Identity & Access Management Lead

  • Posted 1 day ago | Updated 16 hours ago

Overview

$Competitive
Full Time
Contract - W2
Contract - Independent

Skills

Security Controls
IT Audit
Impact Analysis
Evaluation
Migration
Scalability
Provisioning
Account Management
SSO
OWASP
Vendor Relationships
Root Cause Analysis
Mentorship
Reporting
Regulatory Compliance
Risk Assessment
Risk Management
Auditing
Collaboration
SailPoint
Oracle
SAML
OAuth
OIDC
Multi-factor Authentication
Authentication
Directory Services
RESTful
Microservices
Log Analysis
ROOT
Amazon Web Services
Microsoft Azure
Google Cloud
Google Cloud Platform
Cloud Computing
Leadership
Decision-making
Conflict Resolution
Problem Solving
Communication
Project Management
Business Process
Workflow
Privacy
Incident Management
Vendor Management
Analytical Skill
Management
Organized
Attention To Detail
IT Security
Event Management
SIEM
Health Care
FISMA
HITECH
Contract Management
Cyber Security
CISSP
CISM
Identity Management

Job Details

Summary:
The Identity and Access Management (IAM) Lead is responsible for overseeing the development, configuration, and management of IAM solution, leveraging ForgeRock technology.
This role encompasses designing, managing, and monitoring IAM systems to ensure the implementation of robust security controls.
The IAM Lead collaborates with the risk management team on IT audits and remediation efforts, partners with the delivery team to support modernization initiatives, and assists the incident response team in investigating IT security incidents and breaches.
Additionally, the role involves evaluating new IAM requirements, assessing and migrating IAM products, and providing management with impact analyses and status updates.

Duties And Responsibilities
Develop and lead the client's Identity and Access Management (IAM) strategy, ensuring alignment with delivery team goals and client's policies.
Design and architect IAM solutions that seamlessly integrate with existing and future infrastructure.
Lead the evaluation, deployment, migration, and management of IAM technologies.
Provide hands-on expertise in configuring and deploying IAM solutions.
Ensure the availability, scalability, and reliability of IAM systems.
Manage the end-to-end integration of IAM systems with cloud-based applications and services.
Oversee the entire user identity lifecycle, including provisioning, deprovisioning, and account management.
Implement and manage Single Sign-On (SSO), federation (SAML, OAuth, OIDC), Multi-Factor Authentication (MFA), and risk-based authentication.
Ensure IAM compliance with regulatory standards such as NIST, CMS MARS-E, IRS publication 1075, and OWASP.
Monitor and audit IAM systems to identify and address potential security incidents.
Lead cross-functional teams to deliver successful IAM initiatives.
Collaborate with IT, Security, Risk Management, and Delivery teams to define and refine IAM requirements.
Manage vendor relationships, including monitoring performance, product updates, and organizational impacts.
Serve as a subject matter expert during security incidents and investigations related to IAM.
Perform root cause analysis and implement solutions to address IAM-related issues effectively.
Mentor and manage a team of IAM administrators and engineers, promoting best practices and professional growth.
Track and resolve IAM bugs and release issues, reporting progress to management.
Conduct access re-certifications for privileged user accounts within the IAM framework.
Manage and resolve day-to-day IAM issues, ensuring escalation and process adherence.
Configure both standard and custom reporting using industry-standard tools.
Stay informed about emerging trends and capabilities in IAM technologies.
Advise management on IAM risk-related issues and recommend actions to support risk management and compliance goals.
Lead risk assessments for proposed IAM solutions, escalating issues when necessary and ensuring resolution.
Assist in reviewing and updating policies, procedures, and standards related to IAM solutions.
Collaborate with the Risk Management Office to remediate vulnerabilities and address audit findings.
Collaborate closely with architects and engineers to share insights, best practices, and technical requirements.
Perform additional responsibilities as needed within the scope of IAM solutions.

Required:
7+ years of experience in Identity and Access Management (IAM) using tools like Oracle, ForgeRock, Okta, PingOne, or similar technologies, including at least 3 years in a lead or architect role.
In-depth knowledge of IAM technologies such as ForgeRock, SailPoint, Okta, Ping Identity, or Oracle Identity Suite.
Proficiency in SAML, OAuth, OIDC, MFA, and risk-based authentication mechanisms.
Strong understanding of Directory Services, RESTful APIs, and microservices architectures.
Ability to assess the impact of new requirements on IAM and all upstream and downstream applications, systems, and processes.
Advanced troubleshooting capabilities, including log analysis and root cause identification.
Hands-on experience with implementing IAM solutions in cloud environments, such as AWS, Azure, and Google Cloud Platform (Google Cloud Platform).
Knowledge of hybrid cloud IAM deployments and integrations.
Exceptional leadership and decision-making abilities with a proactive approach to problem-solving.
Excellent verbal and written communication skills, with the ability to effectively convey technical concepts to diverse audiences.
Strong project management skills, with the ability to prioritize and manage multiple projects simultaneously.
Experience developing and documenting business processes and workflows within IAM implementations.
Experience assisting in security/privacy incident investigations and collaborating with incident response teams.
Experience in vendor management and oversight, with the ability to escalate concerns to management when necessary.
Motivated self-starter with the ability to take initiative and ownership of responsibilities.
Ability to maintain a high level of confidentiality and demonstrate sound judgment.
Creative, proactive analytical person who can independently make decisions and manage work priorities.
Highly organized, flexible, and resourceful, with strong attention to detail.

Desired:
Minimum of 3 years of hands-on experience with ForgeRock Identity and Access Management (IAM) solutions.
Strong knowledge and practical experience in understanding and implementing IT security controls.
Experience working with Security Information and Event Management (SIEM) systems.
Background in government and/or healthcare industries.
Comprehensive understanding of standards and guidelines, including IRS 1075, MARS-E, NIST, FISMA, and HITECH.
Proven experience in contracts management.
Bachelor's or master's degree in Cybersecurity or a related field.

Relevant certifications such as CISSP, CISM, or vendor-specific IAM credentials (e.g., ForgeRock Certified Identity Management Specialist, Okta Certified Professional).
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.