> Markdown version of [/jobs/ext/3119588-identity-and-access-management-analyst-i](https://www.wearedevelopers.com/jobs/ext/3119588-identity-and-access-management-analyst-i). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Identity and Access Management Analyst I - **Company:** Vibrant - **Location:** United States (Remote available) - **Experience:** Starter - **Salary:** $67,200.0 - $113,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Amazon Web Services, Antivirus Softwares, Software System Penetration Testing, User Authentication, Microsoft Azure, Biometrics, Burp Suite, Software as a Service, Cloud Computing, Cloud Computing Security, Code Review, CompTIA Security+, Cyber Security, Information Systems, System Configuration, Data Security, Disaster Recovery, Multi-Factor Authentication, Identity and Access Management, Information Technology Audit, Networking Hardware, Internet Protocol, Internet Security, Intrusion Detection Systems, Network Packet, Information Systems Security Architecture Professional, Lightweight Directory Access Protocols (LDAP), Microsoft Software, Network Administration, Network Protocols, Nmap, Office Suite, OpenID, Protocol Independent Multicast, Openid Connect, Reverse Engineering, Security Assertion Markup Language (SAML), Information Technology Security Auditing, Security Information and Event Management, Single Sign-On, Sniffers, TCP/IP, Transmission Control Protocol (TCP), User Provisioning Software, Google Cloud, Data Storage Technologies, Okta, Software Security, Malware, Cyber Threat Analysis, Firewalls (Computer Science), Information Technology, Data Management, Static Application Security Testing, Vulnerability Analysis, User Accounts, Dynamic Application Security Testing - **Published:** September 28, 2026 - **Apply:** https://www.careerbuilder.com/job-details/iam-analyst-i--9b68c324-b975-4bc6-b4c8-8f0d6b45b6dc ## About the Role * General knowledge of security frameworks and controls such as: NIST (CSF, SP 800-53, SP 800-171), CIS, CSA, ISO27000. * Some experience with security systems and tools that may include: Firewalls, WAF, SIEM, SOAR, MDR, IAM, PAM/PIM, Network Packet sniffers, Nmap, IDS/IPS, SAST/DAST Burp Suite. * Some experience with Encryption, Antivirus/Malware, Penetration Testing, Source Code Scanning. * Some experience with IAM concepts such as user provisioning, authentication, authorization, access control, and identity lifecycle management. * Some technical knowledge of Cloud and SaaS security solutions and tools. * Basic understanding of IP, TCP/IP, and other network administration protocols. * Basic understanding of IAM lifecycle management, security controls and system configurations for technologies such as: AWS, Azure, GCP, Microsoft AD. * Some experience working with IAM solutions, such as Okta, Active Directory, LDAP, or IAM software. * Knowledge of various authentication methods, including multi-factor authentication (MFA), biometrics, and single sign-on (SSO). * Some experience with Penetration Testing and Malware Reverse Engineering as a nice to have but not required. * Preferred experience implementing and assessing Industry Security Standards including HIPAA HITECH, GDPR HITRUST, FISMA, IS027K, PCI, NIST, etc. * Proven analytical and problem-solving abilities. * Ability to effectively prioritize and execute tasks in a high-pressure environment. * Excellent written, oral, and interpersonal communication skills. * Ability to conduct research into IT security issues and products as required. * Ability to present ideas in business-friendly and user-friendly language. * Ability to effectively organize your tasks and manage priorities. * Highly self-motivated and directed. * Self-started but have the ability to work with a team(s). * Keen attention to detail. * Team-oriented and skilled in working within a collaborative environment., * College diploma or university degree in Cybersecurity or other computer technology degree and/or two years equivalent work experience. * One or more of the following certifications or the ability to obtain one or more of the following certifications within specified time frame after employment: CompTIA Security+, GIAC Information Security Fundamentals, Okta Certified Professional, AWS Certified Security - Specialty, Microsoft Certified Systems Administrator: Security, Associate of (ISC)2 or CISSP, ISACA CISA or CISM * 2+ years working in an Identity Access Management role. * 1+ years of experience in network, server and data storage security technologies recommended. * 1+ years of prior experience with Cloud-based security technologies required. * 1+ year of prior experience with protocols such as 0Auth 2.0, OpenID Connect, and SAML. Physical Requirements: * Must be able to remain in a stationary position 50% of the time * Will constantly operate a computer and other office productivity machinery, such as a calculator, copy machine, and computer printer * Will frequently communicate over video calls with internal and external stakeholders, Studies have shown that women and people of color are less likely to apply for jobs unless they believe they are able to perform every task in the job description. We are most interested in finding the best candidate for the job, and that candidate may be one who comes from a less traditional background. Vibrant will consider any equivalent combination of knowledge, skills, education and experience to meet minimum qualifications. If you are interested in applying, we encourage you to think broadly about your background and skill set for the role., Access Authorization, Access Control, Amazon Web Services (AWS), Analysis Skills, Antivirus, Applications Security, Architectural Design, Auditing, Authentication, Best Practices, Biometrics, Business Continuity Planning (BCP), CISA - Certified Information Systems Auditor, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Calculators, Cloud Computing, Communication Skills, Community Programs, CompTIA Security+, Computer Security, Copying Machines, Cryptography, Customer Support/Service, Data Storage, Detail Oriented, Disaster Recovery, Enterprise Architecture, Enterprise Protection, Establish Priorities, FISMA - Federal Information Security Management Act, Firewalls, GCP (Good Clinical Practices), GIAC - Global Information Assurance Certification, HIPAA (Health Insurance Portability and Accountability Act), Help Desk, IP (Internet Protocol), ISACA (Information Systems Audit and Control Association), ISO (International Organization for Standardization), Identity Data Management, Industry Standards, Industry/Trade Analysis, Information/Data Security (InfoSec), Internet Security, Interpersonal Skills, Intrusion Detection Systems, Intrusion Prevention Systems, LDAP (Lightweight Directory Access Protocol), Leadership, Leading Edge Technology, MCSA - Microsoft Certified Systems Administrator, Maintain Compliance, Malware, Microsoft Active Directory, Microsoft Windows Azure, NMap, Network Administration/Management, Network Protocols, Office Equipment, On Call, Onboarding, OpenID, Operations Security (OPSEC), PCI, Penetration Testing, Presentation/Verbal Skills, Printers, Problem Solving Skills, Process Improvement, Protocol Independent Multicast (PIM), Research Skills, Reverse Engineering, Security Analysis, Security Architecture, Security Assertion Markup Language (SAML), Security Auditing, Security Compliance, Security Information and Event Management (SIEM), Security Monitoring, Service Delivery, Single Sign-On (SSO), Sniffer, Software as a Service (SaaS), Standard Operating Procedures (SOP), Systems Administration/Management, TCP/IP (Transmission Control Protocol/Internet Protocol), Team Player, Time Management, U.S. National Institute of Standards and Technology (NIST), Writing Skills ## Description The Identity and Access Management Analyst I is involved in day-to-day operations of the in-place security solutions. The position plays a key role in protecting the confidentiality, integrity, and availability of all company data and systems. This may include the identification, investigation, and resolution of security incidents detected by those systems. Projects may include implementation of new IAM security solutions, participation in the creation and/or maintenance of IAM security policies, standards, baselines, guidelines, and procedures as well as conducting vulnerability audits and assessments. The Identity and Access Management Analyst assists in maintaining the integrity of our current Identity and access management systems. The IAM Analyst is expected to be fully aware of the enterprise's security goals as established by its stated policies, procedures, and guidelines and to actively work towards upholding those goals., * Participate in the planning and design of enterprise security architecture with a primary focus on Identity Access and Management of IAM. * Participate in the creation of enterprise security documents in IAM (policies, standards, baselines, guidelines, and procedures). * Participate in the planning and design of an enterprise business continuity plan and disaster recovery plan. * Participate in the design and implementation of access controls, authorization rules, and role-based access policies. * Participate in the designing and implementation of role-based access policies leveraging systems such as Okta, AWS, Azure, GCP, Microsoft AD etc. * Maintain up-to-date, in-depth knowledge of the Cybersecurity industry, with a particular emphasis on Identity and Access Management (IAM) security. This includes awareness of new or enhanced security solutions, improvements in IAM security processes, and the evolving landscape of attacks and threat vectors. * Assist with recommending additional Identity and Access Management (IAM) security solutions or enhancements to existing security solutions, aiming to improve overall enterprise security. * Assist in the deployment, integration, and initial configuration of all new security solutions and of any enhancements to existing security solutions in accordance with standard best operating procedures generically and the enterprise's security documents specifically. * Collaborate with application owners and leadership to address any technical issues involved in deploying, governing, and extending identity services where suited. * Maintain up-to-date baselines using industry standard frameworks such as CIS and CSA for the secure configuration and operations of all in-place devices, whether they be under direct control (i.e. security tools) or not (e.g. workstations, servers, network devices). * Maintain operational configurations of all in-place security solutions as per the established baselines and industry best practices. * Monitor all in-place security solutions for efficient and appropriate operations. * Review logs and reports of all in-place devices, whether they be under direct control (i.e. security tools) or not (e.g. workstations, servers, network devices). Interpret the implications of that activity and devise plans for appropriate resolution. * Respond to tickets for addressing security concerns, vulnerabilities, and end-user reported issues. * Participate in investigations into problematic activity. * Participate in the design and execution of vulnerability assessments, penetration tests, and security audits. * Provide on-call support for end users, including support for all in-place Identity and Access Management (IAM) security solutions. * Partner with AppDev to identify and remediate vulnerabilities in Applications. * Assist in reviewing and processing access requests submitted by employees or departments, ensuring they comply with IAM and Security policies. * Assist in the configuration, maintenance, and optimization of IAM systems and related tools to ensure efficient user access and security controls. * Enforcing access control policies and ensuring that users have the appropriate level of access to systems and data. * Manage the user lifecycle, including onboarding, role changes, and offboarding processes. Ensure timely provisioning and de-provisioning of user accounts. * Reviewing and auditing IAM logs and record any security compliance, tracking, and reporting incidents. * Additional duties as assigned. ## Related Videos - [ The attacker's footprint](https://www.wearedevelopers.com/videos/375-the-attacker-s-footprint) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Debunking the Top 10 Myths about Web 3](https://www.wearedevelopers.com/videos/634-debunking-the-top-10-myths-about-web-3) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)