Identity and Access Management Senior Consultant
Boston, NH - USA
Job Summary
Job Description:
At Bank of America we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients teammates communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace attracting and developing exceptional talent supporting our teammates physical emotional and financial wellness recognizing and rewarding performance and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America you can build a successful career with opportunities to learn grow and make an impact. Join us!
Line Of Business Summary:
Global Information Security (GIS) is responsible for protecting bank information systems confidential and proprietary data and customer information. GIS develops the banks Information Security strategy and policy manages the Information Security program identifies and addresses vulnerabilities and operates a global security operations center that monitors detects and responds to cybersecurity incidents. Within GIS Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access across increasingly heterogeneous technology environments and to meet increasingly rigorous compliance requirements.
What you can expect in Identity & Access Management:
In todays highly connected world managing and securing the identity of users is essential to the safety and success of our workforce. The Identity & Access Management (IAM) team works within Global Information Services (GIS) and in close participation with all other LOB teams as well as second and third line of defense partners. This role is highly visible and requires frequent interaction with senior management and key stakeholders.
The Senior IAM Information Security Controls Lead will analyze strengthen and secure the companys IAM systems and overall risk posture for end user application and privileged access management. The individual in this role will be a leader in the IAM innovation space working with senior leaders to implement new technologies and role requires collaboration with technology peers to modernize the IAM ecosystem for securing evolving technologies and identities.
The role also applies knowledge of laws rules regulations and information security frameworks (e.g. NIST COBIT ISO) to establish and maintain policies validate alignment of processes and controls to requirements report on adherence to policy requirements and maintain governance programs related to IAM Standard controls. Expectations include leveraging data analytics governance process management and cross-functional partnerships to verify policy compliance identify gaps and support remediation activities.
Responsibilities:
Define and steer IAM standards including designing enterprise appropriate adherence models and related measures for governance controls and effectiveness management.
Drive application/platform IAM modernization approach and program for information & data synchronization/management moving from legacy manual to modernized identity automation solutions such as connector frameworks.
Collaborate with partner cybersecurity engineering and compliance teams to develop and align controls with industry standards to mitigate known threat vectors adopt best practice principles and meet regulatory requirements.
Drive optimization & adoption of innovative and transformational strategies including but not limited to tooling integrations with enterprise platforms such as Active Directory Mainframe and Public Cloud.
Drive requirements modernization and derisk efforts for processes controls systems and platforms reducing technical debt improving identity hygiene and supporting continual risk reduction efforts.
Interacting with examiners and partners within control oversight organizations such as Audit Compliance Operational Risk Regulators and independent assessment organizations to represent IAM.
Manage liaise with and oversee currency of documentation governance routines and QA processes to capture drive and improve alignment with standards and controls.
Drive access management product and systems requirements for solutions platforms and application-level integrations.
Influence technology decisions and vendor strategies to support IAM objectives.
Required Qualifications:
10 years of bank and finance industry hands-on experience in Identity Governance & Administration (IGA) or Identity and Access Management (IAM) managing identity lifecycle and enterprise-scale modernization initiatives.
High proficiency and working knowledge of Active Directory Entra ID (Azure AD) and federated authentication protocols (SAML OIDC OAuth2).
Proven experience IAM functionality and tools for Azure AWS and Google Cloud and with platforms such as PingIDM SailPoint Saviynt IdentityIQ (IIQ) ForgeRock Okta or Oracle IDCS.
Expertise in connector frameworks (e.g. OpenICF) identity workflows role management and policy development.
Familiarity with common Information Security and data protection frameworks and standards (i.e. CIS NIST MITRE ITIL COBIT HIPAA GDPR PCI DSSS ISO 270001)
Familiarity with Zero Trust architecture FIDO2 and passwordless authentication concepts.
Proficiency in data analytics and reporting tools (SQL Tableau PowerBI) for compliance and risk metrics.
Highly organized and motivated self-starter who can deliver results with minimal to own and deliver on complex initiatives in a high paced evolving environment.
Excellent problem-solving documentation and communication skills with the ability to work effectively across cross-functional teams.
Excellent verbal and written communication skills. Ability to communicate with business leaders users and tech-savvy stakeholders and influence outcomes.
Shift:
1st shift (United States of America)Hours Per Week:
40Pay Transparency details
US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842) US - MA - Boston - 100 Federal St - 100 Federal St Lp (MA5100)Pay and benefits informationPay range$135000.00 - $182100.00 annualized salary offers to be determined based on experience education and skill set.Discretionary incentive eligibleThis role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors the performance and contributions of their line of business and/or group; and the overall success of the Company.BenefitsThis role is currently benefits eligible. We provide industry-leading benefits access to paid time off resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.Required Experience:
Senior IC
About Company
What would you like the power to do? At Bank of America, our purpose is to help make financial lives better through the power of every connection.