Sr. Security Analyst - IAM Automation

company banner
Charles Schwab & Co., Inc.
Full Time
Work from home not available Travel not required

Job Description


Phoenix - AZ, PHX4701A, 4701 E Francisco Dr, 85044-5365
Leticia Mitchell

We believe that, when done right, investing liberates people to create their own destiny. We are driven by our purpose to champion every client’s goals with passion and integrity. We respect and appreciate the diversity of our employees, our clients, and the communities we serve. We challenge conventions strategically to create value for our clients, our firm and the world. We live and bring to life the concept of ‘own your tomorrow’ every day. We champion our employee strengths, guide their development, and invest in their long-term success. We hire optimistic, results-oriented, curious, innovative, and adaptable people with the desire to help our clients and one another succeed.

As a company, we were established by Chuck over 40 years ago to champion Main Street over Wall Street, and to help Americans transform themselves from earners to owners. Through advocacy and innovation, we work to make investing more affordable, accessible and understandable for all. As we enter our fifth decade, we are looking for talented, innovative and driven people who believe they can help themselves, and our clients, create a better future.

Our Opportunity:

In Schwab Cybersecurity Services (SCS), Office of CISO, we provide platforms, services, and security operations capabilities which enable the firm to produce successful client and shareholder outcomes securely and safely. Securing our IT assets, data, and access to applications is the core of who we are and what we do.  We ensure only the appropriate entities have access to IT resources and that we adhere to best practices and standards to ensure a safe and compliant environment is maintained.

Identity and Access Management has an opening for a Sr. Staff Engineer, Identity and Access Management, to deliver and manage large, complex Identity and Access Management programs in the areas of Provisioning/De-provisioning, Directory, Highly Privileged Accounts, Access Governance, Single Sign On, Analytics, API Management and certifications. The individual will ensure adherence to policy and provide leadership to the implementation of leading-edge technology to position the organization for success – improving efficiency, increasing security posture, and supporting growth of the firm’s Identity and Access Management (IAM) Program.

What you’ll do:

  • Work as an Automation and Production support engineer for IAM team.
  • Work closely with IAM Engineering to delivered the proposed solutions and provide strategic technical direction across the team
  • The individual will analyze complex business and systems requirements and provide technical solutions to meet user requirements.
  • Develop, support and maintain automations
  • Work closely with peer groups to achieve Organization objective
  • Perform Entitlement, Role, and Groups analysis, build various reports.
  • Review polices standards, guidelines and procedures.
  • Work as Role engineer / Business Analyst for the IAM team to build, execute role engineering task, build requirements document, process design, and functional design document.
  • Work as certification / attestation engineer, execute certification process.
  • Build the technical as-is and to-be process documents.
  • Work with SOX/PCI audit group, support audit activities.
  • Overall accountability for technical document delivery, technical support and hands on technical work
  • Oversee adherence to applicable Security Controls, Policies and Standards; partner with business owners and technology groups to synchronize plans to remediate gaps

What you have:

  • Bachelor’s degree in Computer Science or a related field plus CISSP, CISM, or equivalent certification is preferred
  • 5+ years’ experience in Information Security field, Information Technology field
  • 5+ years’ experience in Powershell, Java, J2EE, Java Scripts or any other programing language
  • Experience in the design and development of Web Services
  • Experience with SQL for database functions.
  • Experience administrating security controls in a large multi-platform environment
  • Experience of code development and maintenance using industry standard tools (e.g. Visual Studio, Team Foundation Server)
  • Direct experience working within Oracle Identity OR Identity Access Management technologies such as Sailpoint, Aveksa, Siteminder, ect.
  • Direct experience working within Role analytics, Data Analytics tools
  • Ability to troubleshoot Access Rights for Active Directory service objects (i.e. specifically Security Groups and GPOs).
  • Ability to effectively communicate with technical and non-technical audiences, both oral and written is required
  • Experience in gathering requirements, documenting and assessing information for implementing information security policies and standards is required
  • Experience and desire to mentor peers and junior staff
  • Strong interpersonal, analytical, problem-solving, influencing, prioritization, decision-making and conflict resolution skills
  • Strong initiative; self-starter; self-directed; ability to multi-task
  • Experience in project planning, meeting facilitation for multiple groups and projects is preferred
  • Experience working with Project Manager, Agile methodologies and handling multiple top priorities task

You demonstrate these behaviors:

Innovative: Defines a compelling vision of the future, and develops breakthrough ideas, whether big or small, that support that vision
Talent Magnet: Seeks out and attracts strong internal and external talent
Overcomes Barriers: Takes responsibility for addressing obstacles that hinder our people and our business
Challenger: Takes risks when the opportunity warrants it and the potential downside is understood; is no disheartened by failure but uses it as an opportunity to learn
Emotionally Mature: Demonstrates strong self-awareness and ability to adjust to the emotion & drive of others; embraces others’ perspectives and recognizes limits of own point of view

What you’ll get:

  • Comprehensive Compensation and Benefits package
  • Financial Health: 401k Match, Employee Stock Purchase Plan, Employee Discounts, Personalized advice, Brokerage discounts
  • Work/Life Balance: Sabbatical, Paid Parental Leave, New Mothers returning to work Program, Tuition Reimbursement Programs, Time off to volunteer, Employee Matching Gifts Program
  • Everyday Wellness: Health and Lifestyle Wellness Rewards, Onsite Fitness Classes, Healthy Food Choices, Wellness Champions
  • Inclusion: Employee Resource Groups, Commitment to diversity, Strategic partnerships
  • Not just a job, but a career, with an opportunity to do the best work of your life

Learn more about Life@Schwab.

Charles Schwab & Co., Inc. is an equal opportunity and affirmative action employer committed to diversifying its workforce. It is Schwab's policy to provide equal employment opportunities to all employees and applicants without regard to race, color, religion, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), gender identity or expression, national origin, ancestry, age, disability, legally protected medical condition, genetic information, marital status, sexual orientation, protected veteran status, military status, citizenship status or any other status that is protected by law. Schwab also does not discriminate against applicants or employees because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. At Schwab, we believe that every employee, through their diverse abilities and experiences, can contribute to our growth, innovation and client loyalty. We embrace diversity and are committed to providing equal opportunity to all employees and applicants. If you have a disability, and require reasonable accommodations in the application process, call Human Resources at 800-725-3535. We will be happy to assist you. Schwab will only share your accommodation request with those individuals who have a specific need to know. The request for an accommodation will not affect Schwab's hiring decisions. All other submissions should be performed online.

Job Specifications
Relocation Offered?:No
Work Schedule:Days
Languages:English - spoken
Current Licenses / Certifications:None
Relevant Work Experience:IT-Other Specialty Engineering-6+ yrs
Position Located In:TX - Austin, TX - Westlake, AZ - Phoenix
Job Type:Full Time

Category:Information Technology
Activation Date: Wednesday, March 6, 2019
Expiration Date: Saturday, June 1, 2019
Apply Here

Company Information

At Schwab, we inspire the driven; individuals who want to take ownership of their career and their future. You are appreciated for your work, respected for your unique strengths and rewarded for the possibilities you create for our clients. Working in Schwab Technology is not just a job; it's an opportunity to do the best work of your life. This team drives Schwab's mission to harness the power of data to deliver the next gen client experience. They relentlessly pursue simplification and modernization, laying the foundation for the digital enterprise. They act boldly together to provide security for our clients and enterprise, safeguarding client trust all while delivering on their core commitments to availability, capacity and project execution with excellence and efficiency. If you are looking to be challenged with projects that stretch and grow your abilities, and push you towards further developing your expertise, apply to one of our openings today.
Dice Id : 10228622
Position Id : 20190220-1066

Similar Positions at Charles Schwab & Co., Inc.

Sr. Security Analyst - IAM
  • Westlake, TX
  • 16 hours ago
IAM Security Analyst
  • Westlake, TX
  • 16 hours ago
Staff IAM Operations Security Analyst
  • Westlake, TX
  • 16 hours ago
Technical Director - Database Security
  • Austin, TX
  • 16 hours ago
Sr. Manager, Business Systems Analyst
  • Fort Worth, TX
  • 16 hours ago