Privileged Access Management (PAM) Analyst
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve. Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents.
Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.
Role Description:
This role is primarily responsible for ensuring that relevant Privileged Access Controls are adequately enforced across platforms and applications to comply with IAM Standard.
Partner with PAM Governance leads to ensure that Privileged Access Controls are appropriately measured, reported and governed.
Apply industry PAM best practices, templates, and documentation while also proposing improvements based on practical knowledge.
Document and convey PAM related requirements to technology partners to build/implement enhanced PAM solutions that are efficient, effective, and modern and able to result in material risk reduction in sustainable manner.
Collaborate with stakeholders to develop PAM requirements that iteratively support long term PAM modernization and transformation (covers Process, Data and Technology aspects).
Provide education to team members and technology partners regarding the proposed changes to PAM controls.
Partners with the policy governance team for socialization and publication of proposed changes to the PAM Standard.
Required Qualifications:
3+ years relevant hands-on experience in PAM in complex and heterogenous technology environment.
Deep experience with Linux, Windows, Cloud scale Identity, Access Management (Single Sign-On, Multi Factor Authentication), Authorization services or design and architecture of PAM services
Deep knowledge of bank financial practices and policies and ability to adapt to fast changing environment
Working level experience with IAM platforms such as Ping Identity, Active Directory OpenLDAP, OpenDJ
Experience in consumption of Web Service APIs such as JSON / XML
Hands on experience and involvement in large and complex projects.
Expertise:
Expert level knowledge of privileged access management methodologies and techniques for on-prem and Cloud implementation.
Expert level knowledge of authentication platforms such as Active Directory, LDAP, Kerberos, LDAP, Radius.
Expert knowledge of PAM related tools which support session proxy, vaulting, just-in-time provision, integration with service management tool would be an advantage.
Deep security knowledge which covers core technology infrastructure (network, storage, servers, databases, etc.) identity management and application security practice.
Deep knowledge on Federation platforms or protocols such as Oauth, OpenID, SAML, WS-Fed, etc.
Good knowledge and understanding of PAM-specific laws, rules, and regulations within the financial services sector.
Proficient in Microsoft Office suite of products with ability to quickly analyze and synthesize large volumes of data.
Familiarity with security standards such as NIST, ISO/EC, FFIEC.
Takes accountability for addressing PAM risks. Proactively identify risk and ways to continuously enhance and improve BAC’s PAM controls. Implement and take decisive actions in finding solutions. Drives towards intended outcomes.
Engage senior management to provide factual, transparent, and timely reporting on existing and emerging PAM or information security risks.
Active participation in GIS IAM/PAM forums including but not limited to Monthly IAM Stakeholder Forum and Control Owner Forum for standard and Single Process Inventory (SPI) enhancements.
Supports audit issues for closure and sustainability.
Shift:
1st shift (United States of America)Hours Per Week:
40Recommended Jobs
Senior Cyber Software Engineer
STR is hiring a Senior Cyber Software Engineer who has a passion for developing tools and techniques to enhance the security and resiliency of national defense software systems. What you'll do:…
Compliance Specialist CMC, Quality Assurance
Job Responsibilities: Essential Duties and Responsibilities include, but are not limited to, the following: Performs QA review of executed GMP analytical batch records; in-process, release, and…
Senior ServiceNow Developer
We are seeking an experienced **ServiceNow Developer** with a minimum of 6 years of hands-on expertise on the ServiceNow platform. The ideal candidate will have strong technical knowledge in Scripting…
Administrative Coordinator - Up to $30 per hour
Administrative Coordinator - Up to $30 per hour The Academic Admin Coordinator will be the welcoming first point of contact for an academic program office, supporting students, faculty, staff, and…
PR Account Executive - Tech
Public Relations Account Executive, Tech Boston or Newburyport, MA; Providence, RI; Rochester, NY; Dallas, TX; Denver, CO (Hybrid: In office Mon-Thurs) Matter is an independent and thriving br…
Construction Project Manager
Job Description Job Description Our high end residential construction business is looking for an experienced Construction Project Manager.. The ideal candidate will harbor a passion for design an…
Cable Builder (25-413)
Thank you for your interest in positions at IPG Photonics . All applicants must apply on our company website to be considered. Please visit and click on the “Company” tab. We look forward to seein…
Occupational Therapist
Great Life work Balance position with excellent benefits! The Occupational Therapist (Registered) serves as a member of the Interdisciplinary Team in the planning, implementation and evaluation o…
Controls Technician
Controls Technician – Supporting the Systems That Power Automation We’re seeking a Controls Technician to assist with the setup, troubleshooting, and maintenance of automation and control system…
Manager of Financial Reporting
Job Description Job Description Job Purpose STAG Industrial, Inc. (NYSE: STAG) is a real estate investment trust focused on the acquisition and operation of industrial properties in 41 sta…