Identity and Access Management (IAM) Analyst - Journeyman

ASM
San Antonio, TX, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$75,000.0 - $90,000.0
Working hours
Regular working hours
Job source

Tech stack

Active Directory Business Software Cyber Security Information Systems Multi-Factor Authentication Identity and Access Management Role-Based Access Control Azure Active Directory Security Information and Event Management User Provisioning Software Computer Networking Systems Cloud Platform System
+6 more
Okta SC Clearance Information Technology Tools for Reporting SailPoint User Accounts

Job description

The Identity and Access Management (IAM) Analyst - Journeyman provides identity and access management support across mission-critical systems by administering user accounts, enforcing least privilege, and maintaining secure access controls in complex enterprise networks. This role oversees full user lifecycle activities including onboarding, role changes, and offboarding to ensure timely, accurate provisioning and deprovisioning across applications and directories in a highly regulated federal IT environment. The IAM Analyst develops and maintains IAM policies, procedures, and reporting to support audit readiness, regulatory compliance, and DoD 8140-aligned security requirements while collaborating with cybersecurity, operations, and business teams to implement multi-factor authentication and identity governance practices., * p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Administer user provisioning, modification, and deprovisioning workflows across identity management platforms, directories, and business applications to maintain accurate, timely access for all workforce identities.

  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Manage role-based access control structures and groups in systems such as Active Directory and enterprise IAM tools, ensuring least privilege and segregation of duties are consistently enforced.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Conduct periodic access reviews, certifications, and reconciliations to validate entitlements, remediate excess or orphaned accounts, and support internal and external audits.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Configure and support authentication and authorization mechanisms, including password policies, multi-factor authentication, and session controls aligned with organizational security standards.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Develop and maintain IAM procedures, standard operating guides, and evidence repositories to demonstrate compliance with cybersecurity policies, regulatory frameworks, and DoD 8140 IAM baseline expectations.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Monitor IAM logs and access events for anomalies, investigate access-related incidents, and coordinate remediation activities with security and operations teams.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Use identity governance solutions and reporting tools to generate metrics on account status, access levels, and compliance posture for management and audit stakeholders.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Provide guidance to users on account-related issues, troubleshoot access problems, and promote identity and access management best practices across the enterprise., Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM’s overall compensation and benefits package for employees.

Requirements

  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Bachelor’s degree (or equivalent experience) in Information Technology, Computer Science, Cybersecurity, or related field.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> At least 4-6 years of experience administering IAM processes and tools in complex, highly regulated IT environments, including user provisioning, access management, and account lifecycle controls.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Demonstrated experience managing user accounts, permissions, and access controls across directories and applications, including Active Directory or equivalent enterprise IAM platforms.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Ability to meet DoD 8140 IAM requirements and hold an active Secret clearance.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> U.S. citizenship required to support government information systems and clearance eligibility.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Proven experience conducting access reviews, certifications, and audit support activities in an enterprise or federal environment., * p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Experience with enterprise IAM and identity governance platforms (e.g., SailPoint, Okta, Azure AD) supporting hybrid on-prem and cloud infrastructures.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> One or more DoD 8140-recognized IAM or security certifications (e.g., Security+, CISSP, CAP, CISM) aligned to privileged access on government information systems.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Hands-on exposure to privileged access management concepts and tools for securing administrative and high-risk accounts.
  • p]:pt-0 [&>p]:mb-2 [&>p]:my-0”> Experience working with SIEM or logging solutions to monitor access events and support incident investigations., The physical requirements described in “Knowledge, Skills and Abilities” above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, “light office duties’ or “lifting up to 50 pounds” or “some travel” required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.

About the company

ASM Research, An Accenture Federal Services Company

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

49 sec

Debugging cloud permissions using IAM policy simulators

Modood Alvi · WWC 2025

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

2:36 min

Managing cloud access credentials during project handovers

Martin Beránek · LIVE

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · WWC 2023

2:20 min

Addressing security risks with central single sign-on setups

Gift Egwuenu · WWC 2023

1:52 min

Identifying environments that require strict credential management

Moritz Johner · WWC 2023

Videos

See all

Related articles

See all