Identity and Access Management (iam) Security Administration Senior Specialist (identity Platforms Highly Desired)

Bank of America Bank of America · Banking · Boston, MA +3

Senior Identity and Access Management (IAM) Specialist at Bank of America, focusing on access provisioning, least privileged access, and IAM technologies across enterprise platforms including Active Directory, Azure, AWS, and Mainframe. Responsibilities include designing, implementing, and managing access solutions, developing policies, driving automation, conducting access reviews, and investigating incidents. Requires 10+ years of experience in IAM, deep technical expertise in various systems, and familiarity with cloud security and IAM governance frameworks.

What you'd actually do

  1. Lead the design, implementation, and ongoing management of access provisioning solutions across enterprise platforms, ensuring alignment with security policies and regulatory requirements.
  2. Serve as the subject matter expert for Active Directory, Microsoft Azure, Amazon Web Services (AWS), and Mainframe, Oracle and SQL databases, file systems, and enterprise storage, with a focus on enforcing least privileged access.
  3. Develop and maintain access control policies, group structures, and role-based access models to support scalable and secure provisioning.
  4. Collaborate with application owners, infrastructure teams, and business stakeholders to define and implement access requirements for new and existing systems.
  5. Drive automation initiatives to streamline provisioning and de-provisioning workflows, integrating with identity governance platforms and HR systems and IAM controls.

Skills

Required

  • 10+ years of progressive experience in Identity and Access Management
  • access provisioning
  • Active Directory
  • Microsoft Azure
  • Amazon Web Services (AWS)
  • Mainframe
  • Oracle Database
  • SQL Server
  • Windows and Unix file systems
  • enterprise storage platforms
  • least privileged access
  • IAM governance frameworks
  • role-based access control (RBAC)
  • group policy management
  • privileged access management (PAM) tools
  • automated provisioning/de-provisioning workflows
  • scripting and automation (e.g., PowerShell, Python)
  • cloud infrastructure security
  • access controls in hybrid environments
  • access reviews
  • entitlement audits
  • risk assessments

Nice to have

  • Identity Platforms
  • SailPoint
  • Saviynt
  • CyberArk
  • Hashi Corp
  • Beyond Trust
  • Oracle Cloud

What the JD emphasized

  • least privileged access
  • access provisioning