Expoint – all jobs in one place
מציאת משרת הייטק בחברות הטובות ביותר מעולם לא הייתה קלה יותר

דרושים Senior Identity Access Management Iam Specialist ב-Bank Of America ב-United States, Boston

מצאו את ההתאמה המושלמת עבורכם עם אקספוינט! חפשו הזדמנויות עבודה בתור Senior Identity Access Management Iam Specialist ב-United States, Boston והצטרפו לרשת החברות המובילות בתעשיית ההייטק, כמו Bank Of America. הירשמו עכשיו ומצאו את עבודת החלומות שלך עם אקספוינט!
חברה (1)
אופי המשרה
קטגוריות תפקיד
שם תפקיד (1)
United States
אזור
Boston
נמצאו 29 משרות
Yesterday
BOA

Bank Of America Identity Access management IAM Mainframe Security United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Implement and maintain security administration and access policies using RACF, ACF2, or Top Secret. Enforce least privilege and role-based access control (RBAC). Ensure multi-factor authentication for privileged users. Ensure that...
תיאור:

LOB Overview:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies, and addresses vulnerabilities and operates global security operations centers that monitor, detect, and respond to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

Role Description:

The Mainframe Security Administration Manager leads a team of analysts responsible for managing secure access to mainframe systems. This role requires a blend of technical acumen in mainframe security mechanisms (RACF, ACF2, Top Secret), strong governance expertise including knowledge of industry standards, and leadership of team members as a key stakeholder within Information Security and the broader IT organization.

Access Control Management

  • Implement and maintain security administration and access policies using RACF, ACF2, or Top Secret.

  • Enforce least privilege and role-based access control (RBAC).

  • Ensure multi-factor authentication for privileged users.

  • Ensure that privileged access and encryption policies are enforced.

Compliance & Auditing

  • Align security administration and access controls with regulatory frameworks (SOX, UCAL and PWC applications).

  • Maintain detailed logs and audit trails for all access request and administrators provisioning activities.

  • Utilize tools such as Vanguard Resource Administrator (VRA) for forensic analysis and Report Analyzer for reporting.

Security Governance

  • Monitor for unauthorized access and potential data leakage.

  • Conduct regular access reviews and security assessments.

  • Integrate with Identity and Access Management (IAM) systems for centralized governance.

Team Management

  • Lead and mentor a team of mainframe security analysts.

  • Ensure team proficiency in RACF, Top Secret, and z/OS environments, including by participating in learning opportunities and communicating with vendors

  • Promote automation of repetitive provisioning tasks to enhance efficiency.

  • Oversee ticketing systems integrated with IAM workflows for request tracking, Quality Assurance validation for efficiency and remediation.

Training & Development

  • Provide ongoing training on evolving security threats and compliance requirements, process changes.

  • Set Global Information Security goals and encourage professional certifications (e.g., CISSP, Certified RACF and Vanguard Specialist).

Operational Best Practices

  • Ensure 24/7 monitoring of access provisioning activities.

  • Establish and maintain incident response protocols for access-related events.

  • Design scalable provisioning processes to support organizational growth.

Required Qualifications:

  • 10+ years of progressive experience in Identity and Access Management, with a strong focus on access provisioning across enterprise environments.

  • 10+ Years of experience in RACF, ACF2 and zOS systems

  • Drives Mainframe Modernization and work in close partnership with the CTO Mainframe team to provide SME security leadership.

  • Deep technical expertise in Mainframe RACF, Vanguard and Microsoft Azure AWS, Databases DB2 and VMSecure and enterprise storage platforms.

  • Proven ability to design, implement, and manage access provisioning solutions that enforce least privileged access and align with regulatory and internal compliance requirements.

  • Strong understanding of IAM governance frameworks, platforms (e.g., ForgeRock Single Sign- On SSO, Adaptive Authentication) role-based access control (RBAC), group policy management, and privileged access management (PAM) tools, CyberArk, Hashi Corp and Beyond Trust.

  • Experience with automated provisioning/de-provisioning workflows, including integration with HR systems to demonstrated proficiency in scripting and automation (e.g., PowerShell, Python) to support scalable access provisioning and audit processes.

  • Familiarity with cloud infrastructure security and access controls in hybrid environments, particularly within Microsoft Azure AWS and Oracle Cloud.

  • Ability to conduct access reviews, entitlement audits, and risk assessments to identify and remediate access-related vulnerabilities.

  • Excellent analytical, problem-solving, and communication skills, with the ability to collaborate across technical and business teams.

  • Bachelor’s degree in computer science, Information Security, or a related field; advanced degree or certifications (e.g., CISSP, CISM, Microsoft Certified: Identity and Access Administrator Associate) preferred.

  • BS/BA Engineering degree or equivalent experience

Desired Skills:

  • Understanding or have experience with agile and lean philosophies.

  • Strong critical thinking and problem-solving skills with clear communication

  • Ability to collaborate with different roles to achieve common goals.

  • Ability to think critically and question the status quo.

  • Understand how to identify software security vulnerabilities and recognize and communicate their associated impact to the business.

  • Demonstrate awareness of secure software design principles such as least privilege, defense in depth, or designing secure user interfaces

1st shift (United States of America)

Show more
Yesterday
BOA

Bank Of America Identity Access Management IAM Analyst Mainframe / RACF exp ... United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Administer and maintain RACF security profiles for users, groups, datasets and general resources. Implement, review, and update RACF rules to align with security policies and compliance requirements. Analyze and troubleshoot...
תיאור:

Job Summary:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

What you can expect in Identity & Access Management:

In today’s highly connected world, managing and securing the identity of users is essential to the safety and success of our workforce. The Identity & Access Management (IAM) team works within Global Information Services (GIS) and in close participation with all other LOB teams as well as second and third line of defense partners. This role is highly visible and requires frequent interaction with senior management and key stakeholders.

Role Description:

  • Administer and maintain RACF security profiles for users, groups, datasets and general resources

  • Implement, review, and update RACF rules to align with security policies and compliance requirements

  • Analyze and troubleshoot RACF related security incidents and access issues

  • Provide RACF support during Mainframe upgrades, migrations and disaster recovery tests

  • Provide 24/7 on-call support for RACF related issues

  • Develop and maintain RACF process and procedural documentation

  • Work closely with internal/external audit and compliance to ensure adherence to IAM standards.

Required Qualifications:

  • 3+ years of experience with IAM

  • 3+ years of experience with Mainframe security administration (RACF)

  • Strong knowledge of z/OS mainframe environment, TSO/ISPF, JCL and security related exits

  • Excellent analytical, troubleshoot, and problem solving skills

  • Excellent communication skills

1st shift (United States of America)

Show more
Yesterday
BOA

Bank Of America Senior Banker - Huntington Financial Center United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Partners with teams to provide financial center clients with both consumer and small business solutions, services, and strategies when uncovering personal banking needs and helping clients navigate their unique life...
תיאור:

Job Description:

Job Description:

This job is responsible for serving as the first point of contact for financial center clients, helping to uncover personal banking needs of both individual and small business clients, offering appropriate solutions, and connecting clients to specialists. Key responsibilities include deepening client relationships through platform services, supporting clients with self-service or transactional activities, and providing exceptional client care. Job expectations include proactively connecting with clients through outbound calls and conducting consistent follow-up routines.

Responsibilities:

• Partners with teams to provide financial center clients with both consumer and small business solutions, services, and strategies when uncovering personal banking needs and helping clients navigate their unique life priorities

• Assists, educates, and trains clients on conducting simple transactions through self-service technologies

• Leverages available resources, technologies, and processes to optimize the client experience and deliver operational excellence and accuracy

• Adheres to established processes, laws, and guidelines in performing day-to-day activities, such as opening accounts, account maintenance, and Digital Assisted Shopping

• Manages client interactions by taking the best course of action for the bank and its clients and abiding by all regulatory requirements

Required Qualifications:

• Has a minimum of one year demonstrated sales experience in a relationship-oriented and client-centric environment. In lieu of this requirement, has previously held the role of Relationship Manager (RM), Advisor Development Program (ADP) RM, Credit Solutions Advisor (CSA I), or Relationship Manager Business Owner Specialist (RMBOS) at Bank of America for a minimum of six months.

• Is an enthusiastic, highly motivated self-starter with a strong work ethic and intense focus on results, acting in the best interest of the client.

• Collaborates effectively to get things done, building and nurturing strong relationships.

• Displays passion, commitment and drive to deliver an experience that improves our clients’ financial lives.

• Is confident in identifying solutions for helping new and existing clients based on their needs.

• Has strong written and verbal communications skills.

• Is able to communicate effectively and confidently, and is comfortable engaging all clients (in-person and by phone).

• Has the ability to learn and adapt to new information, technology platforms, handle ambiguity and adapt to changing circumstances.

• Applies strong critical thinking and problem-solving skills to meet clients’ needs.

• Demonstrates effective time management skills and the ability to organize, prioritize and perform multiple tasks simultaneously.

• Is a commissioned notary or can successfully obtain a notary commission in the state you work within a few months of start date in role (exact timeframe varies by location due to differing state laws).

• Can be flexible to work weekends and/or extended hours as needed.

Desired Qualifications:

• An Associate’s Degree or Bachelor’s Degree in business, finance, or a related field.

• Experience working in a financial center where goals were met or exceeded.

• Retail and/or sales experience in a salary plus incentive environment.

• Experience working in an environment with individual and/or team goals where goals were routinely met or exceeded.

• Experience with financial information, spreadsheets and financial skills.

• Knowledge of banking products and services.

• Strong computer skills including Microsoft applications and previous experience utilizing laptop technology

• Active Listening

• Business Acumen

• Customer and Client Focus

• Oral Communications

• Problem Solving

• Account Management

• Client Experience Branding

• Client Management

• Client Solutions Advisory

• Relationship Building

• Business Development

• Pipeline Management

• Prospecting

• Referral Identification

• Referral Management

Minimum Education Requirement:

• High School Diploma / GED / Secondary School or equivalent

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

1st shift (United States of America)

Show more
Yesterday
BOA

Bank Of America Senior Identity Access Management IAM Specialist United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information...
תיאור:

LOB Overview:

  • Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies, and addresses vulnerabilities and operates global security operations centers that monitor, detect, and respond to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

Role Description:

  • We are seeking a highly experienced and technically proficient Senior Identity and Access Management (IAM) Specialist to lead access provisioning initiatives across a complex enterprise environment. This role is critical to ensuring secure, compliant, and efficient access to systems and data, with a strong emphasis on enforcing least privileged access principles that eliminate excessive permissioning.

  • The ideal candidate will bring deep expertise in IAM technologies and platforms—including Active Directory , Microsoft Azure, Amazon Web Services (AWS), and Mainframe , Oracle , SQL , and various file and storage collaboration systems, password secure controls including keys and tokens —and will be responsible for designing and implementing scalable access provisioning solutions to integrate IAM processes across cloud services. This is a hands-on technical leadership role that requires strategic thinking, cross-functional collaboration, and a commitment to continuous improvements in identity governance and access platforms and controls.

Responsibilities:

  • Lead the design, implementation, and ongoing management of access provisioning solutions across enterprise platforms, ensuring alignment with security policies and regulatory requirements.

  • Serve as the subject matter expert for Active Directory , Microsoft Azure, Amazon Web Services (AWS), and Mainframe , Oracle and SQL databases , file systems , and enterprise storage , with a focus on enforcing least privileged access .

  • Develop and maintain access control policies , group structures , and role-based access models to support scalable and secure provisioning.

  • Collaborate with application owners, infrastructure teams, and business stakeholders to define and implement access requirements for new and existing systems.

  • Drive automation initiatives to streamline provisioning and de-provisioning workflows , integrating with identity governance platforms and HR systems and IAM controls.

  • Conduct periodic access reviews , entitlement audits , and certification campaigns to ensure compliance and identify access anomalies.

  • Investigate and remediate access-related incidents, working closely with cybersecurity and risk teams to address vulnerabilities and improve controls.

  • Provide technical leadership and mentorship to junior IAM team members, fostering a culture of security-first thinking and operational excellence.

  • Stay current with emerging IAM technologies, regulatory changes, and industry best practices to continuously enhance the access provisioning program.

  • Prepare and present metrics, reports, and recommendations to senior leadership and audit teams regarding access provisioning effectiveness and risk posture.

Required Qualifications:

  • 10+ years of progressive experience in Identity and Access Management, with a strong focus on access provisioning across enterprise environments.

  • Deep technical expertise in Active Directory , Microsoft Azure AWS, Mainframe , Oracle Database , SQL Server , Windows and Unix file systems , and enterprise storage platforms .

  • Proven ability to design, implement, and manage access provisioning solutions that enforce least privileged access and align with regulatory and internal compliance requirements.

  • Strong understanding of IAM governance frameworks , platforms ( e.g., SailPoint, Saviynt ) role-based access control (RBAC) , group policy management , and privileged access management (PAM) tools, CyberArk, Hashi Corp and Beyond Trust.

  • Experience with automated provisioning/de-provisioning workflows , including integration with HR systems to demonstrated proficiency in scripting and automation (e.g., PowerShell, Python) to support scalable access provisioning and audit processes.

  • Familiarity with cloud infrastructure security and access controls in hybrid environments, particularly within Microsoft Azure AWS and Oracle Cloud .

  • Ability to conduct access reviews , entitlement audits , and risk assessments to identify and remediate access-related vulnerabilities.

  • Excellent analytical, problem-solving, and communication skills, with the ability to collaborate across technical and business teams.

1st shift (United States of America)

Show more
18.11.2025
BOA

Bank Of America IAM Privileged Access Management PAM Analyst United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Provision and de-provision privileged access for infrastructure support teams across local and LDAP-authenticated systems. Manage credential lifecycles, vaulting, and privilege elevation controls and configurations using common enterprise PAM tools (e.g.,...
תיאור:

Job Description:

Job Description:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies, and addresses vulnerabilities and operates global security operations centers that monitor, detect, and respond to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

Your contributions will include provisioning and managing privileged accounts and groups within Active Directory, onboarding accounts into the CyberArk vaulting solution, and supporting technical teams in troubleshooting vaulting-related issues across UNIX, Windows, and network infrastructure. You will also be responsible for generating reports and data extracts from PAM tools to support internal customers and partners.

Key Responsibilities

  • Provision and de-provision privileged access for infrastructure support teams across local and LDAP-authenticated systems.
  • Manage credential lifecycles, vaulting, and privilege elevation controls and configurations using common enterprise PAM tools (e.g., CyberArk, BeyondTrust, Delinea, Ping Identity, and other vendor products).
  • Ensure compliance with internal policies and external regulatory requirements through timely access reviews and audits.
  • Collaborate with global teams, senior leadership, and business stakeholders to support secure access enablement.
  • Monitor and analyze privileged access activity to detect anomalies and potential threats.
  • Participate in the development and enhancement of PAM policies, standards, and procedures.
  • Stay current with emerging threats, technologies, and industry trends to continuously improve access controls and risk posture.

Required Qualifications

  • 3+ years of experience in Identity & Access Management, with a focus on Privileged Access Management.
  • Hands-on experience with PAM tools such as CyberArk, BeyondTrust Power Broker, Hashi Secret Vault or similar.
  • Strong knowledge of Active Directory, LDAP, and UNIX/Linux authentication mechanisms.
  • Strong knowledge of AWS, Azure and GCP.
  • Familiarity with ITIL processes and security frameworks (e.g., NIST, ISO 27001).
  • Proven ability to work collaboratively across technical and business teams.
  • Excellent analytical, problem-solving, and communication skills.

Desired Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or related field.
  • Industry certifications such as CISSP, CISM, or vendor-specific PAM certifications.
  • Experience in a highly regulated industry (e.g., banking, healthcare, government).
  • Knowledge of scripting languages (e.g., PowerShell, Python) for automation of access tasks.

Why Join Us?

  • Be part of a mission-critical team that safeguards enterprise systems and data.
  • Work in a collaborative, global environment with opportunities for career growth.
  • Influence the evolution of access security policies and practices across the organization.

Skills:

  • Cyber Security
  • Data Privacy and Protection
  • Problem Solving
  • Process Management
  • Threat Analysis
  • Business Acumen
  • Data and Trend Analysis
  • Interpret Relevant Laws, Rules, and Regulations
  • Risk Analytics
  • Stakeholder Management
  • Access and Identity Management
  • Data Governance
  • Encryption
  • Information Systems Management
  • Technology System Assessment
1st shift (United States of America)

Show more
18.11.2025
BOA

Bank Of America Senior Banker - Allston Financial Center United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Partners with teams to provide financial center clients with both consumer and small business solutions, services, and strategies when uncovering personal banking needs and helping clients navigate their unique life...
תיאור:

Job Description:

Job Description:

This job is responsible for serving as the first point of contact for financial center clients, helping to uncover personal banking needs of both individual and small business clients, offering appropriate solutions, and connecting clients to specialists. Key responsibilities include deepening client relationships through platform services, supporting clients with self-service or transactional activities, and providing exceptional client care. Job expectations include proactively connecting with clients through outbound calls and conducting consistent follow-up routines.

Responsibilities:

• Partners with teams to provide financial center clients with both consumer and small business solutions, services, and strategies when uncovering personal banking needs and helping clients navigate their unique life priorities

• Assists, educates, and trains clients on conducting simple transactions through self-service technologies

• Leverages available resources, technologies, and processes to optimize the client experience and deliver operational excellence and accuracy

• Adheres to established processes, laws, and guidelines in performing day-to-day activities, such as opening accounts, account maintenance, and Digital Assisted Shopping

• Manages client interactions by taking the best course of action for the bank and its clients and abiding by all regulatory requirements

Required Qualifications:

• Has a minimum of one year demonstrated sales experience in a relationship-oriented and client-centric environment. In lieu of this requirement, has previously held the role of Relationship Manager (RM), Advisor Development Program (ADP) RM, Credit Solutions Advisor (CSA I), or Relationship Manager Business Owner Specialist (RMBOS) at Bank of America for a minimum of six months.

• Is an enthusiastic, highly motivated self-starter with a strong work ethic and intense focus on results, acting in the best interest of the client.

• Collaborates effectively to get things done, building and nurturing strong relationships.

• Displays passion, commitment and drive to deliver an experience that improves our clients’ financial lives.

• Is confident in identifying solutions for helping new and existing clients based on their needs.

• Has strong written and verbal communications skills.

• Is able to communicate effectively and confidently, and is comfortable engaging all clients (in-person and by phone).

• Has the ability to learn and adapt to new information, technology platforms, handle ambiguity and adapt to changing circumstances.

• Applies strong critical thinking and problem-solving skills to meet clients’ needs.

• Demonstrates effective time management skills and the ability to organize, prioritize and perform multiple tasks simultaneously.

• Is a commissioned notary or can successfully obtain a notary commission in the state you work within a few months of start date in role (exact timeframe varies by location due to differing state laws).

• Can be flexible to work weekends and/or extended hours as needed.

Desired Qualifications:

• An Associate’s Degree or Bachelor’s Degree in business, finance, or a related field.

• Experience working in a financial center where goals were met or exceeded.

• Retail and/or sales experience in a salary plus incentive environment.

• Experience working in an environment with individual and/or team goals where goals were routinely met or exceeded.

• Experience with financial information, spreadsheets and financial skills.

• Knowledge of banking products and services.

• Strong computer skills including Microsoft applications and previous experience utilizing laptop technology

• Active Listening

• Business Acumen

• Customer and Client Focus

• Oral Communications

• Problem Solving

• Account Management

• Client Experience Branding

• Client Management

• Client Solutions Advisory

• Relationship Building

• Business Development

• Pipeline Management

• Prospecting

• Referral Identification

• Referral Management

Minimum Education Requirement:

• High School Diploma / GED / Secondary School or equivalent

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

1st shift (United States of America)

Show more
18.11.2025
BOA

Bank Of America Wealth Management Client Associate United States, Massachusetts, Boston

Limitless High-tech career opportunities - Expoint
Provides excellent Client Service to the bank's clients through educating them on all of the bank's service and banking offerings. Ensures timeliness, accuracy, and completeness in client materials and follows...
תיאור:

Job Description:

Merrill is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.


This job is responsible for providing client service support to potentially multiple Financial Advisors (FAs). Key responsibilities include supporting enterprise strategic objectives, operational excellence goals, and client advocacy within the FA's business, while customizing solutions based on their specific needs. Job expectations include serving as the most frequent point of contact within Merrill to address all service needs of their clients.

Responsibilities:

  • Provides excellent Client Service to the bank's clients through educating them on all of the bank's service and banking offerings
  • Ensures timeliness, accuracy, and completeness in client materials and follows up on all client and Financial Advisor (FA) requests
  • Assists with ensuring practices are in alignment with the bank's policies and procedures to support operational excellence, protect the bank's clients, and manage risk
  • Identifies, deepens, and maintains client relationships through emphasizing the bank's offerings and promoting incorporation of banking into day-to-day practices, while communicating outputs to the FA
  • Supports day-to-day team activities and needs including covering roles in times of absence or seasonal need increases, while leading with a client first mindset

Skills:

  • Account Management
  • Client Management
  • Customer and Client Focus
  • Issue Management
  • Oral Communications
  • Business Development
  • Client Solutions Advisory
  • Pipeline Management
  • Prioritization
  • Administrative Services
  • Emotional Intelligence
  • Referral Identification
  • Written Communications

Minimum Education Requirement:High School Diploma / GED / Secondary School or equivalent

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

1st shift (United States of America)

Show more
Limitless High-tech career opportunities - Expoint
Implement and maintain security administration and access policies using RACF, ACF2, or Top Secret. Enforce least privilege and role-based access control (RBAC). Ensure multi-factor authentication for privileged users. Ensure that...
תיאור:

LOB Overview:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies, and addresses vulnerabilities and operates global security operations centers that monitor, detect, and respond to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

Role Description:

The Mainframe Security Administration Manager leads a team of analysts responsible for managing secure access to mainframe systems. This role requires a blend of technical acumen in mainframe security mechanisms (RACF, ACF2, Top Secret), strong governance expertise including knowledge of industry standards, and leadership of team members as a key stakeholder within Information Security and the broader IT organization.

Access Control Management

  • Implement and maintain security administration and access policies using RACF, ACF2, or Top Secret.

  • Enforce least privilege and role-based access control (RBAC).

  • Ensure multi-factor authentication for privileged users.

  • Ensure that privileged access and encryption policies are enforced.

Compliance & Auditing

  • Align security administration and access controls with regulatory frameworks (SOX, UCAL and PWC applications).

  • Maintain detailed logs and audit trails for all access request and administrators provisioning activities.

  • Utilize tools such as Vanguard Resource Administrator (VRA) for forensic analysis and Report Analyzer for reporting.

Security Governance

  • Monitor for unauthorized access and potential data leakage.

  • Conduct regular access reviews and security assessments.

  • Integrate with Identity and Access Management (IAM) systems for centralized governance.

Team Management

  • Lead and mentor a team of mainframe security analysts.

  • Ensure team proficiency in RACF, Top Secret, and z/OS environments, including by participating in learning opportunities and communicating with vendors

  • Promote automation of repetitive provisioning tasks to enhance efficiency.

  • Oversee ticketing systems integrated with IAM workflows for request tracking, Quality Assurance validation for efficiency and remediation.

Training & Development

  • Provide ongoing training on evolving security threats and compliance requirements, process changes.

  • Set Global Information Security goals and encourage professional certifications (e.g., CISSP, Certified RACF and Vanguard Specialist).

Operational Best Practices

  • Ensure 24/7 monitoring of access provisioning activities.

  • Establish and maintain incident response protocols for access-related events.

  • Design scalable provisioning processes to support organizational growth.

Required Qualifications:

  • 10+ years of progressive experience in Identity and Access Management, with a strong focus on access provisioning across enterprise environments.

  • 10+ Years of experience in RACF, ACF2 and zOS systems

  • Drives Mainframe Modernization and work in close partnership with the CTO Mainframe team to provide SME security leadership.

  • Deep technical expertise in Mainframe RACF, Vanguard and Microsoft Azure AWS, Databases DB2 and VMSecure and enterprise storage platforms.

  • Proven ability to design, implement, and manage access provisioning solutions that enforce least privileged access and align with regulatory and internal compliance requirements.

  • Strong understanding of IAM governance frameworks, platforms (e.g., ForgeRock Single Sign- On SSO, Adaptive Authentication) role-based access control (RBAC), group policy management, and privileged access management (PAM) tools, CyberArk, Hashi Corp and Beyond Trust.

  • Experience with automated provisioning/de-provisioning workflows, including integration with HR systems to demonstrated proficiency in scripting and automation (e.g., PowerShell, Python) to support scalable access provisioning and audit processes.

  • Familiarity with cloud infrastructure security and access controls in hybrid environments, particularly within Microsoft Azure AWS and Oracle Cloud.

  • Ability to conduct access reviews, entitlement audits, and risk assessments to identify and remediate access-related vulnerabilities.

  • Excellent analytical, problem-solving, and communication skills, with the ability to collaborate across technical and business teams.

  • Bachelor’s degree in computer science, Information Security, or a related field; advanced degree or certifications (e.g., CISSP, CISM, Microsoft Certified: Identity and Access Administrator Associate) preferred.

  • BS/BA Engineering degree or equivalent experience

Desired Skills:

  • Understanding or have experience with agile and lean philosophies.

  • Strong critical thinking and problem-solving skills with clear communication

  • Ability to collaborate with different roles to achieve common goals.

  • Ability to think critically and question the status quo.

  • Understand how to identify software security vulnerabilities and recognize and communicate their associated impact to the business.

  • Demonstrate awareness of secure software design principles such as least privilege, defense in depth, or designing secure user interfaces

1st shift (United States of America)

Show more
בואו למצוא את עבודת החלומות שלכם בהייטק עם אקספוינט. באמצעות הפלטפורמה שלנו תוכל לחפש בקלות הזדמנויות Senior Identity Access Management Iam Specialist בחברת Bank Of America ב-United States, Boston. בין אם אתם מחפשים אתגר חדש ובין אם אתם רוצים לעבוד עם ארגון ספציפי בתפקיד מסוים, Expoint מקלה על מציאת התאמת העבודה המושלמת עבורכם. התחברו לחברות מובילות באזור שלכם עוד היום וקדמו את קריירת ההייטק שלכם! הירשמו היום ועשו את הצעד הבא במסע הקריירה שלכם בעזרת אקספוינט.