Primary Details
Time Type: Full time
Worker Type: Employee
Maintains effective access controls to support adequate protection of QBE data and resources by leading the facilitation and execution of global identity and access management processes and associated control activities to support onboarding offboarding and access recertification. Ensures a quality access management service including processing of complex high-volume joiner mover leaver and change requests. Support Senior Analysts and Team Leader with projects and larger initiatives requiring audit risk assessment process and technical expertise across a highly regulated environment. Liaise with customers at all levels including senior and executive leadership.
Primary Responsibilities Manage demand through the global ticket and request management tool to ensure effective queue managementCollaborate with global peers and participate in internal meetings to share and develop knowledge and best practiceMaintain least privileged access to QBE systems for joiners movers leavers (JML) and authorized users ensuring access granted is in line with job function controls are maintained or access removed in a timely mannerRespond to information security and access-related questions and inquiries using available information security tools and procedures ensuring adherence to QBEs defined service processes (e.g. Incident Request Change Problem etc.) and ITIL best practice guidelinesManage requests for additional access to QBE systems ensuring these are met within accordance to agreed controls protocols (least privileged) and SLAsConsistent compliance with defined controls processes and QBE security policies and standardsProper analysis and autonomous decision making to ensure no separation of duties conflicts exist with access grantedTimeliness and accuracy to JML and additional access requests meeting or exceeding defined SLAs and performance targetsNo major security risks/control failures or continuous business process improvementBuild and maintain strong and effective relationships with business customers at all levels of the organization to ensure service delivery meets advice and guidance for IT security and user access-related activities; ensuring customers are aware of key issues and able to implement correct procedures and effective relationships with other departments within IT to ensure smooth end-to-end management of tickets (requests and incidents).Independently analyze requests to ensure proper separation of duties and least privileged concept is applied when granting access (across multiple complex platforms).Produce accurate management information to enable effective reporting decision making and and resolve access related inquiries ensuring effective resolution in line with key controls and processes minimizing business Active Directory (AD) and other key applications operating systems/platforms ensuring information (i.e. identity data) held is current and regularly relevant audit trails to support control activities relevant to the JML respond to audit inquiries and activities related to access controls where required. Required Education Associates Degree or equivalent combination of education and work experience Required Experience 3 years relevant experience
Preferred Competencies/Skills A logical approach to analyze access requests and issues; leverage technical knowledgeCommunicates information in a clear well-organized and professional manner at all levels within the organizationFollow established guidelines to focus on details and complete tasks attentively and thoroughlyEscalate issues when necessaryPrioritize various competing tasks according to their urgencyMaintain a customer focus and build relationships; ability to proactively manage customer expectationsProblem solving and analytical skillsFlexibility can easily adapt to quickly changing priorities Preferred Education Bachelors Degree or equivalent combination of education and work experience Preferred Education Specifics Degree in Computer Science Information Systems or related field
Preferred Experience Experience with identity and access management; working in a complex demanding fast-paced environment;Experience with Active Directory (AD) RACF and other access management within financial services preferably insurance industryExperience working with outsourced service partners Preferred Licenses/Certifications Certified in Risk and Information Systems (CRIS)Security Certified Information Systems Security Professional (CISSP)
Preferred Knowledge Ability make autonomous decisions when analyzing requests to ensure appropriate risk-based outcomeApplied working knowledge of security and access management principles including separation of duties (SoD) conceptUnderstanding of fundamental IT concepts systems tools and technologiesWorking knowledge of network security and administration processes basic computer troubleshooting and general industry best practices Knowledge of External and Internal Audit SOC1 and other access control reviews
QBE Cultural DNA Everything we do at QBE is underpinned by our DNA (which interlinks seven cultural elements) because we know its not just what we do that matters its how we do it that makes the difference. We expect all employees to role model and inspire the right behaviours that link to our cultural elements:We are customer-focusedWe are technical expertsWe are inclusiveWe are fast-pacedWe are courageousWe are accountableWe are a teamAll employees are expected to adhere to QBEs Code of Ethics and Conduct and apply sound risk management practices US Only - Travel Frequency Infrequent (approximately 1-4 trips annually) US Only - Physical Demands General office jobs: Work is generally performed in an office environment in which there is not substantial exposure to adverse environmental conditions. Must have the ability to remain in a stationary position for extended periods of time. Must be able to operate basic office equipment including telephone headset and computer. Incumbent must be able to lift basic office equipment up to 20 lbs.
US Only - Disclaimer To successfully perform this job the individual must be able to perform each essential job responsibility satisfactorily. Reasonable accommodations may be made to enable an individual with disabilities to perform the essential job responsibilities. Job Type Individual Contributor Australia/New Zealand Only - Advice/Non-Advice Non-Advice: This role is not authorised to provide financial product advice to retail customers in respect of General Insurance products. Financial product advice means a statement or recommendation made to a retail customer with the intention of influencing their decision in considering a general insurance product.
Global Disclaimer The duties listed in this job description do not limit the assignment of work. They are not to be construed as a complete list of the duties normally to be performed in the position or those occasionally assigned outside an employees normal duties. Our Group Code of Ethics and Conduct addresses the responsibilities we all have at QBE to our company to each other and to our customers suppliers communities and governments. It provides clear guidance to help us to make good judgement calls.
Skills:
Active Directory Software Analytical Thinking Critical Thinking Customer Service Decision Making Detail-Oriented Identity and Access Management (IAM) Operations Intentional collaboration IT Security Operations Managing performance Operating Systems (OS) Problem Solving Risk Management Service Delivery Stakeholder Management
How to Apply:
To submit your application click Apply and follow the step by step process.
Equal Employment Opportunity:
QBE is an equal opportunity employer and is required to comply with equal employment opportunity legislation in each jurisdiction it operates.