Quick Overview
Job Description
Position: Identity Governance and Security Posture Analyst
Location: Remote - CST
Hiring Mode: 6 Months Contract
Job Description:
The Identity Governance and Security Posture Analyst will help a WWT customer maximize the value of its identity governance and administration platforms. This role will review platform findings, investigate excessive or inappropriate access, tune governance rules and recommendations, coordinate remediation, and translate technical findings into practical governance actions.
The analyst will work across identity governance, entitlement management, access certification, identity security posture management, lifecycle automation, and operational remediation. Saviynt experience is preferred. Experience with SailPoint or a comparable enterprise identity governance and administration platform may also be considered when paired with a strong understanding of identity governance concepts and the ability to learn the target platform.
Responsibilities:
- Serve as a primary user of Saviynt and related identity governance or identity security posture management capabilities.
- Review platform recommendations and findings involving overprivileged access, excessive entitlements, orphaned identities, stale access, toxic combinations, policy violations, and identity lifecycle exceptions.
- Evaluate the operational impact of identity and access findings, validate findings with the appropriate owners, and recommend suitable remediation actions.
- Tune rules, thresholds, policies, correlation logic, roles, entitlements, and recommendations to improve the quality and usability of platform findings.
- Support access reviews, entitlement reviews, role analysis, segregation of duties reviews, exception handling, and remediation tracking.
- Analyze identity and entitlement relationships across identity governance platforms, Active Directory, Microsoft Entra ID, privileged access management platforms, business applications, human resources systems, and other connected sources.
- Help define and improve identity governance standards, ownership models, approval requirements, lifecycle controls, and evidence expectations.
- Identify opportunities to improve joiner, mover, and leaver automation; access-request workflows; certification campaigns; and governance reporting.
- Translate platform findings into change requests, remediation tickets, process updates, control enhancements, and implementation recommendations.
- Partner with identity architects, identity and access management leaders, data analysts, process and compliance analysts, application owners, human resources, audit, and security teams.
- Track remediation progress, exceptions, aging findings, risk acceptance, repeat findings, and unresolved ownership decisions.
- Produce recurring metrics and leadership reporting related to governance posture, remediation status, access risk, and platform adoption.
- Document platform configurations, rule logic, analysis decisions, operating procedures, and recommended improvements.
- Evaluate new identity governance and identity security posture management capabilities and integrations for practical operational use.
Qualifications:
Required Qualifications:
- Five or more years of experience in identity governance, access governance, cybersecurity, identity and access management operations, information technology risk, or a related discipline.
- Demonstrated experience with enterprise identity governance concepts, including accounts, identities, entitlements, roles, access requests, certifications, approvals, exceptions, segregation of duties, and identity lifecycle management.
- Experience using an enterprise identity governance and administration platform such as Saviynt, SailPoint, Microsoft Entra ID Governance, or a comparable product.
- Ability to interpret entitlement and access data, investigate risk findings, validate ownership, and recommend remediation.
- Experience working with application owners, business owners, access approvers, audit and compliance teams, security teams, and technology teams.
- Ability to distinguish actionable risk from false positives and explain recommendations in business and technical terms.
- Strong documentation, analytical, follow-up, and stakeholder management skills.
- Ability to work remotely within the United States.
Preferred Qualifications:
- Hands-on Saviynt experience involving identity governance, access requests, access certifications, role and entitlement modeling, workflows, analytics, policy rules, or reporting.
- Experience with SailPoint, Microsoft Entra ID Governance, CyberArk, BeyondTrust, or identity security posture management capabilities.
- Experience with PowerShell, Structured Query Language, Python, application programming interfaces, connectors, data reconciliation, or workflow troubleshooting.
- xperience supporting Sarbanes-Oxley controls, information technology general controls, North American Electric Reliability Corporation Critical Infrastructure Protection requirements, critical infrastructure environments, or other regulated identity programs.
- Saviynt, SailPoint, Microsoft, Certified Information Systems Auditor, Certified in Risk and Information Systems Control, Certified Information Systems Security Professional, Certified Information Security Manager, or comparable certification.
Tools and Technologies:
- Saviynt
- SailPoint
- Microsoft Entra ID Governance
- Active Directory
- CyberArk
- BeyondTrust
- Identity governance and administration platforms
- Identity security posture management platforms
- Privileged access management platforms
- Access certification and entitlement review tools
- PowerShell
- Structured Query Language
- Python
- Application programming interfaces
- Connectors and workflow integrations
- Governance reporting and analytics tools
Similar jobs
- KT
Senior Security Engineer
NewKBC Technologies, Inc
New York, NY🇺🇸Hybrid21 hours agoPCI DSSSOC 2SSO+6Technology - GI
On-Site Senior Certified Application Security Analyst (NIST SP 800-53/Cybersecurity/CSF controls/ Microsoft 365/Defender/Purview/ CISA/CRISC/CGRC/CISM/CISSP)
NewGlobal Information Services
Tallahassee, FL🇺🇸On-site21 hours agoHIPAAPowerShellTechnology - MS
Sr. Network Security Engineer III (6852) with Security Clearance
NewMetroStar Systems Inc.
Washington, DC🇺🇸$207k - $320k/yrHybrid21 hours agoAgileZero TrustTechnology - IT
CyberArk Consultant
Infosys Technologies Ltd
Richardson, TX🇺🇸On-site2 weeks agoAWSAzureGoogle Cloud+1Technology - IN
CRIBL Data Modeling Security Engineer
NewInnosoul inc
United States🇺🇸On-site21 hours agoBashPythonTechnology - ST
IAM Engineer
NewSRI Tech Solutions
United States🇺🇸Hybrid21 hours agoSQLMFAOAuth+10Technology