Broad understanding of identity and access management, with expert knowledge in identity governance and administration
5+ years in IAM role with a focus on password management
Understanding of identity related regulatory requirements for all global regions
Experience with IAM/password management tools: SailPoint, OKTA, Ping, Hitachi Bravura
Familiarity with scripting (PowerShell, Python, etc.) for automation
Experience with regulatory compliance frameworks (SOX, GDPR, NIST)
Strong aptitude to develop and maintain internal and external business relationships
Excellent consultative skills
Excellent oral and written communication skills
In-depth Functional / Industry Knowledge
Knowledge of information security, network management, operating systems, software development, database systems and information technology concepts
Analytical and problem solving skills
Leadership and organizational skills
A College or University degree and/or relevant proven work experience
Industry certification such as CISSP, CISM, CISA, SANS, etc. is desired
Responsibilities
Develop and maintain password policies, standards, and procedures to ensure alignment with industry best practices and regulatory requirements
Lead efforts to identify, analyze, and remediate critical account password issues, including password reuse, weak credentials, and leaked credentials
Design, implement, and maintain password management solutions, including password vaulting, synchronization, and rotation
Develop and maintain password synchronization processes to ensure seamless integration with various systems and applications
Monitor password-related security incidents and develop incident response plans to mitigate potential security risks
Collaborate with cross-functional teams, including IT, security, and compliance, to ensure password management solutions meet business requirements and regulatory standards
Provide technical leadership and guidance on password management best practices, emerging trends, and new technologies
Monitor and assess compliance with relevant regulations, standards, and policies related to Password Management including but not limited to SOX, SOC1, SOC2, GDPR, NIST and industry-specific regulation
Coordinate and participate in regular audits and assessment of Password Management controls. Generate report and documentation to demonstrate compliance status
Define and create key performance indicators (KPIs) and metrics to measure the effectiveness of Password Management and compliance