Identity & Access Management (IAM) Information Security Controls Specialist

5 days ago


Washington, Washington, D.C., United States Bank of America Full time

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.

One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We re devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.

Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.

Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us

Job Description:

The Identity & Access Management (IAM) Info Security Controls Specialist will analyze, strengthen, and secure the company's IAM systems and overall security posture for Service Accounts Governance. This role focuses on collaboration across all Lines of Business, CIO teams, to continuously improve the organization's security adherence. The Control Specialist will analyze controls to identify and document inefficiencies, and design/prioritize improvement opportunities to enable swift adherence.

The role also will actively apply knowledge of laws, rules, regulations, and information security concepts (e.g., NIST, COBIT, ISO) to establish and maintain policies, validate alignment of processes and controls to requirements, and report on adherence to policy requirements. Job expectations include using data analytics and partnering with internal teams to verify policy compliance, identify gaps in coverage, and support remediation activities.

Responsibilities:

Primarily responsible includes assisting identity and access management leads and partners along with other technology SMEs to ensure that strategic and effective solutions are adopted across the bank. Support leads to ensure that all identity and access management related IAM requirements are appropriately measured, reported, and governed. Establish and maintain strong partnership with other Global Information Security (GIS) functions, Core Technology Infrastructure (CTI), Cyber Security Technology (CST), Third Party management, Global Compliance and Operations Risk (CGOR), internal audit, and regulatory agencies. Clearly articulate rationale and methods behind proposed changes through informative materials for educating others. Provide education and documentation to team members and technology partners regarding the proposed changes. Engage senior management to provide factual, transparent, and timely reporting on existing and emerging identity and authentication risks. Ensures Information Technology systems meet enterprise standards, adhere to applicable rules, laws, and regulations, and comply with appropriate treatment of risk. Required Qualifications: Knowledge and understanding of Identity and Access Management specific laws, rules, regulations, and Guidelines such as SOX, OCC, NIST, ISO/EC, FFIEC within the financial services sector. Possession of CISSP certification would be an advantage. Knowledge of identity and authentication methodologies, techniques, and technologies. Knowledge of IAM IGA related tools which support, vaulting, integration with service management tool would be an advantage. 5+ years relevant hands-on experience in identity and authentication fields in a large and complex organization. Security knowledge which covers core technology infrastructure (Account management, servers, databases, etc.) identity management and application security practice. Experience with Linux, Windows, Cloud Identity, Access Management, design and architecture of authentication services or Identity Store. Proficient in articulating facts and data-driven plans and ability to partner with stakeholders to implement intended solutions to drive risk reductions and adherence to relevant Identity and Authentication requirement within IAM standards. Strong attention to detail and advanced analytical skills. Excellent communication and presentation skills. Excellent organizational skills and be able to effectively prioritize multiple tasks. Hands on experience and involvement in large and complex projects. Proficient in data management which includes strong data analytical capabilities with advanced understanding of the collection and management of metadata. This job will be open and accepting applications for a minimum of seven days from the date it was posted

Shift:1st shift (United States of America)

Hours Per Week: 40



  • Washington, Washington, D.C., United States IMF - International Monetary Fund Full time

    Work for the IMF. Work for the World.The Information Technology Department (ITD) at the IMF is more than just a support function; it is a critical catalyst for change. We champion the seamless integration of cutting-edge technology solutions, ensuring the IMF's mission is propelled by innovation and efficiency.Within the IT department, the Information...


  • Washington, Washington, D.C., United States Danaher Full time

    At first glance, you'll see Danaher's scale. Our 65,000+ associates work across the globe at more than 15 unique operating companies within three platforms—life sciences, diagnostics, and biotechnology.Look again and you'll see the opportunity to build a meaningful career, be creative, and take risks with the support you need to be successful. You'll find...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    Physical Access Control Systems Subject Matter Expert The Opportunity: You know that the user is the last frontier for cyber security. It's where the perimeter is drawn, and securing identities is pivotal in the fight against cybercriminals. As an IAM specialist, you have the skills and experience to keep hackers from taking data and breaking processes....


  • Washington, Washington, D.C., United States IMF - International Monetary Fund Full time

    Work for the IMF. Work for the World.The Information Technology Department (ITD) at the IMF is more than just a support function; it is a critical catalyst for change. We champion the seamless integration of cutting-edge technology solutions, ensuring the IMF's mission is propelled by innovation and efficiency.Our commitment is to: Maintain and elevate the...


  • Washington, Washington, D.C., United States ManTech Full time

    Secure our Nation, Ignite your FutureBecome an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech , you'll help protect our national security while working on innovative projects that offer opportunities for advancement.Currently, ManTech is seeking a motivated, career and...


  • Washington, Washington, D.C., United States ManTech Full time

    Secure our Nation, Ignite your FutureBecome an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech , you'll help protect our national security while working on innovative projects that offer opportunities for advancement.Currently, ManTech is seeking a motivated, career and...


  • Washington, Washington, D.C., United States ManTech Full time

    Secure our Nation, Ignite your FutureBecome an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech , you'll help protect our national security while working on innovative projects that offer opportunities for advancement.Currently, ManTech is seeking a motivated, career and...


  • Washington, Washington, D.C., United States ManTech Full time

    Secure our Nation, Ignite your FutureBecome an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech , you'll help protect our national security while working on innovative projects that offer opportunities for advancement.Currently, ManTech is seeking a motivated, career and...


  • Washington, Washington, D.C., United States IMF - International Monetary Fund Full time

    Work for the IMF. Work for the World.The Information Technology Department (ITD) at the IMF is more than just a support function; it is a critical catalyst for change. We champion the seamless integration of cutting-edge technology solutions, ensuring the IMF's mission is propelled by innovation and efficiency.Our commitment is to: Maintain and elevate the...


  • Washington, Washington, D.C., United States Open Systems Technologies Corporation Full time

    Open Systems Technologies Corporation is a leader in the government contracting marketplace, providing Enterprise Security and Cloud Computing solutions to support large organizations. Our capabilities include supplying federal government entities and private businesses with software development, scientific and engineering technical assistance, systems...


  • Washington, Washington, D.C., United States Federal Emergency Management Agency Full time

    What will I do in this position if hired? In this position you will serve as an Information Technology Specialist within the Office of the Chief Information Security Officer, Compliance DivisionTypical duties include:Providing oversight of ISSOs in the development of security authorization packages, e.g., system security plans, contingency plans, etc., and...


  • Washington, Washington, D.C., United States Office Of The Chief Information Officer Full time

    APPLICATION LIMIT: This vacancy announcement is limited to the first 150 applications received and will close at 11:59PM Eastern Time on the day that we receive the 150th application, or at 11:59PM Eastern Time on the listed closing date, whichever occurs first. We encourage you to read this entire vacancy announcement prior to submitting your application.As...


  • Washington, Washington, D.C., United States Office Of The Chief Information Officer Full time

    APPLICATION LIMIT: This vacancy announcement is limited to the first 150 applications received and will close at 11:59PM Eastern Time on the day that we receive the 150th application, or at 11:59PM Eastern Time on the listed closing date, whichever occurs first. We encourage you to read this entire vacancy announcement prior to submitting your application.As...


  • Washington, Washington, D.C., United States Office Of The Chief Information Officer Full time

    APPLICATION LIMIT: This vacancy announcement is limited to the first 150 applications received and will close at 11:59PM Eastern Time on the day that we receive the 150th application, or at 11:59PM Eastern Time on the listed closing date, whichever occurs first. We encourage you to read this entire vacancy announcement prior to submitting your application.As...


  • Washington, Washington, D.C., United States Peace Corps Full time

    The Information Technology Specialist (Network Services) performs the following major duties:Provide architecture, design, implementation, and administration for all network security applications and appliances such as Palo Alto Firewalls, Cisco Firewalls, etc. Managing, storing, and tracking Firewall changes and security logs. Following up on all...


  • Washington, Washington, D.C., United States Judicial Branch Full time

    Summary The Information Technology Specialist (Security) position is located in the Department of Administrative Services (DAS), Administrative Systems Office (ASO), Security and Data Integration Staff (SDIS). The SDIS is responsible for administering and overseeing the system security requirements for various Human Resources, Financial, Facilities and AO...


  • Washington, Washington, D.C., United States Federal Emergency Management Agency Full time

    What will I do in this position if hired? In this position you will serve as an Information Technology Specialist (INFOSEC) within the Office of the Chief Information Security OfficeTypical duties include: Streamlining data collection methods to create automated and easytouse routines and analyzing collected data and putting it into a format that others can...


  • Washington, Washington, D.C., United States Johns Hopkins Medicine Full time

    YOU BELONG HEREWhat Awaits You?Career growth and developmentEmployee and Dependent Tuition Assistance Diverse and collaborative working environmentAffordable and comprehensive benefits packageOur competitive Benefit Package is designed to support the well-being and financial security of our employees. You can explore the details of our benefits offering by...


  • Washington, Washington, D.C., United States Johns Hopkins Medicine Full time

    YOU BELONG HEREWhat Awaits You?Career growth and developmentEmployee and Dependent Tuition Assistance Diverse and collaborative working environmentAffordable and comprehensive benefits packageOur competitive Benefit Package is designed to support the well-being and financial security of our employees. You can explore the details of our benefits offering by...


  • Washington, Washington, D.C., United States Pierce Technology Corp Full time

    ⦁ Utilizes knowledge of SiEM solutions like Splunk, Rapid7 Insight IDR etc.⦁ Develops and maintains documentation for security systems, procedures, and security diagrams.⦁ Analyzes, proposes, and implements solutions concerning residual risk, vulnerabilities, and other security exposures.⦁ Installs security measures and operates software to protect...