Position Type:
Technology
Date Posted:
12/19/2022
Location:
Technology Support Services Center
Closing Date:
12/23/2022
WORK YEAR: Full-time, 260 days per year; 8 hours per day; approximately 8:00 a.m. - 4:45 p.m.
CLASSIFICATION: Off-Schedule Technical, Non-Exempt: C-4-2
2022 SALARY RANGE: $66,106 to $75,434, depending on qualifications with advancement to $92,549
BENEFITS: Benefits available.
Contact the Insurance office @ 507-328-4976 for detailed insurance information. Make sure to reference the exact job posting.
If you have questions regarding a job posting, contact the Office of Human Resources @ 507-328-4253 or email tabarrett@rochesterschools.org.
Duties Summary:
The RPS Technology Team is seeking an Identity and Access Management (IAM) Specialist to join our Technology department. Under the supervision of the Network Services Manager, the IAM Specialist is responsible for analyzing, administering and/or troubleshooting access rights and entitlements to IT Systems and Enterprise Applications as well as supporting processes and automations related to onboarding and offboarding of staff and students. This position is responsible for the technical aspects of implementing IAM best practices. They are responsible for providing expertise and guidance to various business units and working closely with IT and cybersecurity groups to gather identity and access management requirements to design, implement and maintain access controls across all systems in support of IT automation and cybersecurity strategies, assisting with designing, implementing, and maintaining IAM technologies to ensure audit and privacy compliance, driving automation wherever possible. The IAM Specialist will also assist with resolving any security issues related to IAM operations. In addition, the IAM Specialist is responsible for fulfilling user access requests according to standard operating procedures with a primary focus on quality and accuracy.
The selected candidate must be a self-starter, capable of working independently, under limited direction, and in a team environment.
Essential Duties and Responsibilities:
The following duties are normal for this position. These are not to be construed as exclusive or all-inclusive. Other duties may be required and assigned.
- Managing user accounts and permissions in the identity and access management system. Identifying business needs for granting access privileges and administering user account creation and maintenance within Active Directory and other global user management systems.
- Troubleshooting and addressing identity issues, systems access accounts, authentication, authorization, entitlements, and permissions.
- Performs user account management services by identifying users to be added/deleted/modified, group assignments and system privileges to provide automation, increase efficiencies, and ensure confidentiality.
- Granting or denying access to district resources with least privilege access based on user role and privileges.
- Assessing existing processes and developing new or revised processes to anticipate, manage and reduce risk. Implementing and maintaining technologies to ensure audit and security compliance.
- Incident ticket handling for quick resolution of security and access related topics.
- Develop and maintain documentation for the IAM platforms, related tools, and business processes including security/compliance, HA/DR, data management, monitoring, and application integration.
- Defines and documents Identity Management Life Cycle procedures – including provisioning, authentication, authorization, self-services, governance, and deprovisioning.
- Proactively identifying future needs for IAM services
- Participate in implementation of new features and integration scenarios within IAM environments
- Maintaining up-to-date knowledge of identity and access management best practices.
Job Requirements: Minimum Qualifications:
- 2 years of IAM Experience
- 2 years of IT experience In-depth knowledge of Active Directory infrastructure and related services.
- Bachelor's degree or equivalent real-life experience
- SQL experience
- Experience with IT Service Management Tools and Ticketing
- Experience administering the following: Active Directory, Google Suite, DUO MFA, SIS/HRIS
- Intermediate level PowerShell and scripting skills.
Job Requirements: Skills and Abilities:
- Proven interpersonal and consultative skills to achieve security goals including ability to communicate well with IT teams and customer, both written and verbally
- Understanding of core IT service and support practices
- High degree of integrity and trust along with the ability to work independently.
- Strong policy and process knowledge, IT auditing skills and expertise to deal with a variety of technologies and customers.
- Able to prioritize and respond to emergency situations effectively
- Ability to identify security risks and escalate where appropriate.
- Demonstrated organization, troubleshooting and documentation skills.
- A quick learner who is able to work problems through to completion with a high degree of attention to detail
Commitment to Equity:
Rochester Public Schools is committed to diversifying its workforce to better reflect the community we serve. We believe the practices used in recruiting, interviewing, hiring, supporting, and promoting staff must include and honor, at every level, those who represent the diverse identities of our schools and community.
https://www.rochesterschools.org/equity-statement
Common and Shared Accountabilities for All Positions
Employees of the Rochester Public School District #535 are expected to support the goals, model and promote an environment that is respectful for all, and work collaboratively with other staff to focus on the needs of the learner. A quality, customer focus that conveys a welcome attitude, an adaptability to change, and a desire for continuous improvement is also expected of all employees. In addition, staff are to respect confidential matters, encourage a safe and secure environment throughout the schools, and be dependable and accountable employees.