Identity & Access Management (IAM) Information Security Controls Specialist

Charlotte, United States

Bank of America

What would you like the power to do? At Bank of America, our purpose is to help make financial lives better through the power of every connection.

View all jobs at Bank of America

Apply now Apply later

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being a diverse and inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.

Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Summary:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

What you can expect in Identity & Access Management:

In today’s highly connected world, managing and securing the identity of users is essential to the safety and success of our workforce. The Identity & Access Management (IAM) team works within Global Information Services (GIS) and in close participation with all other LOB teams as well as second and third line of defense partners. This role is highly visible and requires frequent interaction with senior management and key stakeholders.  

Are you passionate about the latest IT technologies and thrive in a fast-paced international environment? In a typical day, you may work with other team members on the book of work, operational concerns, or risk items. You will help overcome obstacles and maintain good relationships with key stakeholders across the bank to ensure timely and effective delivery. We offer you the opportunity to collaborate with passionate competent people, experts in their field. We thrive on being challenged and everything we do is anchored in managing risk for the bank.

The Identity & Access Management (IAM) Info Security Controls Specialist will analyze, strengthen, and secure the company's IAM systems and overall risk posture for End User Access Management & Application Services. This role focuses on collaboration across all Lines of Business, CIO teams, to continuously improve the organization's core access control compliance. The Controls Specialist will analyze controls to identify and document inefficiencies, and design/prioritize improvement opportunities to enable swift adherence.

The role also will actively apply knowledge of laws, rules, regulations, and information security concepts (e.g., NIST, COBIT, ISO) to establish and maintain policies, validate alignment of processes and controls to requirements, report on adherence to policy requirements and maintain governance programs related to IAM Standard controls. Job expectations include using data analytics, governance process management, and partnering with internal teams to verify policy compliance, identify gaps in coverage, and support remediation activities.

Responsibilities:

  • Establish and maintain strong partnership with other Global Information Security (GIS) functions, Global Technology (GT), Cyber Security Technology (CST), Third Party management, Global Compliance and Operations Risk (CGOR), internal audit, and external regulatory agencies. Provide audit and regulatory responses within the specified periods.

  • Perform Quality Assurance activities to support access control compliance and control metrics.

  • Support and monitor GT application compliance to controls. Oversee and drive governance program, support program inquiries, updating source of record, manage ARM ticketing queue, and maintain program documentation.

  • Maintain QA documentation, audit documentation, and training materials.

  • Drive Quality Assurance Governance for End User Access Management & Application Services.

  • Maintain exceptions to IAM Standard according to governance processes.

  • Ensures Information Technology systems meet enterprise standards, adhere to applicable rules, laws, and regulations, and comply with appropriate risk appetite.

  • Assist with Software Development Life Cycle (SDLC) and testing of application changes with signoff prior to implementation.

Required Qualifications:

  • 5+ years relevant hands-on experience in identity and access certification related fields in a large and complex organization.

  • 3-5 years’ experience implementing IAM Cloud solutions, controls, and capabilities.

  • Proficient in articulating facts and data-driven plans and ability to partner with stakeholders to implement intended solutions to drive risk reductions and adherence to relevant Access Management requirements within IAM Standard.

  • Strong attention to detail, advanced analytical skills, and quality assurance experience.

  • Excellent communication and presentation skills.

  • Excellent organizational skills and be able to effectively prioritize multiple tasks.

  • Proficient in data management which includes strong data analytical capabilities with advanced understanding of the collection and management of metadata.

  • Experience with Tableau and SQL.

Shift:

1st shift (United States of America)

Hours Per Week: 

40

Pay Transparency details

US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - NJ - Jersey City - 101 Hudson St - 101 Hudson (NJ2101)

Pay and benefits information

Pay range

$76,500.00 - $136,400.00 annualized salary, offers to be determined based on experience, education and skill set.

Discretionary incentive eligible

This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.

Benefits

This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
Apply now Apply later
Job stats:  2  0  0
Category: IAM Jobs

Tags: Analytics Cloud COBIT Compliance Data Analytics Governance IAM NIST SDLC Security strategy SOC SQL Strategy Vulnerabilities

Perks/benefits: Career development Transparency Wellness

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.