Job Description
What is the opportunity?We are seeking a dedicated Senior IAM Systems Support Analyst who will play a key role in supporting, managing, and enhancing our Authorization services, specifically focusing on the fine-grained authorization capabilities. This role involves managing fine-grained, policy-based access control for resources (e.g. applications, APIs, microservices, and databases, etc.) ensuring alignment with our organization’s security protocols and compliance standards.What will you do?
Develop, implement, and maintain authorization policies using a combination of attribute-based access controls (ABAC), policy-based access controls (PBAC) and role-based access controls (RBAC) to ensure secure and efficient access control across all platforms
Integrate the Enterprise Authorization Services with various applications, APIs, and microservices, ensuring seamless enforcement of access policies.
Provide guidance to enterprise teams and users on policy configurations, debugging access issues, and best practices for creating and managing access policies (rules and configurations)
Investigate and resolve production issues related to authorization policies, access denials, policy misconfigurations, and system integrations, ensuring minimal downtime
Work closely with IAM, Business and IT partners to gather requirements and design access controls that align with security strategies and operational needs
Maintain comprehensive documentation of authorization policies and use access controls to support audits, ensure compliance, and facilitate continuous improvement. Documents doesn’t limit to technical documentation for troubleshooting, policy templates, and system architecture
Regularly review access controls reports to identify potential risks or violations and provide recommendations for enhancements
Proactively monitor authorization services, identify performance bottlenecks, conflicting policies, excessive access and security risks, and implement optimizations to enhance security and scalability
Assist in designing and deploying access control policies
Contribute to automation initiatives (e.g., CI/CD pipelines) and participate in root-cause analysis to prevent recurring issues
Must-have:
Bachelor’s degree in computer science, Information Technology, or a related field.
5+ years in IAM roles, with hands on experience in implementing and supporting authorization solutions.
Familiarity with the platform's three primary modules:
Policy Discovery, Authorization Management, and Dynamic Authorization Service.
Highly skilled with load balancers (F5, GTM, and LTM), firewalls, SSL certificates, SSO, and Disaster Recovery concepts.
Solid understanding of Attribute-Based Access Control (ABAC) models and Policy-Based Access Control (PBAC) mechanisms.
Proficiency in Management APIs and implementing Policy-as-Code to automate scalability and security workflows.
Writing complex queries to troubleshoot attribute fetching from relational databases or non-relational sources. (e.g. SQL, Postgre
SQL, Mongo
DB)
Experience with integrating IAM solutions into diverse IT environments, including AWS, Azure and GCP and on-premises systems.
Deep expertise in LDAP and Active Directory to manage user hierarchies and metadata that feed into access policies.
Strong problem-solving abilities with a keen eye for details in analyzing and resolving complex authorization issues.
Excellent verbal and written communication skills, with the ability to collaborate effectively across teams and articulate technical concepts to non-technical stakeholders.
Knowledge of scripting or automation tools (e.g., Power Shell, Python, SQL JSON and/or Bash) to manage user accounts and streamline IAM processes.
Familiarity with industry regulations and compliance frameworks like GDPR, HIPAA, SOX, PCI-DSS, or ISO/IEC 27001, and how they impact IAM policies and procedures.
Knowledge with audit regulatory requirements and risk and compliance processes.
Knowledge with application performance monitoring and events detection tools such as Dynatrace, Zabbix, SCOM, Moogsoft, QRadar, Splunk, Logstash, SIEM, etc.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: