Job Description
Information Protection Engineer
Identity & Access Management (IAM)
Focus Area: User Access Review Lifecycle, Identity Governance, Entitlement Management & Compliance
The Information Protection Senior Analyst supports Identity Governance operations by executing and validating Identity & Access Management (IAM) controls across the enterprise. This role is heavily involved in the User Access Review (UAR) Lifecycle, Entitlement Management, and auditdriven access governance processes. The analyst ensures precise, consistent execution of IAM controls that support leastprivilege enforcement and meet SOX, SOC1/SOC2, HIPAA, and internal audit expectations
1. 1. Execute User Access Review Lifecycle
- Perform endtoend Identity Access Reviews across inscope applications.
- Validate review inputs and outputs to ensure accuracy, completeness, and alignment with leastprivilege principles.
- Support manager certification processes, including followups and timely review completion.
- Analyze user access anomalies and collaborate with application teams to drive remediation.
- Consolidate and deliver auditready evidence to internal or external auditors.
2. Entitlement Management & Evidence Validation
- Conduct entitlement list validation by collecting and confirming accurate entitlement evidence from application owners.
- Maintain entitlement inventories supporting quarterly and semiannual access review cycles.
3. Compliance & Control Operations
- Ensure IAM controls meet SOX, SOC1/SOC2, HIPAA, and internal audit requirements.
- Create, review, and maintain audit documentation supporting UAR and entitlement controls.
- Identify control gaps and partner with IAM leadership to develop remediation plans.
- Support zerofinding compliance posture through strict adherence to standardized review practices.
4. IAM Tooling & Data Analysis
- Use IAM platforms (e.g., Saviynt) to execute access reviews, analyze access data, and validate entitlements.
- Leverage Excel for data quality checks, pivoting, reconciliation, and analysis of large datasets.
- (If applicable) Use basic SQL or other analysis tools to support completeness and accuracy of review data.
5. CrossTeam Collaboration
- Work with application teams, IAM engineering, compliance partners, and business stakeholders to resolve access issues and align control execution.
- Communicate review outcomes, deficiencies, and required corrective actions in clear, professional language.
- Support process improvements and operational enhancements within IAM governance workflows.
Education:
- Bachelors degree and equivalent experience required
Experience:
years of experience in Identity & Access Management, Information Security, or related technical fields.
Required Skills:
- Advanced Microsoft Excel skills, including pivot tables, complex formulas, largedataset handling, and data validation.
- Strong understanding of IAM concepts: entitlements, leastprivilege, certification workflows.
- Ability to interpret technical access data and communicate it to nontechnical audiences.
- Familiarity with compliance frameworks (SOX, SOC1/SOC2, HIPAA) and audit expectations.
- Experience with IAM tools such as Saviynt (preferred).
Preferred Qualifications
- Exposure to SQL for data validation or reporting.
- Prior experience in Privileged Access Management (PAM) or application access onboarding.
Success Measures
- Accurate, highquality execution of each review cycle with minimal data defects.
- Ontime completion of all UAR and entitlement review tasks.
- High standard of audit readiness, demonstrated by complete, wellorganized evidence packages.
- Maintain a 99.999% audit success rate with zero compliance findings, supporting enterprise audit objectives.
- Positive feedback from IAM leaders, auditors, and application partners on review accuracy and responsiveness.
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.