Identity and Access Management (IAM) Sr. Specialist (Cloud Security required)

Posted 5 Days Ago
Be an Early Applicant
2 Locations
In-Office
135K-182K Annually
Senior level
Big Data • Fintech • Mobile • Payments • Financial Services • Data Privacy
The Role
Lead modernization of enterprise access controls and cloud entitlement management across AWS, Azure, GCP and SaaS. Drive RBAC/ABAC/PBAC/JIT adoption, entitlement analytics, SOD controls, automation/AI-enabled workflows, role engineering, and cross-functional stakeholder engagement to reduce access risk and improve access lifecycle efficiency.
Summary Generated by Built In

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

LOB Overview:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

Role Description:

Reporting to the Access Controls & Segregation of Duties Leader, this role is responsible for defining, operationalizing, and modernizing enterprise access control capabilities across traditional and cloud-native environments. The role will drive the evolution of role-based, attribute-based, policy-based, and segregation of duties access control models while establishing sustainable cloud entitlement management practices that reduce risk, improve visibility, and simplify access administration across the enterprise. The role will partner closely with Architecture, Engineering, Cloud Security, IAM Service Catalogue, and Line of Business stakeholders to establish modern access models that support the Bank’s continued cloud transformation. 

Responsibilities

  • Modernize the segregation of duties design, implementation, controls, and oversight framework and practices for sustainable risk reduction.

  • Modernize enterprise access control capabilities through automation, AI-assisted analysis, workflow optimization, and data-driven insights.

  • Improve role quality, entitlement quality, access profiling, and access model effectiveness across technology platforms.

  • Drive adoption of RBAC, ABAC, PBAC, and SOD controls within enterprise and cloud environments to reduce entitlement sprawl and excessive permissions.

  • Drive transformation initiatives focused on cloud entitlement visibility, access intelligence, permission analytics, and access lifecycle efficiencies.

  • Establish enterprise standards for cloud role engineering, entitlement taxonomy, permission management, and cloud access model design.

  • Develop sustainable approaches for governing cloud permissions, cloud identities, and cloud resource access at scale.

  • Lead the strategy and execution of cloud access control capabilities across AWS, Azure, GCP, SaaS platforms, and emerging cloud-native technologies.

  • Act as a senior advisor on cloud access controls, entitlement strategy, and access modeling.

  • Operate through ambiguity, break down complex problems, and create structure where processes or accountabilities are unclear.

  • Identify opportunities to reduce manual activities and simplify operational processes while strengthening risk mitigation.

  • Partner across IAM, Security, Technology, Product, and Line of Business teams to drive adoption of modern access control frameworks.

  • Lead complex initiatives involving cloud permissions, entitlement management, role engineering, and access risk reduction.

  • Translate technical access control concepts into actionable business outcomes for senior leadership.

Required Qualifications:

  • 10+ years of IAM, Cybersecurity, Cloud Security, or Access Management experience.

  • Experience implementing SOD, RBAC, ABAC, PBAC, JIT, Runtime, and cloud access control frameworks within large financial services or banking organizations.

  • Experience performing data analytics and design solutions using scripting (Python, R, SQL) and industry tools (Wiz, Terraform, Bloodhound, Splunk, Microsoft Copilot Studio, Power Automate, M365 Copilot, Tableau, PowerBI, Pivot Tables).

  • Strong analytical and data-driven decision-making capabilities.

  • Experience designing and managing Cloud Permission Models & Entitlement Analytics across AWS, Azure, and GCP.

  • Strong understanding of Cloud & Enterprise Infrastructure Platforms & Network.

  • Experience implementing Automation, AI-Enabled Solutions & Workflow Optimization to improve security outcomes.

  • Experience with Microsegmentation and monitoring tools.

  • Experience leading enterprise-scale IAM transformation and modernization initiatives.

  • Experience partnering with Architecture, Engineering, Cloud Security, and Business stakeholders.

  • Experience with Industry Standards & Framework (ISO, NIST, FFIEC, COBIT, CSA) related to Segregation of Duties (SoD).

Desired Qualifications:

  • Deep knowledge of RBAC, ABAC, PBAC, JIT, Runtime Access Models

  • Strong proficiency in IAM Architecture, Identity Attributes & Metadata

  • Strong expertise in Cloud Access Controls & Entitlement Management

  • Working knowledge of Authentication & Federation Technologies

  • Excellent executive communication and stakeholder engagement skills

  • Demonstrated ability to influence through expertise, collaboration, and credibility

  • Industry information security certification

    • CISSP

    • CCSP

    • CRISC

    • CISM

    • AWS Security Specialty or Azure Security Engineer

    • Azure AI Engineer Associate or AWS AI Practitioner

Key Stakeholders

  • GIS Executive Leadership

  • IAM Governance Services

  • IAM Product, Architecture, Engineering, and Operations teams

  • LOB and technology stakeholders

  • GIS, GT, Audit, Compliance, Risk, & other control partners

Shift:

1st shift (United States of America)

Hours Per Week: 

40

Pay Transparency details

US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - MA - Boston - 100 Federal St - 100 Federal St Lp (MA5100)

Pay and benefits information

Pay range$135,000.00 - $182,100.00 annualized salary, offers to be determined based on experience, education and skill set.

Discretionary incentive eligible

This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.

Benefits

This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.

Skills Required

  • 10+ years of IAM, Cybersecurity, Cloud Security, or Access Management experience.
  • Experience with industry standards & frameworks related to Segregation of Duties (ISO, NIST, FFIEC, COBIT, CSA).
  • Experience implementing RBAC, ABAC, PBAC, JIT, Runtime, and cloud access control frameworks within large financial services or banking organizations.
  • Experience designing and managing Cloud Permission Models & Entitlement Analytics across AWS, Azure, and GCP.
  • Experience leading enterprise-scale IAM transformation and modernization initiatives.
  • Experience partnering with Architecture, Engineering, Cloud Security, and Business stakeholders.
  • Experience using analytics, automation, and process optimization to improve security outcomes.
  • Experience implementing Automation, AI-Enabled Solutions & Workflow Optimization.
  • Experience performing data analytics and design solutions using scripting (Python, R, SQL) and industry tools (Wiz, BloodHound, Splunk, Tableau, PowerBI, Pivot Tables).
  • Experience with Microsegmentation and monitoring tools.
  • Strong understanding of Cloud & Enterprise Infrastructure Platforms & Network.
  • Strong analytical and data-driven decision-making capabilities.

Bank of America Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Bank of America and has not been reviewed or approved by Bank of America.

  • Healthcare Strength Health coverage is described as comprehensive, with medical, dental, vision, virtual care via Teladoc, wellness programs, and specialized support for cancer and menopause. Wellness credits and an always‑on EAP with in‑person sessions add to the depth of care.
  • Parental & Family Support New parents can access up to 26 weeks of leave, including 16 weeks fully paid for eligible teammates, alongside back‑up child and adult care. Family‑building resources and reimbursements (e.g., fertility, adoption, surrogacy) and a dedicated Life Event Services team extend support across life stages.
  • Equity Value & Accessibility Broad‑based equity through the Sharing Success program, including $1B in stock to nearly all non‑executive employees in January 2026, is intended to foster an ownership mindset. Stock awards (including RSUs) are a recurring component that aligns employees’ interests with shareholders.

Bank of America Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Charlotte, NC
208,000 Employees
Year Founded: 1784

What We Do

We make financial lives better for our clients and our communities through the power of every connection. Our employees are at the heart of this purpose, and are key to driving responsible growth. Every day, across the globe, our employees bring a commitment to our purpose and to driving responsible growth by living our values: deliver together, act responsibly, realize the power of our people and trust the team. A key aspect of driving responsible growth is doing so in a sustainable manner, a critical pillar of which is being a great place to work for our teammates.

Gallery

Gallery

Similar Jobs

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Senior Director, Personal Lines Auto Product

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Remote or Hybrid
5 Locations
40000 Employees
156K-281K Annually

SharkNinja Logo SharkNinja

Manager, Media Operations (US - Shark)

Beauty • Robotics • Design • Appliances • Manufacturing
In-Office
Needham, MA, USA
4000 Employees
90K-138K Annually

Grow Therapy Logo Grow Therapy

Specialist I, Client Billing Support

Healthtech • Social Impact • Software
Remote or Hybrid
USA
460 Employees
20-24 Hourly

CSC Logo CSC

Senior Data Analyst

Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
Remote or Hybrid
2 Locations
8500 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account