Senior Security Analyst - IAM & Cloud
Overland Park, KS, US
Black & Veatch
Black & Veatch is a global engineering, procurement, consulting and construction company specializing in infrastructure development.
Together, we own our company, our future, and our shared success.
As an employee-owned company, our people are Black & Veatch. We put them at the center of everything we do and empower them to grow, explore new possibilities and use their diverse talents and perspectives to solve humanity's biggest challenges in an ever-evolving world. With over 100 years of innovation in sustainable infrastructure and our expertise in engineering, procurement, consulting and construction, together we are building a world of difference.
Company : Black & Veatch Corporation
Req Id : 107724
Opportunity Type : Staff
Relocation eligible : No
Full time/Part time : Full-Time
Project Only Hire : No
Visa Sponsorship Available: No
Why Black and Veatch
Black & Veatch allows you to lend your talent and perspective to humanity’s biggest challenges in a flexible environment where you are empowered to grow and explore new possibilities. We offer competitive compensation; 401K match and benefits that start day 1.
Our hybrid environment allows you to balance your work and personal life. At Black & Veatch, you own your career with purpose and meaning. You are empowered to grow and explore new possibilities at every step of your career journey. Bring your big ideas knowing you are safe to be who you are and speak up with concerns or questions and put your diverse talents and perspectives to use.
The Opportunity
The Senior Security Analyst – IAM & Cloud Security will support the organization's existing IAM systems at an operational level and will also participate in Cloud Security projects to improve Cloud security posture at Black & Veatch. The Analyst will assist with the deployment and maintenance of Microsoft Entra ID configurations and policies, Privileged Account Management (PAM) tools, Endpoint privilege management tools, multi-factor and passwordless authentication technologies, Cloud Security initiatives and serve as an escalation point for security issues to the BV Service Desk.
Key Responsibilities
- Provide operational support for BV IAM and Cloud security solutions.
- Conduct regular IAM system reviews and health checks to ensure optimal performance and to identify and mitigate security risks.
- Integrate IAM systems with existing and new applications.
- Integrate cloud security tools and processes into multi cloud environments including Azure, GCP, AWS, OCI, etc.
- Work with IR team to ensure the proper functioning of IAM and cloud security related reporting and alerting.
- Assist with projects to improve existing IAM tools or deploy new IAM solutions.
- Support Identity Governance Administration and Lifecycle Management processes.
- Document relevant IAM and Cloud security processes and procedures, including the creation of KB articles.
- Assist and support the development of IAM and cloud security controls at BV.
- Manage and remediate cloud security findings by leveraging and operationalizing CSPM tools.
- Collaborate with other IT staff to ensure compliance with identity controls and cloud security best practices.
- Provide guidance and recommendations to stakeholders on cloud security and identity related issues.
- Implement IAM automation and process implementation.
- Participate in the BV change management process to implement and peer review IAM and Cloud related changes.
- Support audit related IAM activities.
- Perform other duties as assigned.
Management Responsibilities
Individual ContributorPreferred Qualifications
- One or more cybersecurity or Identity certifications: CISSP, CIAM, CISM, Microsoft Identity Certifications, etc.
- 5+ years of operational IAM and Cloud Security experience
- Knowledge of and experience with common IAM & Cloud tools and technologies: Delinea, SailPoint, Microsoft Entra, Authentication protocols (Kerberos, OAuth 2.0, OIDC, LDAP, RADIUS, SAML, etc.), Microsoft Authenticator Application, FIDO2, Windows Hello for Business (WHFB), SSO/Federation, Identity Governance & Administration, WIZ CSPM
- Multi-factor technologies including phish-resistant and passwordless.
- Knowledge of the authentication and identity technology for Windows, Linux, AWS, GCP, and Azure.
- Familiarity with Zero Trust design principles.
- Familiarity with underlying architectural concepts related to identity and cybersecurity. (Identity Providers, Networking, OS fundamentals, Active Directory, Entra ID, B2B concepts)
- Understanding and curiosity surrounding current threats and trends present in the IAM domain.
- Ability to manage multiple projects at the same time, communicate well verbally and in writing, and be able to prioritize task effectively.
- Action and results-oriented with the ability to overcome obstacles and able to work well under deadlines in a changing environment.
- Excellent verbal, writing, and interpersonal skills to effectively document and communicate findings and escalate critical issues to stakeholders.
- Willingness to learn innovative technologies and maintain industry knowledge.
- Experience with ServiceNow.
- Experience with the Delinea and SailPoint platform.
Minimum Qualifications
- Bachelor’s degree in information security (or equivalent work experience).
- 5+ years of IAM and Cloud focused security experience.
- All applicants must be able to complete pre-employment onboarding requirements (if selected) which may include any/all of the following: criminal/civil background check, drug screen, and motor vehicle records search, in compliance with any applicable laws and regulations.
Work Environment/Physical Demands
Typical office environment.
Competencies
Action orientedCommunicates effectivelyCollaboratesSalary Plan
ITS: Information Technology ServiceJob Grade
006Black & Veatch endeavors to make www.bv.com/careers accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process because of a disability, please contact the Employee Relations Department at +1-913-359-1622 or via our accommodations request form. This contact information is for disability accommodation requests only; you may not use this contact information to inquire about the status of applications. General inquiries about the status of applications will not be returned.
Black & Veatch is committed to being an employer of choice by creating a valuable work experience that keeps our people engaged, productive, safe and healthy.
Our comprehensive benefits portfolio is a key component of this commitment and offers an array of health care benefits including but not limited to medical, dental and vision insurances along with disability and a robust wellness program.
To support a healthy work-life balance, we offer flexible work schedules, paid vacation and holiday time, sick time, and dependent sick time.
A variety of additional benefits are available to our professionals, including a company-matched 401k plan, adoption reimbursement, tuition reimbursement, vendor discounts, an employment referral program, AD&D insurance, pre-taxed accounts, voluntary legal plan and the B&V Credit Union. Professionals may also be eligible for a performance-based bonus program.
We are proud to be a 100 percent ESOP-owned company. As employee-owners, our professionals are empowered to drive not only their personal growth, but the company's long-term achievements - and they share in the financial rewards of the success through stock ownership.
By valuing diverse voices and perspectives, we cultivate an authentically inclusive environment for professionals and are able to provide innovative and effective solutions for clients.
BVH, Inc., its subsidiaries and its affiliated companies, complies with all Equal Employment Opportunity (EEO) affirmative action laws and regulations. Black & Veatch does not discriminate on the basis of age, race, religion, color, sex, national origin, marital status, genetic information, sexual orientation, gender Identity and expression, disability, veteran status, pregnancy status or other status protected by law.
For our EEO Policy Statement, please click here. If you’d like more information on your EEO rights under the law, please click here and here.
Notice to External Search Firms: Black & Veatch does not accept unsolicited resumes and will not be obligated to pay a placement fee for unsolicited resumes. Black & Veatch Talent Acquisition engages with search firms directly for hiring needs.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Active Directory Automation AWS Azure CISM CISSP Cloud Compliance CSPM GCP Governance IAM Kerberos LDAP Linux SailPoint SAML SSO Windows Zero Trust
Perks/benefits: 401(k) matching Career development Competitive pay Equity / stock options Flex vacation Health care Insurance Relocation support Salary bonus Startup environment Team events Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.