FLEX Senior Manager, Identity and Access Management - Role-Based Access Control
Role details
Job location
Tech stack
Job description
- Own the RBAC product vision, roadmap, and governance strategy, ensuring alignment with Marriott security, compliance, and business priorities.
- Serve as the functional lead for RBAC governance.
- Translate governance objectives into product capabilities, backlog priorities, and measurable outcomes.
- Act as primary interface to RBAC oversight and leadership forums.
Role & Persona Lifecycle Management
- Own the end-to-end RBAC lifecycle including persona creation, modification, and decommissioning.
- Ensure job code to persona mappings, application role mappings, and metadata are governed through approved SOPs.
- Partner with HR, application teams, and persona owners to ensure access models accurately reflect business roles.
Governance, Compliance & Metrics
- Define, monitor, and report RBAC governance KPIs and risk indicators.
- Ensure RBAC controls meet regulatory, audit, and policy requirements.
- Lead RBAC participation in audits and access reviews, addressing gaps and remediation actions.
Operational Oversight
- Provide functional oversight of RBAC-related ServiceNow requests executed by managed service teams.
- Ensure timely, accurate execution of RBAC changes in alignment with governance outcomes and SLAs.
Product Delivery & Planning
- Own RBAC backlog prioritization, PI planning, and sprint execution.
- Plan RBAC delivery horizons across current and future quarters.
- Balance near-term governance needs with longer-term RBAC maturity goals.
Documentation & Continuous Improvement
- Maintain RBAC governance documentation, SOPs, and runbooks.
- Identify and implement process and tooling improvements to enhance efficiency and adoption.
- Stay current with industry trends and emerging technologies related to IAM, RBAC, ABAC, and access governance.
Requirements
- 7 years of progressive, related industry experience.
- 5 years of hands-on experience with Identity Governance & Administration (IGA) platforms (e.g., SailPoint IdentityIQ, Saviynt).
- 3 years of leadership experience in RBAC governance, role lifecycle management, or identity governance programs.
- Strong understanding of IGA services including authoritative sources, role and entitlement management, access reviews, and account lifecycle management.
- Experience onboarding applications into IGA platforms and aligning access models to RBAC standards.
- Experience operating RBAC or identity governance capabilities at enterprise scale with federated ownership models.
- Experience using ServiceNow for intake, approvals, workflow tracking, and RBAC-related RITMs.
- Intermediate to advanced Excel and data analysis skills for governance metrics, trending, and executive reporting.
- Strong understanding of enterprise information security, regulatory requirements (SOX, GDPR, HIPAA), and audit expectations.
- Experience working in outsourced or managed service delivery models.
- Experience with Agile delivery models, PI / sprint planning, and tooling such as Jira.
Benefits & conditions
Full-time positions also offer coverage for medical, dental, vision, health care flexible spending account, dependent care flexible spending account, life insurance, disability insurance, accident insurance, adoption expense reimbursements, and paid parental leave.
Washington Applicants Only: Employees will accrue paid sick leave, 0.0384 PTO balance for every hour worked and be eligible to receive minimum of 9 holidays annually.
Marriott HQ is committed to a hybrid work environment that enables associates to Be connected. Headquarters-based positions are considered hybrid, for candidates within a commuting distance to Bethesda, MD; candidates outside of commuting distance to Bethesda, MD will be considered for Remote positions.