IAM Technical Product Manager

$99,000 - $143,000/Yr

AIG - Atlanta, GA

posted about 1 month ago

Full-time
Atlanta, GA
Insurance Carriers and Related Activities

About the position

The IAM Technical Product Manager at AIG plays a crucial role in the design, implementation, and governance of Identity and Access Management (IAM) systems, focusing on Privileged Access Management. This position aligns business requirements with IAM solutions, ensuring robust security controls and seamless integration. The role requires a deep understanding of IAM principles and technologies, translating technical details into business language to enhance user experience and security.

Responsibilities

  • Engage with Security, IT, and Business stakeholders to understand their identity related needs and translate those needs into detailed technical requirements.
  • Conduct comprehensive analysis of existing IAM processes and identify areas for improvement.
  • Partner with IAM engineering to design and implement solutions that meet business requirements and comply with security standards.
  • Provide expert guidance on IAM technologies to drive effective identity lifecycle management, privileged access management, and advanced authentication solutions.
  • Develop and maintain detailed documentation of IAM architectures, processes, and policies.
  • Advocate for user-centric approach in IAM solutions, ensuring ease of use and positive user experience.
  • Provide support and troubleshooting for IAM related issues, acting as a liaison between business users and technical teams.
  • Lead training sessions and create end user guides to educate end users on IAM processes and tools.
  • Lead IAM projects from conception through deployment, ensuring timely and successful delivery of IAM initiatives utilizing agile methodologies.
  • Mentor and provide guidance to non-senior analysts and team members to help foster a collaborative and knowledgeable team environment.
  • Main point of contact for business and application owners for onboarding applications into AIG's identity governance tool (ex: SailPoint).
  • Partner with teams across IAM, Human Resources, Procurement, and Business Leads to analyze and enhance Joiner, Mover, Leaver, LOA, Rehire, and other access related processes.
  • Review and approve final design of developed roles for business teams and department.
  • Assist in developing and completing access certification campaigns.
  • Develop business friendly descriptions for application access entitlements.
  • Engage with application (workforce and customer) owners to understand their application's purpose and authentication model to enable the onboarding of the application to Okta solutions.
  • Provide guidance and recommendations to related best practices to ensure the appropriate degree of authentication assurance levels are reached based on application risk score.
  • Engage with account and application owners to understand their account's purpose and usages so that the account can be securely onboarded to CyberArk with automation password rotation and secure sessions, where applicable.

Requirements

  • Bachelor's degree in cybersecurity, information technology, or related field, such as computer science.
  • 7+ years of experience in IAM or related field.
  • Experience with application onboarding to IAM services (IGA / CIAM / Workforce / PAM) preferably as a Technical Business Analyst with large scale enterprise onboarding.
  • Strong understanding of IAM concepts, frameworks, and technologies.
  • Vast experience with IAM tools such as Okta (workforce and customer), Ping Identity, SailPoint, CyberArk, etc.
  • In-depth knowledge of security protocols, principals, and best practices.
  • Team player with excellent problem-solving skills and attention to detail, with an ache to learn and continuously improve.
  • Strong project management skills with experience leading IAM project leveraging agile methodology and leading scrum sessions.
  • Relevant security certifications (e.g., CISSP, CISM, CISA) or other IAM specific certifications (i.e., CyberArk Sentry, etc.) are a plus.
  • Excellent communication (written and verbal) and interpersonal skills, including ability to translate technical concepts with non-technical business leaders.
  • Exceptional analytical and decision-making skills.

Nice-to-haves

  • Experience / familiarity with advanced authentication and authorizations standards.
  • Experience with Joiner, mover, leaver processes and optimization patterns.
  • Familiarity with role mining techniques to analyze users and entitlements to efficiently design access bundles with least privilege.
  • Knowledge of Single Sign On (i.e., Kerberos, SAML, OIDC/OAuth, etc.) technologies and protocols.
  • Experience with multi-factor authentication technologies, including modern approaches such as passkeys.
  • Understanding of the concept of authoritative identity source (e.g. Workday) with ability to define automated birthright access through a combination of RBAC, ABAC, and PBAC based on meaningful identity attributes.
  • Knowledge of privileged access management concepts, such as password rotation, secure session management, time-to-live, least privilege, etc.

Benefits

  • Competitive salary range of $99,000-$143,000 with eligibility for a bonus.
  • Comprehensive benefits package focused on health, wellbeing, and financial security.
  • Professional development opportunities.
  • Flexible work arrangements.
  • Diversity and inclusion learning programs.
  • Cultural awareness activities and Employee Resource Groups (ERGs).
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service