Hiring.Camp

IAM Directory and IGA Senior Analyst

USC is

·

Yesterday

Salary
$119k – $152k
Location
Los Angeles, CA - University Park Campus, United States of America
Workplace
Hybrid
Type
Full-time
Seniority
Senior
Experience
6+ years
Education
Bachelor
Source
Workday

Description

Strengthen Identity Governance and Access at USC

USC is expanding its Cybersecurity IAM capabilities to strengthen how identities, access and directory services are managed across the university. As the IAM Directory and IGA Senior Analyst, you will play a key technical role in designing, configuring, testing and implementing identity governance administration (IGA) and directory service solutions that support secure identity lifecycle management, authentication, authorization and access governance.

 

This is an opportunity for an experienced IAM professional to work at the intersection of identity governance, directory services, cybersecurity and enterprise technology within a major research university. You will translate business and technical requirements into scalable IAM solutions, support enterprise application integrations, investigate complex identity and access issues, and identify opportunities to improve automation, security controls and operational effectiveness.

 

The position reports to the IGA & Directory Services Manager and is based at USC's CAL location in a hybrid work environment.

 

Job Accountabilities

  • Analyzes business and technical requirements for identity governance processes. Configures and enhances identity lifecycle workflows, access controls, role structures, provisioning processes and governance solutions to support operational and security requirements. Performs impact analysis and validates technical solutions prior to implementation.
  • Designs, configures, tests and implements directory service solutions supporting authentication, authorization, identity synchronization and enterprise application integration. Evaluates system requirements and develops technical configurations that improve reliability, security and operational efficiency.
  • Investigates complex identity, access and directory service issues. Conducts root-cause analysis, evaluates system behavior, develops corrective actions and implements sustainable technical solutions to prevent recurrence.
  • Develops, configures, tests and implements integrations between identity governance platforms, directory services and enterprise applications. Validates functional requirements and ensures solutions operate in accordance with security and access management standards.
  • Creates and maintains technical documentation, workflow specifications, system configurations, support runbooks and implementation procedures. Documents design decisions, testing results and operational requirements.
  • Collaborates with application owners, technology teams and business stakeholders to evaluate identity and access requirements. Translates functional needs into technical specifications and recommends solutions aligned with established IAM standards.
  • Evaluates existing identity governance and directory service capabilities, identifies opportunities for automation and process improvement, and recommends enhancements that strengthen service delivery, security controls and operational effectiveness. Maintains current knowledge of identity and access management technologies and practices. Encourages a workplace culture where all employees are valued, value others and have the opportunity to contribute through their ideas, words and actions, in accordance with the USC Code of Ethics.

 

Minimum Qualifications

Great candidates for the position of IAM Directory and IGA Senior Analyst will meet the following qualifications:

  • Bachelor's degree
  • Bachelor's degree in Instruction Systems Technology Or Computer Science Or in related field(s)
  • Combined experience/education as substitute for minimum education
  • 4 years in Identity and Access Management, Directory Services, Identity Governance, Information Security, Systems Administration, or related technology discipline
  • Combined experience/education as substitute for minimum work experience
  • Hands-on technical experience in implementing and troubleshooting of IAM solutions (e.g., SailPoint IIQ and ISC, Saviynt and Oracle Unified Directory).
  • Proficiency within a Unix command line.
  • Proficiency working with data, with query languages (e.g., SQL) and working with Directories (e.g., LDAP).
  • Proficiency with IAM concepts (e.g., PBAC, RBAC, AuthN vs AuthZ).
  • Excellent written and verbal communication skills; comfortable driving requirements gathering, architectural discussions and project reporting with non-technical business stakeholders.
  • Maintain technical documentation including architecture diagrams, decision records, and runbooks.

 

Preferred Qualifications

  • 6 years of experience designing, configuring, implementing or supporting enterprise IAM, IGA, directory service or authentication platforms.
  • Hands-on experience with SSO solutions such as Microsoft Entra, ForgeRock, Duo, Cirrus Identity Bridge or Shibboleth.
  • Experience with PAM solutions such as CyberArk or BeyondTrust.
  • Experience with identity verification technologies such as Persona.
  • Experience in IAM within higher education. Experience in other complex, decentralized environments such as healthcare, technology, media and telecommunications, or financial services is also relevant.
  • Understanding of Zero Trust architecture, identity-based attack techniques, and modern IAM controls.
  • Experience leading enterprise identity transformations or directory modernization programs, including migration from legacy platforms at scale.
  • Experience with IAM reference architecture.
  • Demonstrated ability to establish and gain visibility into service accounts and secrets in hybrid cloud and on-premises environments.
  • Experience working at or with professional services firms, such as Big Four firms, and IAM software vendors.
  • Project management experience on IAM projects.
  • CISSP certification or similar.
  • IAM software certification, such as SailPoint Certified Engineer or CyberArk Guardian.

 

In addition, the successful candidate must also demonstrate, through ideas, words and actions, a strong commitment to USC’s Unifying Values of integrity, excellence, community, well-being, open communication, and accountability.

 

Salary and Benefits

The annual base salary range for this position is $118,759 - $151,880. When extending an offer of employment, the University of Southern California considers factors such as, but not limited to, the scope and responsibilities of the position, the candidate's work experience, education/training, key skills, internal peer equity, federal, state, and local laws, contractual stipulations, grant funding, as well as external market and organizational considerations.

 

To support faculty and staff well-being, USC provides benefits-eligible employees with a broad range of benefits and perks to help protect their and their dependents’ health, wealth, and future. These benefits are available as part of the overall compensation and total rewards package. You can learn more about USC’s comprehensive benefits here.

 

Ready to Make an Impact?

If you are an experienced IAM professional looking to work at the intersection of identity governance, directory services and cybersecurity, consider joining USC's Cybersecurity IAM team. Apply today and bring your expertise to a role that will help strengthen secure identity lifecycle management, access governance and enterprise identity services across one of the nation's leading research universities.

 

USC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, or any other characteristic protected by law or USC policy. USC observes affirmative action obligations consistent with state and federal law.

Addtional Education Requirements Combined experience/education as substitute for minimum education

Addtional Experience Requirements Combined experience/education as substitute for minimum work experience


Preferred Certifications: Certified Information Systems Security Professional (CISSP) certification or similar. IAM software certification (e.g., SailPoint Certified Engineer, CyberArk Guardian)

                                                  

USC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, or any other characteristic protected by law or USC policy. USC observes affirmative action obligations consistent with state and federal law. USC will consider for employment all qualified applicants with criminal records in a manner consistent with applicable laws and regulations, including the Los Angeles County Fair Chance Ordinance for employers and the Fair Chance Initiative for Hiring Ordinance, and with due consideration for patient and student safety. Please refer to the Background Screening Policy Appendix D for specific employment screen implications for the position for which you are applying. 

We provide reasonable accommodations to applicants and employees with disabilities. Applicants with questions about access or requiring a reasonable accommodation for any part of the application or hiring process should contact USC Human Resources by phone at (213) 821-8100, or by email at [email protected]. Inquiries will be treated as confidential to the extent permitted by law.

                                                  

If you are a current USC employee, please apply to this  USC job posting in Workday by copying and pasting this link into your browser:

https://wd5.myworkday.com/usc/d/inst/1$9925/9925$155258.htmld

Skills

SQLOracleWorkdayCybersecurityProject ManagementCISSP

Similar Jobs

1

Senior IAM Engineer - Ping Identity and Directory Services

CVS Health·Work At Home-Texas, US·Remote

5d ago