> Markdown version of [/jobs/ext/1031034-analyst-identity-and-access-management](https://www.wearedevelopers.com/jobs/ext/1031034-analyst-identity-and-access-management). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Analyst, Identity and Access Management - **Company:** American Bureau of Shipping - **Location:** Houston, TX, United States - **Experience:** Expert - **Salary:** $65,000.0 - $85,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Data Analysis, Systems Engineering, Audit Trail, User Authentication, Identity and Access Management, Python (Programming Language), Lightweight Directory Access Protocols (LDAP), OAuth, Oracle (Applications), Windows PowerShell, Role-Based Access Control, Openid Connect, Azure Active Directory, Security Assertion Markup Language (SAML), Single Sign-On, Scripting, Cyberark, Test Scripts, Information Technology, Deployment Automation, SailPoint - **Published:** June 9, 2026 - **Apply:** https://www.jofdav.com/jobs/58356663-analyst-identity-and-access-management ## About the Role * Hands-on experience with identity directories and access controls (e.g., Active Directory and/or Entra ID) including users, groups, roles, and policies. * Working knowledge of authentication and federation concepts (MFA, SSO, SAML 2.0, OAuth 2.0, OpenID Connect, LDAP). * Understanding of access control fundamentals (least privilege, separation of duties, privileged vs. non-privileged accounts, service accounts). * Experience using ticketing/workflow tools to manage requests, approvals, and audit trails. * Experience with identity governance administration (IGA) tools (e.g., Saviynt, SailPoint) including access requests, provisioning integrations, and access certifications. * Experience with PAM solutions (e.g., Saviynt, BeyondTrust, CyberArk) and privileged access workflows. * Scripting/automation experience (PowerShell, Python) to automate provisioning tasks and reporting. ## Description The IAM Analyst role will work with the IAM team, business and application owners eliciting Application Onboarding requirements, testing validation, and performing data analysis to ensure correctness. Research, analyzes, and documents data, requirements, workflow/ processes, functionality and/or controls related to Identity & Access Management. Develops and evaluates information, and prepares recommendations based on analysis for use in decision-making. Applies extensive and diversified knowledge of principles and practices in broad areas of assignments and related fields. Acts as a liaison or subject matter expert to business and technical stakeholders transitioning to new IAM processes., * Administer and support IAM platforms and core identity services (e.g., Microsoft Active Directory/Azure AD (Entra ID), SSO, MFA, directory integrations, and ABS Identity Hub). * Execute identity lifecycle processes (joiner/mover/leaver), including account creation, updates, disablement, and timely deprovisioning based on approved requests according to standards. * Support privileged access management (PAM) controls (e.g., privileged accounts, just-in-time access, break-glass procedures), including access request workflows and access reviews. * Gather requirements for onboarding applications for provisioning access and access certifications, meeting appropriate controls. * Analyze data in sources such as Ivanti ITSM, Active Directory, Entra ID, Oracle, etc. to provide use case input to stakeholders. * Support business and technical stakeholders in transitioning to new IAM capabilities and services across various IAM domains such as Access Management, Identity Lifecycle Management and Privileged Access Management. * Maintain continuous and strong security posture across all business and ABS IAM stakeholders via ongoing, proactive reviews of account access and authorization, and designing short- and long-term improvements to ensure violations are remediated. * Create appropriate business test cases and test scripts and perform testing to ensure completeness. * Assist stakeholders in understanding IAM capabilities and functions., * Experience supporting compliance and audit requests (e.g., SOX, ISO 27001/27002, NIST, CMMC) and producing audit-ready evidence. * Collaborate with other business units to analyze and improve processing procedures and resolve problems. * Work with peers, business units and/or project teams, and vendors to ensure business needs are fully communicated, documented and satisfied. * Monitor and analyze key performance indicators and establish processes and methodologies for preventative mitigation. * Strong written and verbal communication skills, with the ability to explain IAM concepts to both technical and non-technical stakeholders. * Ensure compliance with ABS standards and best practices. * Performs other related duties as assigned. Minimum years of Experience * 5+ years of experience with operational, governance, or business and technical engagement function within an IAM organization, preferably in a financial services organization. Required/Preferred Education Requirements * Bachelor's degree in Computer Science, Information Systems Engineering, Business or other related field, or the equivalent combination of education, training or experience. Required/Preferred Professional Requirements None Country Requirements ITAR Compliant Reporting Relationships Reports directly to IMS Management, as appropriate. Direct Reports None Disclaimer Clause This job description is not intended, and should not be construed, to be an all-inclusive list of responsibilities, skills, efforts or working conditions associated with the job of the incumbent. It is intended to be an accurate reflection of the principal job elements essential for making a fair decision regarding the pay structure of the job. Working Conditions Work is primarily sedentary; exerting up to 10 pounds of force occasionally, and/or, a negligible amount of force frequently, or, constantly to lift, carry, push, pull or otherwise move objects. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Un-complicate authorization maintenance](https://www.wearedevelopers.com/videos/889-un-complicate-authorization-maintenance) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers)