Ameriprise Financial logo
Ameriprise FinancialPosted 3 weeks ago
EXPIRED

Senior Information Security Analyst

HybridGurugram, Haryana, India

Full TimeSenior LevelEnterpriseFinancial Services

Job Summary

Monitor assigned environments and technical assets using standard monitoring tools to detect behavior outside established standards and escalate key security issues. Validate compliance with information security and identity policies, laws, and industry best practices through internal and external risk assessments, access reviews, and attestations. Enforce information security and identity policies by investigating violation reports, documenting controls, and coordinating with auditors for remediation activities. Prepare status reports on identity and access matters for tracking breaches, forensic investigations, and risk management. Maintain knowledge of identity and access management trends while participating in security education and awareness activities for technology and business teams.

Required Qualifications

  • Bachelor's degree in computer science, management information systems, or related technical field
  • 4-7 years of experience in Information Security Services, Cybersecurity, or related technical field
  • 4+ years in Identity Governance & Administration [IGA]
  • Demonstrated proficiency in at least one of verticals below: Identity & Access Governance suites such as RSA Identity Governance & Lifecycle (formerly Aveksa) or other competitor products such as SailPoint, Saviynt, Entra ID Governance or IBM Security Verify Governance
  • Demonstrated proficiency in at least one of verticals below: Privileged Credential Management tools that cover both cloud [examples AWS Secrets Manager, Azure Key Vault, Google Cloud Secret Manager] or on-prem credentials [such as CyberArk or other competitor tools like Beyond Trust, Thycotic, Delinea, Arcon, Hashicorp]
  • First level knowledge and/or demonstrated technical ability to understand code and technology infrastructure in multiple environments with experience in the below languages [Powershell, Python, PowerApps, PowerBI, Regular expressions-based programming]
  • Demonstrated basic understanding of the Software Development Lifecycle (SDLC) and programming/development procedures
  • Work experience that spans the Identity & Access Management or Governance, Risk, and Compliance security domains
  • Working knowledge of information security and computer network/system access technologies
  • Experience working in the financial services industry or other highly regulated/compliance-oriented environments
  • Good understanding of security controls, monitoring systems and regulatory/business drivers that impact security policies and practices
  • Effective oral and written communication skills
  • Critical thinking and thought leadership skills including logical, analytical, and abstract rational skills
  • Strong attention to detail, follow-through, and time management skills
  • Demonstrated aptitude to quickly learn and apply new tools and processes
  • Experience creating SQL queries and reports
  • Presentations (Creating and Delivering)
  • Project Coordination
  • Risk Identification and Remediation
  • ITIL (Change, Problem, Incident, Configuration) Management
  • Direct client experience, including working with client teams in both on-site and offshore models
  • Our employees work in the office at least three (3) days per week, with flexibility to work from home two (2) days per week
  • Full time

Desired Qualifications

  • Interested in gaining broad experience in Information Security Services
  • CISSP or similar security certifications
  • Identity & Access Governance (IAG) Capabilities: Access Review / Attestations
  • Joiner/Mover/Leaver Role Based Access Controls (RBAC)
  • Access Request Provisioning / De-Provisioning
  • Privileged Access Management (PAM) Governance Capabilities
  • Password Management Credential Access Management
  • Basic knowledge and experience with: Operating Systems (Windows, Linux, Mainframe, etc.)
  • Directories/LDAP Constructs (Active Directory, Oracle, etc.)
  • Databases/RDBMS/AWS RDS Constructs (Oracle, SQL, DB2, RDS etc.)
  • Authentication / Authorization Constructs (Directory, Hybrid, Native Source)
  • Data Formats (XML, CSV, etc.)
  • Development / Programming / Scripting
  • SQL for data analytics & reporting
  • AWS and Azure cloud IAG/IAM/PAM
  • Experience troubleshooting data issues
  • Audit Response (Artifact creation and delivery)
  • Compliance Types (SOX, SOC1, SOC2, SOX, NYDFS, FINRA, SEC, GLBA, HIPAA, IT Compliance, etc.)

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Find similar roles