Bank of America Logo

Bank of America

Identity & Access Management (IAM) Access Certification Services Specialist

Posted 18 Days Ago
Be an Early Applicant
6 Locations
77K-136K Annually
Senior level
6 Locations
77K-136K Annually
Senior level
The IAM Access Certification Specialist role focuses on enhancing the organization's access certification program, managing compliance, and ensuring security across IAM systems. Responsibilities include quality assurance, stakeholder collaboration, and regulatory responses.
The summary above was generated by AI

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being a diverse and inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.

Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Summary:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

What you can expect in Identity & Access Management:

In today’s highly connected world, managing and securing the identity of users is essential to the safety and success of our workforce. The Identity & Access Management (IAM) team works within Global Information Services (GIS) and in close participation with all other LOB teams as well as second and third line of defense partners. This role is highly visible and requires frequent interaction with senior management and key stakeholders. 

Are you passionate about the latest IT technologies and thrive in a fast-paced international environment? In a typical day, you may work with other team members on the book of work, operational concerns, or risk items. You will help overcome obstacles and maintain good relationships with key stakeholders across the bank to ensure timely and effective delivery. We offer you the opportunity to collaborate with passionate competent people, experts in their field. We thrive on being challenged and everything we do is anchored in managing risk for the bank.

The Identity & Access Management (IAM) Info Security Controls Specialist will analyze, strengthen, and secure the company's IAM systems and overall risk posture for Access Certifications and Governance. This role focuses on collaboration across all Lines of Business, CIO teams, to continuously improve the organization's access certification program. The Control Specialist will analyze controls to identify and document inefficiencies, and design/prioritize improvement opportunities to enable swift adherence.

The role also will actively apply knowledge of laws, rules, regulations, and information security concepts (e.g., NIST, COBIT, ISO) to establish and maintain policies, validate alignment of processes and controls to requirements, report on adherence to policy requirements and maintain governance programs related to access certifications and revocation services. Job expectations include using data analytics, governance process management, and partnering with internal teams to verify policy compliance, identify gaps in coverage, and support remediation activities.

Responsibilities:

  • Establish and maintain strong partnership with other Global Information Security (GIS) functions, Core Technology Infrastructure (CTI), Cyber Security Technology (CST), Third Party management, Global Compliance and Operations Risk (CGOR), internal audit, and external regulatory agencies. Provide audit and regulatory responses within the specified periods.

  • Perform Quality Assurance activities to support Access Certification campaigns and control metrics.

  • Support and monitor access reviews for completion in specific areas. Oversee and drive governance program for access security contact, support program mailbox inquiries, updating source of record, manage ARM ticketing queue, and maintaining program SharePoint site, documentation, and training.

  • Provide education and documentation on Access Certification Awareness through instructor led sessions.

  • Maintain access certification documentation, audit documentation, and training materials for the access certification services team.

  • Drive Quality Assurance Governance for Access Certifications and Revocations

  • Maintain exceptions to IAM Standard according to governance processes.

  • Ensures Information Technology systems meet enterprise standards, adhere to applicable rules, laws, and regulations, and comply with appropriate risk appetite.

  • Assist with Software Development Life Cycle (SDLC) and testing of application changes that impact access reviews with signoff prior to implementation.

  • Building and maintaining ‘Break Glass’ processes enabling reusability and consistency of obtaining access certification data.

Required Qualifications:

  • 5+ years relevant hands-on experience in identity and access certification related fields in a large and complex organization.

  • 3-5 years’ experience implementing IAM Cloud solutions, controls, and capabilities.

  • Proficient in articulating facts and data-driven plans and ability to partner with stakeholders to implement intended solutions to drive risk reductions and adherence to relevant Access Certification requirements within IAM standards.

  • Strong attention to detail, advanced analytical skills, and quality assurance experience.

  • Excellent communication and presentation skills.

  • Excellent organizational skills and be able to effectively prioritize multiple tasks.

  • Proficient in data management which includes strong data analytical capabilities with advanced understanding of the collection and management of metadata.

  • Experience with Tableau and SQL.

  • Previous experience with access review tools like SailPoint, AZURE AD, ForgeRock Identity Platform, Oracle Access Management, and Cloud would be a plus.

This job will be open and accepting applications for a minimum of seven days from the date it was posted

Shift:

1st shift (United States of America)

Hours Per Week: 

40

Pay Transparency details

US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540)

Pay and benefits information

Pay range$76,500.00 - $136,400.00 annualized salary, offers to be determined based on experience, education and skill set.

Discretionary incentive eligible

This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.

Benefits

This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.

Top Skills

Azure Ad
Cobit
Forgerock Identity Platform
Iam
Iso
Nist
Oracle Access Management
Sailpoint
SQL
Tableau

Similar Jobs

3 Hours Ago
Hybrid
Arvada, CO, USA
30-35
Senior level
30-35
Senior level
Cloud • Greentech • Other • Energy
As an Industrial Machinery Technician, you will maintain and repair electrical systems of manufacturing equipment, ensuring compliance and optimizing maintenance programs.
Top Skills: Accupress Press BrakesPreventative Maintenance Software (Upkeep)Salvagnini P4 Panel BendersTrue Punch 3000Trumpf Fiber Optic 3030 Lasers
Yesterday
Hybrid
Denver, CO, USA
140K-200K
Senior level
140K-200K
Senior level
Security • Software • Cybersecurity
The Senior Application Security Engineer will ensure application security by developing secure code, conducting threat modeling, and engaging in security audits and customer support.
Top Skills: Application SecurityCloud InfrastructureHTTPMulti-Threaded ApplicationsRestSecure Coding PracticesTcp/IpVulnerability Testing
Yesterday
Hybrid
5 Locations
135K-190K Annually
Senior level
135K-190K Annually
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
Consult with enterprise clients on Zero Trust Services/SASE, managing projects, creating service offerings, and leading marketing efforts for the Professional Services team.
Top Skills: APIsCdnsDdos ProtectionLoad BalancingNetworkingSaseSecurityWafZero Trust Services

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account