Enterprise Access Management (EAM) Analyst
Job summary
The EAM Analyst is a key member of the cybersecurity team, responsible for the day-to-day administration and support of the company's Identity and Access Management infrastructure. You will manage the entire identity lifecycle, from provisioning to de-provisioning, ensuring secure and efficient access to company resources. This role requires strong technical troubleshooting skills, a deep understanding of IAM concepts, and the ability to drive improvements in security and compliance.
Key responsibilities
-
Access Administration: Administer user accounts, groups, and permissions across various systems and applications, including Active Directory, Azure AD, and cloud environments.
-
User Lifecycle Management: Manage the end-to-end user lifecycle, including user provisioning, de-provisioning, and access modifications based on job role changes.
-
Incident and Request Resolution: Act as a point of escalation for access-related issues, providing timely and effective L2/L3 support and troubleshooting for authentication, access, and permissions problems.
-
Process Improvement: Identify opportunities to improve and automate IAM workflows and processes to enhance efficiency and reduce manual administrative tasks.
-
Security and Compliance: Enforce organizational security policies and ensure compliance with regulatory standards by conducting regular access reviews, audits, and generating compliance reports.
-
Integration Support: Assist with integrating new applications and services with the company’s IAM platforms using standard protocols like SAML, OAuth, and OpenID Connect.
-
Documentation: Create and maintain comprehensive standard operating procedures (SOPs), knowledge base articles, and other documentation for IAM processes.
-
Stakeholder Collaboration: Work closely with cross-functional teams, including IT, application owners, and security teams, to gather requirements and provide expert guidance on IAM best practices.
Required skills and qualifications
-
Experience: 4 to 7 years of experience in an Identity and Access Management or IT security role.
-
IAM Tools: Proven hands-on experience with one or more major IAM solutions such as Microsoft Eactive Directory (AD), Okta, SailPoint, CyberArk, or similar platforms.
-
Directory Services: Strong knowledge and experience with Microsoft Active Directory, LDAP, and Group Policy.
-
Protocols and Standards: Solid understanding of IAM-related protocols including SAML, OAuth2.0, OIDC, and Kerberos.
-
Authentication Technologies: Experience implementing and supporting Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Privileged Access Management (PAM).
-
Scripting: Proficiency in scripting languages such as PowerShell, Python, or Shell scripting to automate IAM processes.
-
Cloud Experience: Familiarity with cloud platforms (e.g., AWS, Azure) and their native IAM services.
-
Problem-Solving: Excellent analytical and troubleshooting skills with the ability to perform root cause analysis for complex issues.
-
Soft Skills: Strong communication, organizational, and interpersonal skills, with the ability to manage multiple tasks and prioritize effectively.
Preferred qualifications
-
Certifications: Relevant industry certifications such as Microsoft Certified: Identity and Access Administrator Associate (SC-300), Certified Identity and Access Manager (CIAM)
-
Compliance Experience: Experience working in a regulated environment (e.g., SOX, GDPR, HIPAA).
-
ITIL Experience: Familiarity with ITIL or other ITSM frameworks.