System Manager, Identity and Access Management

3 weeks ago


New York, United States Uncommon Schools Full time
Job DescriptionJob DescriptionCompany Description

Uncommon Schools  is a nonprofit network of high-performing, public charter schools providing an outstanding K-12 education in historically under-resourced communities. We have proudly built schools that reflect our student population, with more than 60% of our teachers and staff across our network identifying as a person of color. Uncommon currently manages 53 schools serving more than 20,000 students in five cities: Boston, Camden, New York City, Newark and Rochester. We are proud that Uncommon graduates persist in and graduate from college at five times the rate of their peers nationally. We achieve this by offering strong academic, co-curricular, and social-emotional learning that prepares students for success in college and beyond.

Job Description

The System Manager will lead the development, implementation, and execution of a holistic Identify and Access Management (IAM) program. This role will act as the specialist on IAM and collaborate with all levels of Uncommon Schools including Talent, Accounting, Finance, IT, and school based teams. They will supervise the planning, prioritization, and execution of the IAM roadmap 

The System Manager, IAM is responsible for how users are given an identity and how it is protected, including ensuring critical applications, data, and systems are not subjected to unauthorized access while handling the identities and access rights of people both inside (staff and students) and outside the organization. 

Systems design/management:

  • Evaluate and understand the current state of IAM at Uncommon. This includes the people, processes, and technology (OneLogin, Active Directory, Google Cloud/G Suite) 
  • Utilize deep subject-matter expertise in all areas of IAM including single sign-on, multi-factor authentication, privileged account management, password vaulting, role-based, just-in-time access, and domain design to create, implement and maintain a roadmap for IAM organizational development.
  • Identify and raise issues with technology partners and manufacturers 
  • Serve as a technical project manager to coordinate sophisticated or long-duration initiatives. Establish, document, and communicate IAM services, capabilities, roadmap, policies, and procedures to key IAM partners 
  • Independently create and present clear, detailed communication and change management plans to Product Managers, IT Support and Regional Representatives that enable clear and fast decision making. 
  • Train IT Support team to resolve common issues Tier 1 and 2 issues and act as escalation for Tier 3.
  • Support the maintenance and upkeep of our technology tools in order to understand the integrations between them, and identify both efficiencies and resolutions related to transactional work. 

Stakeholder Representative:

  • Partner with Product Managers and IT Support team to deeply understand the goals and use cases for IAM 
  • Understand and champion the appropriate long-term vision for the IAM platforms 
  • Ensure user adoption of new processes by creating training materials and providing mentorship, guidance, support, and performance feedback to IT Support and end users of our systems 

Data Governance and Reporting:

  • Partner with other Data & IT team members in their day-to-day operations (reporting, auditing, integration) to support processes related to identity and access management 
  • Under the guidance of the Sr. Director of Enterprise Systems and Data Governance, create and implement solutions, standards, and controls to ensure data accuracy and integrity in our current and future systems

Vendor Management:

  • Contract & Payment: Lead renewal and payment of the yearly contract. 
  • Establish relationships with vendors, act as a liaison between vendor and Uncommon on any projects, and own school-level issues & difficult conversations. 
  • Work with Director to handle vendor issues 

Governance:

  • Develop, rollout and supervise policies as it relates to IAM 
  • Train end-users (staff and students) in security standard methodologies 
  • Recommend areas for improvement in the organization's security posture, taking into account business objectives and priorities
Qualifications

Experience Requirements:

  • 5-7 years of work experience
  • 3-4 years of directly related experience
  • Experience configuring and managing IAM tools such as: OneLogin, Microsoft Entra, G Suite, Okta

Educations Requirements:

  • Bachelor's Degree required (Computer Science, Information Systems, Business, or equivalent subject preferred)
  • Security certifications preferred

Travel/ Working Schedule:

  • 3 days in person in our central office located in the Financial District
  • Travel to other regions as needed

 



Additional Information

Our people are what make us uncommon. It’s important to us that our compensation practices align with our values and enhance our ability to attract and retain talent.  Our compensation philosophy is focused on equity and fairness, retaining our talented staff and valuing their expertise, and transparency and clarity.

Compensation for this position:  Candidates who meet all job description requirements will likely receive an offer of $100,800.  The starting compensation for this role is between $95,200 to $112,000.  The starting pay will depend on various factors including but not limited to relevant professional experience, education, certifications, and tenure with Uncommon Schools.   To receive an offer at the top of the range, candidates will need significant experience beyond the job description  requirements.  Because we value staff tenure in a role, we do not currently cap salary ranges for current staff members. 

Other Benefits:

  • 19 days of paid time off in addition to three weeks of paid winter and summer org-wide holidays
  • Extensive, best-in-class training and development  
  • Choice of 3 comprehensive health insurance plans
  • Pre-tax flexible spending and health saving accounts
  • Financial planning & wellness
    • 403(b) retirement savings program + employer match
    • 529 college savings program
    • Public Service Loan Forgiveness application assistance
    • Financial  planning tools and assistance
  • Dependent Care FSA, back up childcare and daycare discounts, pet care insurance
  • Paid leave of absence 
    • Fully paid parental leave
    • Fully paid medical leave
    • Additional paid Short Term and Long Term Disability insurance 
  • Mental health and counseling support + wellness benefits

Uncommon believes in the importance of being a diverse, equitable, and inclusive organization that enables our students and staff to thrive. We are committed to building an exceptional team that reflects the diverse backgrounds and experiences of our students. We also strive to ensure an inclusive community by creating a space for meaningful dialogue about issues of race and identity for our staff and students. As an equal opportunity employer, Uncommon provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. We also ensure that individuals with disabilities receive all privileges and benefits associated with employment and are provided reasonable accommodations for the interview process and to perform core job functions. If you would like to request an accommodation, please email recruitment@uncommonschools.org.


  • IT Security Identity

    1 month ago


    New York, United States Five Cubes, Inc. Full time

    Job Title: IT Security Identity & Access Management Location: Albany, NY (Hybrid) Duration: 6+ months Direct ClientJob description: The Cybersecurity department is seeking an experienced well rounded IT professional to assist with supporting the OMNY Universal Pass. The position requires full understanding of the SailPoint IIQ workflow developments, LCM,...


  • New York, United States Banner Health Full time

    **Primary City/State**: Arizona, Arizona **Department Name**: IT Info Tech Admin-Corp **Work Shift**: Day **Job Category**: Information Technology **Primary Location Salary Range**: $68.92 - $114.86 / hour, based on education & experience In accordance with State Pay Transparency Rules. The Identity and Access Management (IAM) team is responsible for...

  • Senior Identity

    2 months ago


    New York, United States HexaQuEST Global, Inc. Full time

    Job Description The resource's function is essential in securing the City of New York's systems, and the mission critical services that rely on them requiring strong controls over the identities that manage these systems via privileged access. The deployment of a Privileged Access Management (PAM) solution across NYC information systems will ensure...

  • Senior Identity

    4 weeks ago


    New York, United States HexaQuEST Global, Inc. Full time

    Job Description The resource's function is essential in securing the City of New York's systems, and the mission critical services that rely on them requiring strong controls over the identities that manage these systems via privileged access. The deployment of a Privileged Access Management (PAM) solution across NYC information systems will ensure...


  • New Orleans, United States InsideHigherEd Full time

    Identity and Access Management EngineerVP Technology/InfrastructureLocation: New Orleans, LASummaryReporting to the Chief Information Security Officer (CISO), the Identity and Access Management Engineer is responsible for technical delivery and integration for authentication, authorization, identity provisioning, and identity governance and administration...


  • New Orleans, United States InsideHigherEd Full time

    Identity and Access Management EngineerVP Technology/InfrastructureLocation: New Orleans, LASummaryReporting to the Chief Information Security Officer (CISO), the Identity and Access Management Engineer is responsible for technical delivery and integration for authentication, authorization, identity provisioning, and identity governance and administration...

  • Senior Identity

    2 months ago


    New York, United States Five Cubes, Inc. Full time

    Job Title: S enior Identity & Access Management Engineer Location: Remote Duration: 15+ months Direct Client Job Description: T he senior Identity & Access Management Engineer will provide subject matter expertise for comprehensive PAM deployments in a large, distributed environment. The candidate will work closely with business, technical and application...

  • Senior Identity

    4 weeks ago


    New York, United States Five Cubes, Inc. Full time

    Job Title: S enior Identity & Access Management Engineer Location: Remote Duration: 15+ months Direct Client Job Description: T he senior Identity & Access Management Engineer will provide subject matter expertise for comprehensive PAM deployments in a large, distributed environment. The candidate will work closely with business, technical and application...


  • New York, United States Amazon.com Services LLC Full time

    Advertising at Amazon is growing incredibly fast and we are responsible for defining and delivering a collection of advertising products that drive discovery and sales. Our team manages the end-to-end lifecycle of Advertiser Account Management including Registration and granular Access Control. We are working on the next-generation Advertiser Registration...


  • New York, United States Amazon.com Services LLC Full time

    Advertising at Amazon is growing incredibly fast and we are responsible for defining and delivering a collection of advertising products that drive discovery and sales. Our team manages the end-to-end lifecycle of Advertiser Account Management including Registration and granular Access Control. We are working on the next-generation Advertiser Registration...


  • New Orleans, United States Tulane University Staff Full time

    Reporting to the Chief Information Security Officer (CISO), the Identity and Access Management Engineer is responsible for technical delivery and integration for authentication, authorization, identity provisioning, and identity governance and administration (IGA) solutions across all University systems, audience types, and applications. This position...


  • New Orleans, United States Tulane University Staff Full time

    Reporting to the Chief Information Security Officer (CISO), the Identity and Access Management Engineer is responsible for technical delivery and integration for authentication, authorization, identity provisioning, and identity governance and administration (IGA) solutions across all University systems, audience types, and applications. This position...


  • New Orleans, United States Tulane University Staff Full time

    Reporting to the Chief Information Security Officer (CISO), the Identity and Access Management Engineer is responsible for technical delivery and integration for authentication, authorization, identity provisioning, and identity governance and administration (IGA) solutions across all University systems, audience types, and applications. This position...


  • New Orleans, United States Tulane University Staff Full time

    Reporting to the Chief Information Security Officer (CISO), the Identity and Access Management Engineer is responsible for technical delivery and integration for authentication, authorization, identity provisioning, and identity governance and administration (IGA) solutions across all University systems, audience types, and applications. This position...


  • New York, New York, United States Michael Page Full time

    About Our Client Our client is a financial services institution with operations in midtown NYC. Job Description Responsible for developing, operating and maintaining the Identity & Access Management (IAM) systems globallySupports the Identity Governance and Identity Lifecycle management products within the IT IAM portfolioResponsible for oversight and...


  • New York, New York, United States Michael Page Full time

    About Our Client Our client is a financial services institution with operations in midtown NYC. Job Description Responsible for developing, operating and maintaining the Identity & Access Management (IAM) systems globallySupports the Identity Governance and Identity Lifecycle management products within the IT IAM portfolioResponsible for oversight and...


  • New Orleans, Louisiana, United States Tulane University Staff Full time

    Reporting to the Chief Information Security Officer (CISO), the Identity and Access Management Engineer is responsible for technical delivery and integration for authentication, authorization, identity provisioning, and identity governance and administration (IGA) solutions across all University systems, audience types, and applications. This position...


  • New York, United States META Full time

    Summary: Facebooks Business Applications team is responsible for building integrated, scalable, and robust enterprise applications. We are currently looking for an experienced, insightful, forward-thinking Product Specialist with a strong ability to design and execute third-party products that power the enterprise. As a member of Enterprise Engineering, you...


  • New York, United States Motion Recruitment Full time

    One of the largest business law firm's is looking to onboard an Identity Access Management Engineer! This is a full time position. You would serve as the SME in the design, implementation, and administration of the firm's IAM tooling. Required Skills & Experience: Experience with tooling like Azure AD, Sailpoint, Okta, etc. Preferred Experience: ...


  • New York, United States Motion Recruitment Full time

    One of the largest business law firm's is looking to onboard an Identity Access Management Engineer! This is a full time position. You would serve as the SME in the design, implementation, and administration of the firm's IAM tooling. Required Skills & Experience: Experience with tooling like Azure AD, Sailpoint, Okta, etc. Preferred Experience: ...