Senior Identity Access Management Analyst (Hybrid Opportunity)
University of MassachusettsAbout the role
About UMass Amherst
The flagship of the Commonwealth, the University of Massachusetts Amherst is a nationally ranked public land-grant research university that seeks to expand educational access, fuel innovation and creativity, and share and use its knowledge for the common good. Founded in 1863, UMass Amherst sits on nearly 1,450-acres in scenic Western Massachusetts and boasts state-of-the-art facilities for teaching, research, scholarship, and creative activity. The institution advances a diverse, equitable, and inclusive community where everyone feels connected and valued—and thrives, and offers a full range of undergraduate, graduate and professional degrees across 10 schools and colleges, and 100 undergraduate majors. We believe every member of our university community can contribute to our ongoing success by striving for the highest level of excellence as we seek breakthrough solutions to mounting environmental, social, economic, and technological challenges in our world.
Job Summary
The Senior Identity Access Management Analyst is a technical staff member of the Information Security organization supporting mission-critical IT applications, business processes, and infrastructure services provided by the Information Technology department. The Identity Access Management Analyst will collaborate with university business stakeholders to develop and administer Identity and Access Management (IAM) capabilities that enable the full lifecycle management of UMass Amherst account identities, credentials, and entitlements according to security, privacy, and compliance requirements. This position will perform security analysis and risk assessment and improve security by setting policies and standards. This position requires deep knowledge in Governance, Risk, and Compliance (GRC), solid understanding of data security, academic business operations, compliance-related laws, regulations and audits.
Essential Functions
Identity Access Management and Administration
- Executes and improves Identity and Access Management (IAM) control activities which may include, but not limited to, access provisioning/de-provisioning, entitlement review & access recertification, role-based authorization, segregation of duties, and computer account management.
- Collaborates with Human Resources to maintain access and authorization controls.
- Identifies and resolves gaps in the business processes which may include security/authorization set-up, user documentation, data interface design, data migration and reconciliation.
- Interacts with end users, managers, and data custodians to ensure compliance with access controls and audit procedures.
- Provides operational support and oversight for authentication/authorization services such as Multi-Factor Authorization (MFA), Active Directory, and Identity Management (IdM).
- Works with stakeholders, vendors, UITS, and internal IT departments, identifies, documents, and leads remediation of information security and operational issues impacting university identity management systems.
- Cross-trains information security staff members to function in a backup capacity.
Security Office Functions
- Develops security awareness, education, and outreach programs which focus on protecting the confidentiality, integrity, and availability of university information. Ensures the members of the university community are aware of applicable security laws and regulations and of their impact upon information uses at the university. Prepares and delivers training material independently or via third party training partners.
- Interfaces with, and responds to, internal and state auditor’s requests as needed.
- Performs security risk assessments/audits in accordance with established security policies and procedures.
- Researches, recommends, and promotes IT security policies and guidelines which focus on protecting confidentiality, integrity, and availability of university data and computer assets local and in the cloud.
- Ensures compliance with all federal, state, and local legislation relative to university information security.
- Leads information security strategic and tactical planning, disaster recovery, and business continuity planning.
Promote the University’s commitment to customer service by:
- Building effective partnerships with co-workers throughout the University by freely sharing appropriate information and providing assistance when needed.
- Ensuring optimum service to all internal and external partners in response to requests for service and information.
- Maintaining an environment that is welcoming to persons of all backgrounds, nationalities, and roles.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s