> Markdown version of [/jobs/ext/2279340-identity-access-management-iam-info-security-controls-specialist](https://www.wearedevelopers.com/jobs/ext/2279340-identity-access-management-iam-info-security-controls-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Identity & Access Management (IAM) Info Security Controls Specialist - **Company:** Bank of America - **Location:** Denver, CO, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Active Directory, Artificial Intelligence, Data Analysis, Application Services, Software Documentation, Cyber Security, Information Systems, Identity and Access Management, Information Security Management, Machine Learning, Ping (Networking Utility), Power BI, Azure Active Directory, Cloud Services, Zero Trust Network Access, Salesforce.Com, Software Engineering, SQL Databases, Tableau (Software), Stripe, Data Management, SailPoint, Serverless Computing, User Administration - **Published:** August 28, 2026 - **Apply:** https://ghr.wd1.myworkdayjobs.com/Lateral-US/job/Boston/Identity---Access-Management--IAM--Info-Security-Controls-Specialist_26031564 ## About the Role * 5+ years of bank and finance industry hands-on experience in Identity Governance & Administration (IGA) or Identity and Access Management (IAM), managing identity lifecycle and associated enterprise initiatives. * 5+ years implementing and governing IAM cloud solutions, controls, and capabilities. * High proficiency, experience and working knowledge of Active Directory, Entra ID (Azure AD), SailPoint, Ping Identity, and connector frameworks, other mainstream IAM products. * Experience supporting identity governance, authorization models, or access control frameworks for AI-enabled platforms, cloud-native services, emerging technologies, and large-scale digital transformation initiatives. * Familiarity with common Information security and data protection frameworks and standards. * Familiarity with Zero Trust architecture, FIDO2, and passwordless authentication concepts. * Proficiency in data analytics and reporting tools (SQL, Tableau, PowerBI) for compliance and risk metrics. * Strong ability to articulate data-driven insights and partner effectively with stakeholders to drive risk reduction and compliance with IAM Standards. * Advanced proficiency and analytical skills, data management and data analysis with strong attention to detail, and background in quality assurance. * Excellent problem-solving, documentation, and communication skills with the ability to work effectively across cross-functional teams. ## Description At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates' physical, emotional, and financial wellness through affordable, competitive and flexible benefits. We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve. Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! Global Information Security (GIS) is responsible for protecting the bank's information systems, confidential and proprietary data, and customer information. GIS develops and executes the bank's information security strategy, manages the enterprise security program, identifies and remediates vulnerabilities, and operates a global security operations center that monitors, detects, and responds to cybersecurity incidents. Within GIS, Identity & Access Management (IAM) ensures the right individuals have the right access to the right resources at the right time-across increasingly heterogeneous environments and within rigorous compliance standards. What you can expect in Identity & Access Management In today's connected ecosystem, safeguarding user identity is critical to the safety and success of our global workforce. The IAM team partners closely within Global Information Security, all Lines of Business, and second- and third-line functions. This highly visible role involves frequent engagement with senior leaders and key stakeholders. If you excel in dynamic, fast-paced, global environments and are passionate about modern security technologies, this is the place for you. You will collaborate with subject-matter experts, drive meaningful risk reduction, support operational excellence, and help strengthen the bank's overall identity security posture. Role Overview: The IAM Info Security Controls Specialist analyzes, strengthens, and secures the company's IAM systems and risk posture across End User Access Management and Application Services. This role collaborates across Lines of Business and Technology teams to continuously enhance access control compliance, improve governance programs, and ensure swift and accurate adherence to IAM Standards. * Establish and maintain strong partnerships across GIS, Global Technology (GT), Cyber Security Technology (CST), Third Party Management, Global Compliance & Operational Risk (GCOR), internal audit, and external regulators; provide accurate and timely audit and regulatory responses. * Partner with security, technology, and business teams to design, implement, and scale identity and access controls supporting Frontier AI, machine identities, emerging digital capabilities, and next-generation governance frameworks. * Perform Quality Assurance (QA) activities to validate access control compliance, monitor control health, and support accurate and sustainable metrics reporting. * Monitor and support GT application adherence to IAM controls; manage governance programs, respond to program inquiries, maintain source-of-record updates, execute ARM ticket management, and ensure comprehensive program documentation. * Identify opportunities to de-risk IAM controls by analyzing current capabilities, detecting framework or process gaps, and recommending targeted enhancements aligned with enterprise security strategy., * Maintain high-quality QA documentation, audit artifacts, process workflows, and training materials to support transparency and repeatability. * Lead QA governance activities for End User Access Management and Application Services, ensuring alignment with IAM Standards and enterprise policies. * Manage and maintain exceptions to the IAM Standard, ensuring appropriate risk justification, approvals, and periodic recertification per governance protocols. * Ensure technology systems meet enterprise standards and fully comply with regulatory, legal, and risk requirements, escalating concerns as needed. * Support Software Development Life Cycle (SDLC) initiatives, including requirements validation, control testing, and providing risk-focused signoff for application changes prior to implementation. * Establish and maintain strong partnerships across GIS, Global Technology (GT), Cyber Security Technology (CST), Third Party Management, Global Compliance & Operational Risk (GCOR), internal audit, and external regulators; provide accurate and timely audit and regulatory responses. * Partner with security, technology, and business teams to design, implement, and scale identity and access controls supporting Frontier AI, machine identities, emerging digital capabilities, and next-generation governance frameworks. * Perform Quality Assurance (QA) activities to validate access control compliance, monitor control health, and support accurate and sustainable metrics reporting., 2 Hours Ago Hybrid Denver, CO, USA 110K-204K Annually Senior level 110K-204K Annually Senior level Machine Learning * Payments * Security * Software * Financial Services Leads software engineering teams responsible for vulnerability remediation, application ownership, application support, and delivery. Oversees development and maintenance projects, security and compliance, operational standards, resource planning, service quality, and continuous improvement. Coaches employees, manages performance and career development, coordinates cross-functional stakeholders, and ensures applications meet business requirements and quality standards. Xero Business Growth Specialist 2 Hours Ago Hybrid Denver, CO, USA Entry level Entry level Cloud * Fintech * Information Technology * Machine Learning * Software Drive revenue growth across small and medium-sized business accounts through high-volume outbound campaigns. Promote Stripe and GoCardless integrations, manage conversion pipelines, track sales activity and metrics in Salesforce, and provide insights to improve messaging and conversions. The role requires consultative customer communication, consistent target achievement, and collaboration with Marketing, Data Science, and Customer Success teams. Top Skills: GocardlessSalesforceStripe Wells Fargo ## Related Videos - [Navigating Growth, Scaling Challenges, and Office Expansions with David Singleton, CTO at Stripe](https://www.wearedevelopers.com/videos/100362-navigating-growth-scaling-challenges-and-office-expansions-with-david-singleton-cto-at-stripe) - [Beyond Dashboards: Fixing Text-to-SQL with Semantic RAG](https://www.wearedevelopers.com/videos/2036-beyond-dashboards-fixing-text-to-sql-with-semantic-rag) - [How to govern Vibe Coding for the Enterprise](https://www.wearedevelopers.com/videos/100290-how-to-govern-vibe-coding-for-the-enterprise) - [Build Your Own Subscription-based Course Platform](https://www.wearedevelopers.com/videos/321-build-your-own-subscription-based-course-platform) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [REST, GraphQL, gRPC, and more: A comparison of modern API styles](https://www.wearedevelopers.com/videos/100247-rest-graphql-grpc-and-more-a-comparison-of-modern-api-styles) ## Related Articles - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)