotation.
• Desired certifications include CISSP, CISA, Microsoft, AWS, or equivalent designations.
• Experience with DR/BCP planning for IAM services is a plus.
• Familiarity with IGA/IAM and PIM tools, such as Thycotic Secret Server, is advantageous.
• Experience with SIEM tools like Splunk and Rapid7 is a plus.
• Knowledge of Jira for project and time tracking is a plus.
• Performance bonus.
• 401k match.
• Healthcare coverage.
• PTO.
• A broad range of additional benefits.
PowerSchool
Saab
Braun Intertec Corporation
General Dynamics Information Technology
Get handpicked remote jobs straight to your inbox weekly.