IAM Support Engineer
We are seeking an IAM L2 - User Access Management professional with experience in managing user access across Active Directory (AD), LDAP, Databases, and Mainframe ACF2 environments. The ideal candidate should have a strong understanding of different user personas such as employees, consultants, and agents and be proficient in CyberArk for privileged access management.
Key Responsibilities :
- Perform user access provisioning, deprovisioning, and modifications across AD, LDAP, Databases, and Mainframe ACF2.
- Ensure access control policies are followed and comply with security and audit requirements.
- Manage user lifecycle processes for various user personas, including employees, consultants, and agents.
- Work on CyberArk Privileged Access Management (PAM) for privileged account provisioning and administration.
- Handle access reviews, certifications, and audits to ensure compliance with regulatory and security policies.
- Investigate and resolve access-related incidents and service requests within SLAs.
- Collaborate with IT Security, HR, and Compliance teams to maintain proper access governance.
- Support IAM tools and automation initiatives to improve efficiency and reduce manual efforts.
- Troubleshoot and resolve authentication and authorization issues related to IAM platforms.
- Document IAM processes, SOPs, and technical configurations for operational reference.
Required Skills & Experience :
3-5 years of experience in Identity and Access Management (IAM) with a focus on User Access Management (UAM).Strong expertise in Active Directory (AD), LDAP, Databases, and Mainframe ACF2 access administration.Hands-on experience with CyberArk PAM for privileged account management.Familiarity with user personas and identity governance processes for different workforce types (employees, consultants, agents).Understanding of IAM security best practices, RBAC, least privilege access models, and compliance frameworks.Experience with access control policies, identity lifecycle management, and access reviews.Ability to analyze and resolve IAM-related issues and incidents.Strong documentation skills and experience working with ticketing systems (ServiceNow, Jira, etc.).Basic knowledge of IAM automation and scripting (PowerShell, Python, or other relevant languages) is a plus.Good communication skills and ability to work collaboratively across teams.Preferred Qualifications :
Certifications : CyberArk Defender, ITIL, or any IAM-related certification.Experience in role-based access control (RBAC), attribute-based access control (ABAC), or Zero Trust models.
Exposure to IAM tools like SailPoint, Okta, or similar is a plus.Salary Range- $85,000-$90,000 a year
#LI-SP3 #LI-VX1