United Airlines - Chicago, IL

posted 5 months ago

Full-time - Mid Level
Remote - Chicago, IL
Air Transportation

About the position

Connecting People. Uniting the World. There's never been a more exciting time to join United Airlines! As a global company that operates in hundreds of locations around the world — with millions of customers and tens of thousands of employees — we have a unique responsibility to uplift and provide opportunities in the places where we work, live and fly. We're on a path toward becoming the best airline in the history of aviation. Join our Cybersecurity and Digital Risk (CDR) team to help us also become best-in-class cyber-safe in the industry. United's CDR team is tasked with keeping our customers' and employees' information safe and secure. Our primary mission is to embed cybersecurity into the DNA of United Airlines by reducing business risk through implementation of strong cybersecurity standard methodologies. The Identity & Access Management (IAM) Senior Security Analyst plays a critical role in analyzing, strengthening, and securing the company's IAM systems and overall security posture. This position focuses on proactive analysis, collaboration across teams, and supporting compliance efforts to continuously improve the organization's security landscape. The Senior Analyst - (IAM) will be performing analysis of IAM systems to identify vulnerabilities, inefficiencies, and areas for improvement as well as proactively recommend and implement strategies to enhance security, processes, and ensure optimal system functionality. They will work closely with development teams, IT security experts, and other partners to integrate secure identity solutions throughout the product lifecycle and cultivate open communication and collaboration to ensure successful IAM implementation and adoption across the organization. The role also actively participates in compliance efforts by ensuring IAM systems adhere to relevant regulations and internal policies, while also conducting regular audits and assessments to identify and address potential compliance gaps. The ideal analyst will continuously stay abreast of evolving IAM practices, industry standards, and emerging threats. Adapt and implement new technologies and processes to maintain a robust and secure IAM environment. Provide support for the implementation and administration of IAM platforms, resolve and respond to break/fix requests, monitor environment, support Digital Technology in any process for development, QA, and production environments. Resolve level 2 tickets including bugs, outages, new feature requests, and ensure IAM solutions adhere to regulatory, compliance, and internal requirements. Maintain IAM policies, standards, and procedures. Provide reports as requested for compliance. Ensure IAM security is aligned with the overall security strategy to reduce risk to the organization. Collaborate with other IAM team members to provide guidance on IAM related matters and provide input to solution design and system support.

Responsibilities

  • Analyze and strengthen the company's IAM systems and overall security posture.
  • Identify vulnerabilities, inefficiencies, and areas for improvement in IAM systems.
  • Recommend and implement strategies to enhance security and processes.
  • Collaborate with development teams and IT security experts to integrate secure identity solutions.
  • Support compliance efforts by ensuring IAM systems adhere to relevant regulations and internal policies.
  • Conduct regular audits and assessments to identify and address potential compliance gaps.
  • Stay abreast of evolving IAM practices, industry standards, and emerging threats.
  • Provide support for the implementation and administration of IAM platforms.
  • Resolve and respond to break/fix requests and monitor the environment.
  • Resolve level 2 tickets including bugs, outages, and new feature requests.
  • Maintain IAM policies, standards, and procedures, and provide compliance reports.
  • Ensure IAM security aligns with the overall security strategy.

Requirements

  • Bachelor's degree required in a STEM field.
  • 4+ years of domain experience in Identity & Access Management.
  • Advanced understanding of Enterprise or Customer Identity & Access Management, Single Sign-On, Multi-Factor Authentication (MFA), and Authentication.
  • In-depth understanding of identity protocols and technologies: OpenID Connect (OIDC), OAuth, SAML, AD-Fed, API Gateways, SCIM, and platforms such as Ping Identity, Okta, MS Azure, and ForgeRock.
  • Knowledge of fraud prevention and detection, identity proofing, and identity verification technologies.
  • Expertise in software lifecycle development and automated cloud infrastructure deployment.
  • Understanding of policies that reflect system security objectives.
  • Ability to resolve and understand how a security system works and its resilience capabilities.

Nice-to-haves

  • Higher level education than previously stipulated (Cybersecurity, Risk Management, Computer Science).
  • 6+ years of related experience.
  • CISA, CISM, CISSP certifications.
  • Knowledge of organizational standards and policies (ISO, NIST).
  • Knowledge of compliance regulations (SOX, PCI, FAA, GDPR, PII).

Benefits

  • Competitive benefits package including parental leave, 401k, and privileges like space available travel.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service