IAM Directory and IGA Senior Analyst

Posted 16 Hours Ago
Be an Early Applicant
University Park, CA, USA
In-Office
119K-155K Annually
Senior level
Edtech
The Role
Designs, configures, tests, implements, and supports identity governance, directory, authentication, authorization, and enterprise application integration solutions. Investigates complex IAM issues, performs root-cause analysis, develops corrective actions, and improves automation and security controls. Translates business requirements into technical specifications, maintains architecture and operational documentation, and collaborates with application owners and stakeholders. The role supports identity lifecycle management and access governance across USC’s hybrid enterprise environment.
Summary Generated by Built In

Strengthen Identity Governance and Access at USC

USC is expanding its Cybersecurity IAM capabilities to strengthen how identities, access and directory services are managed across the university. As the IAM Directory and IGA Senior Analyst, you will play a key technical role in designing, configuring, testing and implementing identity governance administration (IGA) and directory service solutions that support secure identity lifecycle management, authentication, authorization and access governance.


This is an opportunity for an experienced IAM professional to work at the intersection of identity governance, directory services, cybersecurity and enterprise technology within a major research university. You will translate business and technical requirements into scalable IAM solutions, support enterprise application integrations, investigate complex identity and access issues, and identify opportunities to improve automation, security controls and operational effectiveness.


The position reports to the IGA & Directory Services Manager and is based at USC's CAL location in a hybrid work environment.

 

Job Accountabilities

  • Analyzes business and technical requirements for identity governance processes. Configures and enhances identity lifecycle workflows, access controls, role structures, provisioning processes and governance solutions to support operational and security requirements. Performs impact analysis and validates technical solutions prior to implementation.
  • Designs, configures, tests and implements directory service solutions supporting authentication, authorization, identity synchronization and enterprise application integration. Evaluates system requirements and develops technical configurations that improve reliability, security and operational efficiency.
  • Investigates complex identity, access and directory service issues. Conducts root-cause analysis, evaluates system behavior, develops corrective actions and implements sustainable technical solutions to prevent recurrence.
  • Develops, configures, tests and implements integrations between identity governance platforms, directory services and enterprise applications. Validates functional requirements and ensures solutions operate in accordance with security and access management standards.
  • Creates and maintains technical documentation, workflow specifications, system configurations, support runbooks and implementation procedures. Documents design decisions, testing results and operational requirements.
  • Collaborates with application owners, technology teams and business stakeholders to evaluate identity and access requirements. Translates functional needs into technical specifications and recommends solutions aligned with established IAM standards.
  • Evaluates existing identity governance and directory service capabilities, identifies opportunities for automation and process improvement, and recommends enhancements that strengthen service delivery, security controls and operational effectiveness. Maintains current knowledge of identity and access management technologies and practices. Encourages a workplace culture where all employees are valued, value others and have the opportunity to contribute through their ideas, words and actions, in accordance with the USC Code of Ethics.

Minimum Qualifications

Great candidates for the position of IAM Directory and IGA Senior Analyst will meet the following qualifications:

  • Bachelor's degree
  • Bachelor's degree in Instruction Systems Technology Or Computer Science Or in related field(s)
  • Combined experience/education as substitute for minimum education
  • 4 years in Identity and Access Management, Directory Services, Identity Governance, Information Security, Systems Administration, or related technology discipline
  • Combined experience/education as substitute for minimum work experience
  • Hands-on technical experience in implementing and troubleshooting of IAM solutions (e.g., SailPoint IIQ and ISC, Saviynt and Oracle Unified Directory).
  • Proficiency within a Unix command line.
  • Proficiency working with data, with query languages (e.g., SQL) and working with Directories (e.g., LDAP).
  • Proficiency with IAM concepts (e.g., PBAC, RBAC, AuthN vs AuthZ).
  • Excellent written and verbal communication skills; comfortable driving requirements gathering, architectural discussions and project reporting with non-technical business stakeholders.
  • Maintain technical documentation including architecture diagrams, decision records, and runbooks.

Preferred Qualifications

  • 6 years of experience designing, configuring, implementing or supporting enterprise IAM, IGA, directory service or authentication platforms.
  • Hands-on experience with SSO solutions such as Microsoft Entra, ForgeRock, Duo, Cirrus Identity Bridge or Shibboleth.
  • Experience with PAM solutions such as CyberArk or BeyondTrust.
  • Experience with identity verification technologies such as Persona.
  • Experience in IAM within higher education. Experience in other complex, decentralized environments such as healthcare, technology, media and telecommunications, or financial services is also relevant.
  • Understanding of Zero Trust architecture, identity-based attack techniques, and modern IAM controls.
  • Experience leading enterprise identity transformations or directory modernization programs, including migration from legacy platforms at scale.
  • Experience with IAM reference architecture.
  • Demonstrated ability to establish and gain visibility into service accounts and secrets in hybrid cloud and on-premises environments.
  • Experience working at or with professional services firms, such as Big Four firms, and IAM software vendors.
  • Project management experience on IAM projects.
  • CISSP certification or similar.
  • IAM software certification, such as SailPoint Certified Engineer or CyberArk Guardian.

In addition, the successful candidate must also demonstrate, through ideas, words and actions, a strong commitment to USC’s Unifying Values of integrity, excellence, community, well-being, open communication, and accountability.

 

Salary and Benefits

The annual base salary range for this position is $118,759 - $151,880. When extending an offer of employment, the University of Southern California considers factors such as, but not limited to, the scope and responsibilities of the position, the candidate's work experience, education/training, key skills, internal peer equity, federal, state, and local laws, contractual stipulations, grant funding, as well as external market and organizational considerations.


To support faculty and staff well-being, USC provides benefits-eligible employees with a broad range of benefits and perks to help protect their and their dependents’ health, wealth, and future. These benefits are available as part of the overall compensation and total rewards package. You can learn more about USC’s comprehensive benefits here.

 

Ready to Make an Impact?

If you are an experienced IAM professional looking to work at the intersection of identity governance, directory services and cybersecurity, consider joining USC's Cybersecurity IAM team. Apply today and bring your expertise to a role that will help strengthen secure identity lifecycle management, access governance and enterprise identity services across one of the nation's leading research universities.


USC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, or any other characteristic protected by law or USC policy. USC observes affirmative action obligations consistent with state and federal law.

Addtional Education Requirements Combined experience/education as substitute for minimum education
Addtional Experience Requirements Combined experience/education as substitute for minimum work experience
Preferred Certifications: Certified Information Systems Security Professional (CISSP) certification or similar. IAM software certification (e.g., SailPoint Certified Engineer, CyberArk Guardian)

                                                  

USC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, or any other characteristic protected by law or USC policy. USC observes affirmative action obligations consistent with state and federal law. USC will consider for employment all qualified applicants with criminal records in a manner consistent with applicable laws and regulations, including the Los Angeles County Fair Chance Ordinance for employers and the Fair Chance Initiative for Hiring Ordinance, and with due consideration for patient and student safety. Please refer to the Background Screening Policy Appendix D for specific employment screen implications for the position for which you are applying. 

We provide reasonable accommodations to applicants and employees with disabilities. Applicants with questions about access or requiring a reasonable accommodation for any part of the application or hiring process should contact USC Human Resources by phone at (213) 821-8100, or by email at [email protected]. Inquiries will be treated as confidential to the extent permitted by law.

  • Notice of Non-discrimination
  • Employment Equity
  • Read USC’s Clery Act Annual Security Report
  • USC is a smoke-free environment
  • Digital Accessibility

                                                  

If you are a current USC employee, please apply to this  USC job posting in Workday by copying and pasting this link into your browser:

https://wd5.myworkday.com/usc/d/inst/1$9925/9925$155258.htmld

Skills Required

  • Bachelor’s degree in Instructional Systems Technology, Computer Science, or a related field
  • Four years of experience in identity and access management, directory services, identity governance, information security, systems administration, or a related technology discipline
  • Combined experience and education may substitute for minimum education requirements
  • Combined experience and education may substitute for minimum work experience requirements
  • Hands-on experience implementing and troubleshooting IAM solutions, such as SailPoint IIQ, SailPoint ISC, Saviynt, or Oracle Unified Directory
  • Proficiency with Unix command line tools
  • Proficiency with data, SQL or other query languages, and directory services such as LDAP
  • Knowledge of IAM concepts including PBAC, RBAC, authentication, and authorization
  • Excellent written and verbal communication skills, including requirements gathering and architectural discussions with nontechnical stakeholders
  • Ability to maintain technical documentation, architecture diagrams, decision records, and runbooks
  • Six years of experience designing, configuring, implementing, or supporting enterprise IAM, IGA, directory service, or authentication platforms
  • Experience with SSO solutions such as Microsoft Entra, ForgeRock, Duo, Cirrus Identity Bridge, or Shibboleth
  • Experience with PAM solutions such as CyberArk or BeyondTrust
  • Experience with identity verification technologies such as Persona
  • IAM experience in higher education or other complex decentralized environments
  • Understanding of Zero Trust architecture, identity-based attack techniques, and modern IAM controls
  • Experience leading enterprise identity transformations or directory modernization programs
  • Experience with IAM reference architecture
  • Experience establishing visibility into service accounts and secrets in hybrid cloud and on-premises environments
  • Experience with professional services firms or IAM software vendors
  • Project management experience on IAM projects
  • CISSP or similar certification
  • IAM software certification such as SailPoint Certified Engineer or CyberArk Guardian
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Los Angeles, CA

Similar Jobs

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Underwriting Development Program - Global Risk Solutions - June 2027 Start

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Hybrid
11 Locations
40000 Employees
48K-137K Annually

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Senior Risk Engineer- Conventional & Renewable Power

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Hybrid
7 Locations
40000 Employees
125K-177K Annually
In-Office
La Jolla, CA, USA
121228 Employees

Pfizer Logo Pfizer

Clinical Development Medical Director, GU

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office
7 Locations
121990 Employees
240K-400K Annually

Similar Companies Hiring

ReUp Education Thumbnail
Social Impact • Edtech
Austin, TX
180 Employees
Learneo Thumbnail
Software • Machine Learning • Edtech • Artificial Intelligence
NL
397 Employees
CodePath.org Thumbnail
Edtech • Social Impact
San Francisco, CA
55 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account