About the Role
The Identity and Access Management (IAM) Analyst is responsible for supporting the organization’s identity governance, user access administration, authentication technologies, and access control processes. This role helps to ensure that employees and non-employees are granted appropriate access to company systems in accordance with security policies, regulatory requirements, and the principle of least privilege.
Responsibilities
- Process user/system access requests (new hires, transfers, terminations) across various systems and applications.
- Maintain accuracy and integrity of user identity data and escalate user access issues to ITD.
- Perform regular User Access Rights Reviews (re-certification) of user and systems access to information assets within internal and external systems.
- Generate reports for re-certification events.
- Document and update system access control workflows, procedures, and standard operating processes.
- Continuously enhance and streamline the overall IAM process via automation within IAM and related Tools.
- Participate in audit and examination events, to provide reports as needed.
- Maintain software media libraries of physical media containing confidential data.
- Perform routine monitoring of Privileged Account usage within Privileged Account Management (PAM) tool.
- Collaborate with other IT-related teams in the management of Privileged Accounts for internal and third-party systems.
- Perform other duties and responsibilities as assigned by management.
Requirements
- 3+ Years of experience working in Identity Access Management.
- Prior experience with financial industry structure and concepts is a plus.
- Prior experience working on systems automation and integration, such as with API’s.
- Prior experience working with process analysis and process streamlining.
- Foundational understanding of security frameworks such as NIST Framework, ISO 27001, Cyber Risk Institute (CRI) Profile, etc.
- Foundational knowledge of risk assessment methodologies and techniques.
- Prior experience with Identity Access Management Tools, such as SailPoint.
- Familiarity with SIEM and other event management systems.
- Strong knowledge of computer networking fundamentals, Active Directory, Windows Servers, firewalls, and proxy servers.
- Strong verbal and written communication skills.
- Strong attention to detail and accuracy.
- Self-motivated with good time management skills.
Skills
- Identity and Access Management
- Identity Governance
- User Access Administration
- Authentication Technologies
- Access Control Processes
- System/User Access Provisioning and Deprovisioning
- User Access Rights Reviews
- Process Automation
- Audit and Examination Support
- Privileged Account Management
- API Integration
- Process Analysis
- Process Streamlining
- NIST Framework
- ISO 27001
- Cyber Risk Institute (CRI) Profile
- Risk Assessment Methodologies
- SailPoint
- SIEM
- Computer Networking
- Active Directory
- Windows Servers
- Firewalls
- Proxy Servers
Location
- New York City
Work Type
- Hybrid
Experience Level
- Officer level
Benefits
- Paid Time Off
- Medical
- HSA
- Vision
- Dental
- FSA
- 401(K)
- Profit Sharing
- Legal Plan
- Cancer Indemnity Plan
- Disability Insurance
- Life Insurance
- Employee Assistance Program
- Commuter Benefits
- Business Travel Accident
- Paid Volunteer Day
- Paid Memberships
- Paid Seminars
- Tuition Assistance
About the Company
- SUMITOMO MITSUI TRUST BANK, LIMITED WAS ESTABLISHED THROUGH THE MERGER OF THE SUMITOMO TRUST AND BANKING CO., LTD WITH CHUO MITSUI TRUST AND BANKING, LTD. ON APRIL 1, 2012.
- WE ARE ONE OF THE LARGEST ASSET MANAGERS IN ASIA AND NUMBER ONE AMONG JAPANESE FINANCIAL INSTITUTIONS BY AUM, WITH APPROXIMATELY $850 BILLION USD IN AUM.
- THE BANK PROVIDES AN ASSORTMENT OF FINANCIAL SOLUTIONS AND MANAGES A BROAD SPECTRUM OF FINANCIAL PRODUCTS ACROSS ITS GLOBAL BRANCHES.
- The Americas Division (“AD”) was established in the Sumitomo Mitsui Trust Bank, Limited, New York Branch) (“SMTBNY”) to perform corporate functions and supervise U.S. entities.
- Established under the AD are the “Global Banking Unit (“GBU”), Americas Division” and “Global Markets Unit (“GMU”), Americas Division” which performs business functions.
- Information Risk Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch wide framework that is in-line with the Head Office and regulatory requirements and addresses Confidentiality, Integrity, and Availability for information assets.
- IRG establishes appropriate policies, procedures, measurement, and monitoring processes to proactively assess and evaluate and cyber security and information security risks inherent in the Branch Operations.
- IRG is directly involved in all information and cyber security related projects, matters and issues.
- SUMI TRUST EMBRACES FLEXIBLE WAYS OF WORKING WHEN THE BUSINESS AND ROLE PERMITS.
- WE PROVIDE EMPLOYEES WITH A HYBRID WORKING MODEL, ALLOWING FOR IN-OFFICE WORK AND WORK FROM HOME.
- OUR DIVERSE AND INCLUSIVE ENVIRONMENT ALONG WITH OUR GLOBAL PRESENCE ENABLES US TO COLLABORATE AND COMMUNICATE TO MEET OUR BUSINESS NEEDS.
- WE BELIEVE THAT EFFICIENT TEAMS NEED TRUTH, LOYALTY, AND A STRONG SENSE OF PURPOSE TO BALANCE RISK AND THEIR TARGETS.
- WE MAKE SUSTAINABLE BUSINESS DECISIONS TO IMPROVE OUR SOCIETY AND THE WORLD.
- WE BELIEVE THAT EACH PERSON BRINGS A UNIQUE VALUE THAT DRIVES THE BUSINESS THOUGH THEIR CREATIVITY AND PASSION.
Equal Opportunity
- We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law.
- SuMi Trust provides reasonable accommodations for employees and applicants with disabilities consistent with applicable law.
- If you need a reasonable accommodation during the application
