Senior Information Security Analyst
Model N
Job Responsibilities
- Process and validate user access requests, approvals, and removals in accordance with security policies.
- Support onboarding and offboarding workflows, including provisioning and deprovisioning across systems and applications.
- Review access rights to ensure alignment with job responsibilities and least-privilege principles.
- Assist with periodic access reviews, certifications, and entitlement cleanups.
- Investigate access issues, troubleshoot authentication problems, and coordinate with technical teams for resolution.
- Monitor IAM and identity systems for anomalies and escalate issues as appropriate.
- Maintain and improve information security documentation including policies, procedures, SOPs, and runbooks.
- Support audit and compliance activities by preparing evidence, control descriptions, and process documentation.
- Track and report on compliance metrics, access violations, and remediation efforts.
- Review authentication and authorization logs from Okta, Entra ID, Active Directory, and cloud platforms.
- Investigate IAM alerts, failed logins, MFA bypass attempts, and anomalous behavior.
- Support incident response activities by analyzing identity-related events and user activity.
- Validate service account usage, credential age, and ownership information.
- Assist in remediation of excessive permissions, orphaned accounts, and access gaps.
- Provide operational support and escalation for IAM and security program-related issues.
- Collaborate with security teams to strengthen authentication, authorization, identity governance, and overall security processes.
Job Qualification
- 3 to 5 years of experience in information security, IAM, IT security operations, risk, or compliance-related roles.
- Experience writing and maintaining information security documentation such as policies, SOPs, standards, and procedures.
- Familiarity with IAM concepts including user lifecycle management, roles, entitlements, and privileged access.
- Hands-on experience with identity platforms such as Entra ID, Okta, SailPoint, or similar tools.
- Strong attention to detail and ability to follow and improve documented processes.
- Comfortable working with tickets, logs, audit evidence, and operational dashboards.
- Clear written and verbal communication skills for both technical and non-technical audiences.
- Experience supporting security audits, access reviews, or regulatory assessments.
- Understanding of SSO, MFA, and authentication and authorization protocols.
- Exposure to security frameworks or standards such as ISO 27001, SOC 2, or NIST.
- Basic scripting or automation experience using PowerShell, Python, or similar tools.
- Familiarity with cloud platforms such as AWS, Azure, or GCP.
- Security or identity-related certifications are a plus but not required.