Senior IAM Analyst
Role details
Job location
Tech stack
Job description
A Senior IAM Analyst is required to join Man Group's Identity and Access Management team. The team is responsible for identity governance across the organisation, including Joiner, Mover and Leaver lifecycle management, access provisioning and deprovisioning, regulatory recertification, and the ongoing implementation of SailPoint IdentityNow (SaaS) as the firm's Identity Governance and Administration (IGA) platform.
This is a hybrid role spanning BAU operations and project delivery. The successful candidate will maintain day-to-day IAM services to a high standard while actively contributing to the design, build, and rollout of SailPoint SaaS, including application onboarding, connector configuration, workflow design, and role modelling. Experience in financial services or a similarly regulated environment is essential, given the audit rigour and regulatory expectations of the role.
We are looking for someone who thinks critically about how things should work, as well as understanding how they currently work.
Role Responsibilities
BAU Operations (60%)
-
Ensure Joiner, Mover and Leaver processes are executed in line with company policies, with all access changes auditable and traceable.
-
Manage access requirements for internal and external users across internal and third-party applications.
-
Create and manage access review campaigns within SailPoint, including preparation, testing, launch, business liaison, and remediation of access removals.
-
Manage the IAM support queue, team mailbox, and Slack channel, ensuring timely and high-quality responses.
-
Monitor SailPoint jobs and processes daily, triaging and resolving issues proactively.
-
Support internal and external audits by gathering evidence and preparing responses.
Project Delivery & Continuous Improvement (40%)
-
Contribute to the SailPoint SaaS implementation programme: onboarding applications, defining connectors, building workflows, and testing configurations.
-
Work with business stakeholders to define and implement role-based access control (RBAC) models for applications.
-
Write and maintain Python scripts for data transformation, reporting, and process automation (e.g. CSV manipulation, API calls, reconciliation checks).
-
Build and consume REST API integrations between SailPoint, Active Directory, HR systems (Workday), and third-party applications.
-
Identify and implement process improvements, with a bias towards automation over manual toil.
-
Explore and adopt automation and emerging AI tooling to reduce manual effort and improve IAM processes.
-
Contribute to team documentation, knowledge sharing, and the development of operational runbooks.
Requirements
Do you have experience in Workday?, * 3 to 8 years of experience in Identity and Access Management within financial services or a similarly regulated environment.
-
Hands-on experience with an IGA platform (SailPoint IdentityNow preferred; SailPoint IIQ, Saviynt, or similar accepted).
-
User access review and recertification campaign experience.
-
Comfortable working with data and technology beyond Excel. This includes Python scripting for automation and data manipulation, working with REST APIs, and transforming or reconciling large datasets.
-
Active Directory administration experience.
-
Experience with application onboarding to an IGA platform, including access analysis, entitlement modelling, and connector configuration.
-
Strong communication skills, able to engage with both technical teams and senior business stakeholders.
-
A problem-solving mindset: someone who asks "why do we do it this way?" and proposes better alternatives.
Advantageous
-
Experience working on an IGA implementation or migration project.
-
Familiarity with SailPoint SaaS (ISC) APIs, transforms, and workflow builder.
-
Experience with ServiceNow, JIRA, or similar ITSM/workflow tools.
-
Interest in leveraging AI/ML tools for process automation and a willingness to develop skills in this area.
Benefits & conditions
Pulled from the full job description
- Sick pay
- Company pension
- Paid volunteer time
- Discounted gym membership