Job Summary
Key Responsibilities
- Lead end-to-end cleanup of orphan entitlements across applications
- Identify, rationalize, and remediate excessive or inconsistent access
- Define and implement sustainable entitlement governance models
- Support rollout of new IAM versions / frameworks with clean baseline data
- Conduct discovery and scanning of orphan NPAs
- Design and enhance NPA lifecycle management processes (creation, ownership, recertification, decommissioning)
- Implement monitoring and control mechanisms for NPAs
- Define assignment, escalation, and ownership models (automation preferred)
- Improve existing semi-automated processes into scalable frameworks
- Map NPAs to applications, owners, and business context
- Define and update functional and logical IAM designs
- Translate business and compliance requirements into implementable IAM controls
- Work closely with development teams to drive implementation of designs
- Provide best practices for SoD (Segregation of Duties) in NPA context
- Perform IAM system validation activities (e.g., access checks, entitlement verification)
- Execute SQL queries for validation and troubleshooting
- Work within IAM tools (preferably One Identity, but others acceptable)
- Partner with project teams, security teams, and application owners
- Act as a bridge between functional design and technical implementation
- Support workshops and provide subject matter expertise in IAM governance
Skill Requirements
- 8–12+ years in Identity & Access Management
- Strong understanding of:
- Birthright access / role-based access control
- Entitlement lifecycle management
- Access certification & recertification
- Segregation of Duties (SoD), especially in NPA scenarios
- Proven experience in:
- NPA governance frameworks
- Orphan account detection & remediation
- Access data cleansing initiatives
- Ability to provide real-world SoD examples involving NPAs
- Hands-on experience with One Identity (preferred) or similar IAM tools (SailPoint, Saviynt, etc.)
- Ability to:
- Navigate IAM tools independently
- Perform data validation using SQL queries
- Understanding of automation in IAM workflows
Other Requirements
2. Professional Certifications Related To Product Lifecycle Management (Plm) Are Recommended For Enhancing Expertise In This Role.