Administer the QTS identity and access governance program and tool(s).
Identify areas to expand or implement single sign-on technologies and role-based access controls.
Conduct QTS periodic access reviews, certifications, and audits to ensure compliance with internal policies and external audit requirements.
Document access, policies and exceptions, and maintain integrity of audit reviews.
Support audit and compliance activities by providing evidence and documentation related to access controls.
Collaborate with Human Resources, IT, and business units to align identity data and access rights with organizational roles.
Inform leadership to evaluate business impact and risk exposure based on level of access granted and make recommendations about where improvements should be made.
Make recommendations for improvements in automations efficiencies, security practices, and end-user access review experience.
Assist in the design, implementation, and maintenance of RBAC models.
Analyze access patterns and recommend role optimization strategies.
Develop and maintain dashboards and reports to monitor access governance metrics.
Identify and escalate anomalies or policy violations related to user access.
Participate in the development and enhancement of IAG policies, procedures, and standards.
Recommend automation opportunities to streamline identity and access processes.
Maintain understanding of business processes to aid in auditing enterprise identity and access.
Other duties as assigned.
Requirements
Bachelor’s degree in information security, computer science, a related field, or equivalent professional experience.
Four or more years of experience with identity and access management systems, access controls, security and risk management, and security governance fundamentals.
Experience with IGA platforms (e.g., Veza, SailPoint, Saviynt).
Familiarity with administering directory services, Windows AD and Entra ID, LDAP, AWS IAM, Okta, SSO, MFA and role-based access control.
Understanding of audit, regulatory and compliance frameworks (e.g., ISO 27001, SOC2 , HITRUST, NIST SP 800-53).
Strong analytical and problem-solving skills.
Strong communication and documentation abilities.
Ability to work collaboratively in a fast-paced environment.
US Citizenship Required
Nice to Have: Holds or working towards one or more of the following certifications: Certified Identity and Access Manager (CIAM) Certified Information Systems Security Professional (CISSP) CompTIA Security+ ITIL Foundation
Benefits
Roth and Traditional 401(k) matching contributions with immediate vesting
Every employee is bonus or commission eligible
Generous PTO, Paid Volunteer Days Plus Floating Holidays
Stock Purchase Plan (SPP)
11 paid Holidays Annually/Holiday compensation when worked
Pet and Legal Insurance
Q-Rest Sabbatical Program
Q-Anniversary Service Award Program
Parental Leave for primary and secondary caregivers
Lead organizational change initiatives and risk mitigation across battery cell factory ramp - up. Collaborate with cross - functional teams to ensure smooth transformation efforts and minimal disruption.
Consultant enhancing interoperable exchange of public health data and driving strategic transformation for federal health clients. Applying expertise in public health data policy, legal frameworks, and regulatory analysis.
Senior Consultant supporting public health data policy and governance initiatives for federal health clients. Collaborating with project teams to enhance data interoperability and drive strategic transformation.
Governance Specialist leading IT budget management and optimization projects at Credsystem. Overseeing compliance, risk management, and strategic decision - making with advanced dashboards.
IT Governance Office Lead in charge of strategic steering and development of IT Governance structures. Ensuring regulatory compliance and optimizing IT processes in a leading aerospace firm.
Assurance and Governance Manager leading assurance and governance for Treasury Operations at Starling Bank. Overseeing risk management and regulatory oversight in a hybrid work environment.
Operational Risk Officer contributing to risk management in NiCKEL Germany’s payment activities. Involves data protection compliance and overseeing local control frameworks.
Functional Architect responsible for evolving Risk IT system landscape at Deutsche Börse Group. Collaborating with stakeholders to design solutions in financial risk management applications.
Vice President overseeing Operational Risk with a focus on operational risk management and compliance for Wealth Services at BNY. Providing independent oversight and guidance to ensure risk mitigation and strategic alignment.
Environment Programme Risk Lead managing non - delivery risk within the Water Industry National Environment Programme. Responsible for communication, coordination, and reporting on environmental regulatory obligations.