Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being a diverse and inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Want more jobs like this?
Get jobs delivered to your inbox every week.
Position Summary
Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank's Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents.
Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.
What you can expect in Identity & Access Management:
In today's highly connected world, managing and securing the identity of users is essential to the safety and success of our workforce. The Identity & Access Management (IAM) team works within Global Information Services (GIS) and in close participation with all other LOB teams as well as second and third line of defense partners. This role is highly visible and requires frequent interaction with senior management and key stakeholders.
Are you passionate about the latest IT technologies and thrive in a fast-paced international environment? In a typical day, you may work with other team members on the book of work, operational concerns, or risk items. You will help overcome obstacles and maintain good relationships with key stakeholders across the bank to ensure timely and effective delivery. We offer you the opportunity to collaborate with passionate competent people, experts in their field. We thrive on being challenged and everything we do is anchored in managing risk for the bank.
The Identity & Access Management (IAM) Info Security Controls Specialist will analyze, strengthen, and secure the company's IAM systems and overall risk posture for Access Certifications and Governance. This role focuses on collaboration across all Lines of Business, CIO teams, to continuously improve the organization's access certification program. The Control Specialist will analyze controls to identify and document inefficiencies, and design/prioritize improvement opportunities to enable swift adherence.
The role also will actively apply knowledge of laws, rules, regulations, and information security concepts (e.g., NIST, COBIT, ISO) to establish and maintain policies, validate alignment of processes and controls to requirements, report on adherence to policy requirements and maintain governance programs related to access certifications and revocation services. Job expectations include using data analytics, governance process management, and partnering with internal teams to verify policy compliance, identify gaps in coverage, and support remediation activities.
Responsibilities:
- Establish and maintain strong partnership with other Global Information Security (GIS) functions, Core Technology Infrastructure (CTI), Cyber Security Technology (CST), Third Party management, Global Compliance and Operations Risk (CGOR), internal audit, and external regulatory agencies. Provide audit and regulatory responses within the specified periods.
- Perform Quality Assurance activities to support Access Certification campaigns and control metrics.
- Support and monitor access reviews for completion in specific areas. Oversee and drive governance program for access security contact, support program mailbox inquiries, updating source of record, manage ARM ticketing queue, and maintaining program SharePoint site, documentation, and training.
- Provide education and documentation on Access Certification Awareness through instructor led sessions.
- Maintain access certification documentation, audit documentation, and training materials for the access certification services team.
- Drive Quality Assurance Governance for Access Certifications and Revocations
- Maintain exceptions to IAM Standard according to governance processes.
- Ensures Information Technology systems meet enterprise standards, adhere to applicable rules, laws, and regulations, and comply with appropriate risk appetite.
- Assist with Software Development Life Cycle (SDLC) and testing of application changes that impact access reviews with signoff prior to implementation.
- Building and maintaining 'Break Glass' processes enabling reusability and consistency of obtaining access certification data.
Required Qualifications:
- 5+ years relevant hands-on experience in identity and access certification related fields in a large and complex organization.
- 3-5 years' experience implementing IAM Cloud solutions, controls, and capabilities.
- Proficient in articulating facts and data-driven plans and ability to partner with stakeholders to implement intended solutions to drive risk reductions and adherence to relevant Access Certification requirements within IAM standards.
- Strong attention to detail, advanced analytical skills, and quality assurance experience.
- Excellent communication and presentation skills.
- Excellent organizational skills and be able to effectively prioritize multiple tasks.
- Proficient in data management which includes strong data analytical capabilities with advanced understanding of the collection and management of metadata.
- Experience with Tableau and SQL.
- Previous experience with access review tools like SailPoint, AZURE AD, ForgeRock Identity Platform, Oracle Access Management, and Cloud would be a plus.
Shift:
1st shift (United States of America)
Hours Per Week:
40
Pay Transparency details
US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540)
Pay and benefits information
Pay range
$76,500.00 - $136,400.00 annualized salary, offers to be determined based on experience, education and skill set.
Discretionary incentive eligible
This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.
Benefits
This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.