Identity Governance and Security Posture Analyst

Job Cloud Inc.
United States
4 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Active Directory Application Programming Interfaces (APIs) Data Analysis Business Software Cyber Security Information Systems Identity and Access Management Information Systems Security Architecture Professional Python (Programming Language) Microsoft Software Windows PowerShell
+5 more
Azure Active Directory SQL Databases Cyberark Information Technology SailPoint

Job description

The Identity Governance and Security Posture Analyst will help a WWT customer maximize the value of its identity governance and administration platforms. This role will review platform findings, investigate excessive or inappropriate access, tune governance rules and recommendations, coordinate remediation, and translate technical findings into practical governance actions., * Serve as a primary user of Saviynt and related identity governance or identity security posture management capabilities.

  • Review platform recommendations and findings involving overprivileged access, excessive entitlements, orphaned identities, stale access, toxic combinations, policy violations, and identity lifecycle exceptions.
  • Evaluate the operational impact of identity and access findings, validate findings with the appropriate owners, and recommend suitable remediation actions.
  • Tune rules, thresholds, policies, correlation logic, roles, entitlements, and recommendations to improve the quality and usability of platform findings.
  • Support access reviews, entitlement reviews, role analysis, segregation of duties reviews, exception handling, and remediation tracking.
  • Analyze identity and entitlement relationships across identity governance platforms, Active Directory, Microsoft Entra ID, privileged access management platforms, business applications, human resources systems, and other connected sources.
  • Help define and improve identity governance standards, ownership models, approval requirements, lifecycle controls, and evidence expectations.
  • Identify opportunities to improve joiner, mover, and leaver automation; access-request workflows; certification campaigns; and governance reporting.
  • Translate platform findings into change requests, remediation tickets, process updates, control enhancements, and implementation recommendations.
  • Partner with identity architects, identity and access management leaders, data analysts, process and compliance analysts, application owners, human resources, audit, and security teams.
  • Track remediation progress, exceptions, aging findings, risk acceptance, repeat findings, and unresolved ownership decisions.
  • Produce recurring metrics and leadership reporting related to governance posture, remediation status, access risk, and platform adoption.
  • Document platform configurations, rule logic, analysis decisions, operating procedures, and recommended improvements.
  • Evaluate new identity governance and identity security posture management capabilities and integrations for practical operational use.

Requirements

The analyst will work across identity governance, entitlement management, access certification, identity security posture management, lifecycle automation, and operational remediation. Saviynt experience is preferred. Experience with SailPoint or a comparable enterprise identity governance and administration platform may also be considered when paired with a strong understanding of identity governance concepts and the ability to learn the target platform., * Five or more years of experience in identity governance, access governance, cybersecurity, identity and access management operations, information technology risk, or a related discipline.

  • Demonstrated experience with enterprise identity governance concepts, including accounts, identities, entitlements, roles, access requests, certifications, approvals, exceptions, segregation of duties, and identity lifecycle management.
  • Experience using an enterprise identity governance and administration platform such as Saviynt, SailPoint, Microsoft Entra ID Governance, or a comparable product.
  • Ability to interpret entitlement and access data, investigate risk findings, validate ownership, and recommend remediation.
  • Experience working with application owners, business owners, access approvers, audit and compliance teams, security teams, and technology teams.
  • Ability to distinguish actionable risk from false positives and explain recommendations in business and technical terms.
  • Strong documentation, analytical, follow-up, and stakeholder management skills.
  • Ability to work remotely within the United States., * Hands-on Saviynt experience involving identity governance, access requests, access certifications, role and entitlement modeling, workflows, analytics, policy rules, or reporting.
  • Experience with SailPoint, Microsoft Entra ID Governance, CyberArk, BeyondTrust, or identity security posture management capabilities.
  • Experience with PowerShell, Structured Query Language, Python, application programming interfaces, connectors, data reconciliation, or workflow troubleshooting.
  • xperience supporting Sarbanes-Oxley controls, information technology general controls, North American Electric Reliability Corporation Critical Infrastructure Protection requirements, critical infrastructure environments, or other regulated identity programs.
  • Saviynt, SailPoint, Microsoft, Certified Information Systems Auditor, Certified in Risk and Information Systems Control, Certified Information Systems Security Professional, Certified Information Security Manager, or comparable certification.

Tools and Technologies:

  • Saviynt
  • SailPoint
  • Microsoft Entra ID Governance
  • Active Directory
  • CyberArk
  • BeyondTrust
  • Identity governance and administration platforms
  • Identity security posture management platforms
  • Privileged access management platforms
  • Access certification and entitlement review tools
  • PowerShell
  • Structured Query Language
  • Python
  • Application programming interfaces
  • Connectors and workflow integrations
  • Governance reporting and analytics tools

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:14 min

Evolution of distributed SQL database architectures

Wei Hu Wei Hu · World Congress 2024

52 sec

Defining application, pipeline, and security operations roles

Aarno Aukia · LIVE

1:36 min

Evolution from key-value stores to distributed SQL

Wei Hu Wei Hu · World Congress 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

3:54 min

Core capabilities of SingleStore distributed relational SQL database

Akmal Chaudhri Akmal Chaudhri · LIVE

Videos

See all

Related articles

See all