Posted in

Associate Principal – Identity and Access Management Systems

Associate Principal – Identity and Access Management Systems

CompanyOCC
LocationDallas, TX, USA
Salary$131400 – $165800
TypeFull-Time
DegreesBachelor’s
Experience LevelSenior, Expert or higher

Requirements

  • Proven track record of implementing Identity Governance Solutions utilizing Sailpoint.
  • Strong understanding of Identity and Access Management best practices from both a security and business enablement perspective.
  • Ability and willingness to work proactively with limited direction from leadership.
  • Candidate should have a compliance mindset that can effectively support auditing and compliance related activities such as evidence gathering, reporting, and presentation of information to governing entities.
  • Strong communication skills required to interact with end-users, business teams, and other IT and Security Departments.
  • Proficiency in programming languages such as Java, Groovy, Beanshell, Python, Javascript, or others.
  • Proficiency in general server management, maintenance, and triage to support IAM systems.
  • General understanding of domain level ecosystems including basic networking, firewall, proxy, and datacenter connectivity to assist with solution designs related to OCC’s IAM products.
  • Proficiency in Microsoft Active Directory and LDAP.
  • Proficiency in Identity and Access Management administration of Identity Governance (IGA) systems such as Sailpoint IIQ (preferred), Ping Identity, Oracle Identity Manager (OIM), or other industry IGA tools.
  • Experience in IAM administration of various end-point applications and systems.
  • Experience with Multi-Factor authentication protocols and systems.
  • Experience with Single-Sign on protocols and systems.
  • Basic knowledge of ticketing systems and workload management systems (ServiceNow and Jira preferred but not required).
  • Bachelor’s degree in Computer Science, Engineering, or other related field, or equivalent experience.
  • Equivalent experience includes 5+ Years Identity Access Management (IAM).

Responsibilities

  • Administration, engineering, and development of multiple Sailpoint IIQ instances.
  • Developing custom integration, workflows, and rules between Sailpoint and end-point applications.
  • Proactively monitoring, identifying, and resolving bugs and process deficiencies within our Sailpoint Workflows and integrations.
  • Supporting EOS/EOL upgrades across multiple Sailpoint instances through validation, testing, and execution of upgrade plans.
  • Ability to support additional products as needed; training provided as required.
  • Participating in the planning, implementation, enforcement and review of security policies, procedures, and controls specific to Identity Access Management.
  • Assisting with troubleshooting and resolution of system issues that might contribute to enterprise Production problems.
  • Assisting with preparation of support documentation of IAM Architecture related, Context Diagrams, and Solution Designs of Sailpoint IIQ and other products.
  • Report on controls, evidence gathering and control execution.
  • Work collaboratively across IT and Business departments to implement technical solutions.
  • Under limited direction from management, monitor, evaluate and maintain systems and procedures to enforce best practices for user access authorization and control.
  • Research, recommend, and implement changes to procedures and systems to enhance systems security.
  • Assist in communicating security policies and procedures to users.
  • Assist internal and external customers with multi-platform security access issues and requests.
  • Assist in identifying or developing tools or methods to track and monitor risk.
  • Support management with special projects and other duties as assigned.
  • Participate in On-Call duties, including assisting with regularly scheduled activities such as Disaster Recovery and Enterprise Patching.

Preferred Qualifications

  • Industry recognized certifications (CISSP, ITIL, etc) are a plus but not required.