
Identity Governance & Access Analyst II
Posted Jul 24

Posted Jul 24
This is a fully remote position, open to applicants in Colombia.
• Take ownership of the complete execution of routine user access reviews and certification initiatives, which includes defining scope, scheduling, and driving completion with application/system owners.
• Develop and enhance access request, approval, and exception workflows to conform with least-privilege and segregation-of-duties principles, including onboarding and offboarding as necessary.
• Configure and sustain identity governance workflows in Microsoft Entra ID (Azure AD), Microsoft Active Directory, Okta, and related identity governance tools, including updates to policies and rules.
• Lead investigations into access anomalies, orphaned accounts, and policy breaches, and facilitate remediation with responsible stakeholders.
• Uphold and enhance role and entitlement mappings across relevant applications and systems, identifying deficiencies in role design and ensuring robust compliance with Role-Based Access Controls (RBAC).
• Act as a primary liaison for internal and external audits, preparing evidence and discussing control design and operation.
• Create and maintain process documentation, control procedures, standard operating procedures, and identify opportunities for automation or streamlining where feasible.
• Collaborate with IAM engineers, security, and compliance stakeholders to design process enhancements and control improvements.
• Monitor, analyze, and report on access review metrics, findings, and remediation trends to team leadership.
• Mentor junior analysts on governance processes and tools.
• 3–5 years of experience in identity governance, IAM, IT security, or compliance, with direct involvement in conducting access reviews or certification initiatives.
• Strong understanding of identity and access management principles (authentication, authorization, provisioning/deprovisioning, RBAC, SoD).
• Practical experience with Microsoft Entra ID (Azure AD), including governance features, conditional access, or entitlement management, as well as Okta or similar IDP implementations.
• Experience with scripting or automation (PowerShell, Python, Octopus, Ansible) for reporting or workflow automation.
• Background in designing or enhancing access governance processes, rather than merely executing existing ones.
• Strong analytical abilities — comfortable working with structured data to uncover trends, gaps, and risks across access reviews.
• Proven experience collaborating directly with auditors or compliance teams to assist with control testing.
• Exceptional written and verbal communication skills, capable of conveying access risks to both technical and non-technical audiences.
• A compliance-focused, risk-aware mindset: you comprehend the rationale behind controls and can constructively challenge when something appears inadequate.
• **Nice to Have**
• Experience with identity governance platforms other than Entra ID (e.g., legacy Microsoft Active Directory).
• Familiarity with compliance frameworks pertinent to your industry (e.g., SOX, SOC 1 & 2, NIST, ISO 27001), including involvement in a formal audit cycle.
• General understanding of AI tools such as Copilot or Claude.
• Relevant certifications: Security+, SC-300 (Identity and Access Administrator), CIGA, CISA, or similar.
• Comprehensive health insurance coverage.
• Opportunities for professional development and training.
• Flexible working hours and remote work options.
• Competitive salary with performance-based bonuses.
• Supportive and inclusive work environment.
Inova Health
VCA Animal Hospitals
Allied Benefit Systems
Grupo Boticário
Get handpicked remote jobs straight to your inbox weekly.