What are the responsibilities and job description for the IAM Analyst position at Gallagher?
Gallagher is a global leader in insurance, risk management and consulting services. We help businesses grow, communities thrive and people prosper. We live a culture defined by The Gallagher Way, our set of shared values and guiding tenets. A culture driven by our people, over 41,000 strong, serving our clients with customized solutions that will protect them and fuel their futures.
Gallagher Technology Services (GTS) provides and maintains quality, value-added core and common applications and information management solutions to enable the business strategies of Gallagher and its operating divisions.
The Identity and Access Management (IAM) Access Management Analyst role will be an expert in IAM related topics, with a focus on defining, designing, building and maintaining enterprise grade access management solutions.
Responsibilities:
- Serves as a key technical resource within the Global Identity and Access Management team to define, build modern solutions to support Gallagher users and customers.
- Ensure that IAM solutions are aligned with business needs, enterprise security standards, industry best practices
- Identify, analyze and resolve systems design weaknesses, prioritizing troubleshooting efforts and pinpointing resolutions to complex issues surrounding access to systems.
- Works closely with Infrastructure to plan and coordinate engineering processes in Azure/M365/AWS and are integrated into current IAM processes and procedures.
- Expert level understanding of IAM related standards and protocols (SCIM, OpenID Connect, FIDO, SAML, OAuth, WS-Fed)
- Experience in developing web services, API’s (SOAP/Restful)
- Proficient in .Net development and Angular framework.
- Assists in the review and update of information security policies, architecture and standards.
- Performs engineering for points of integration between IAM technologies and other systems.
- Document and maintain currently developed solutions.
- Communicates security risks and solutions to business partners and IT staff, including providing support for security related issues.
- Provide internal security consulting for complex application development, database design, network, and/or platform (operating systems) efforts, helping teams align with company and IT security policies, industry regulations, and standard methodologies.
- Provides Tier-3 support for IAM related issues.
- Work with Business, as well as, IT teams to gather information necessary to set the strategy for access provisioning and influence adoption of our centralized access management provisioning (One Identity) and governing solutions across the organization, as well as acquired entities (M&As).
- Lead and support migration of applications from on premise to cloud.
- Develop and extend monitoring reports on the health, effectiveness, and efficiency of the IAM service.
Requirements:
- Two or more years of experience designing, managing, or maintaining Microsoft Active Directory and Azure Active Directory environments for a large organization with multiple global domains.
- Five years of relevant IAM experience, including access provisioning and governance.
- Bachelor’s degree in information security or equivalent experience.
- Knowledge of Attribute Based Access Control (ABAC) and Policy Based Access Control (PBAC) and Active Directory Domain Services
- Familiarity with authorization design (application based, central and hybrid)
- Proven experience in building and configuring multiple cloud providers both in native and hybrid scenarios
- Strong ability to assess urgency and prioritization and make good decisions based upon situational circumstances.
- Ability to communicate effectively and influence at all levels of the organization
- Analytical and problem-solving skills.
U.S. Eligibility Requirements:
- Interested candidates must submit an application and resume/CV online to be considered
- Must be 18 years of age or older
- Must be willing to submit to a background investigation; any offer of employment is conditioned upon the successful completion of a background investigation
- Must have unrestricted work authorization to work in the United States. For U.S. employment opportunities, Gallagher hires U.S. citizens, permanent residents, asylees, refugees, and temporary residents. Temporary residence does not include those with non-immigrant work authorization (F, J, H or L visas), such as students in practical training status. Exceptions to these requirements will be determined based on shortage of qualified candidates with a particular skill. Gallagher will require proof of work authorization
- Must be willing to execute Gallagher's Employee Agreement, or the Non-Disclosure and Confidentiality Agreement, which requires, among other things, post-employment obligations relating to non-solicitation, confidentiality and non-disclosure
Gallagher believes that all persons are entitled to equal employment opportunity and does not discriminate against nor favor any applicant because of race, color, religion, sex, age, veteran status, disability, national origin, or any other legally protected status. Equal employment opportunity will be extended in all aspects of the employer-employee relationship, including, but not limited to, recruitment, hiring, training, promotion, transfer, demotion, compensation, benefits, layoff, and termination. In addition, Gallagher will make reasonable accommodations to known physical or mental limitations of an otherwise qualified applicant with a disability, unless the accommodation would impose an undue hardship on the operation of our business.