Ernst & Young

Cyber Managed Services - SDC - Identity and Access Management - Senior

Ernst & Young$114K — $265K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of relevant experience in Identity Governance and Administration (IGA) solutions.
  • Hands-on expertise with leading IGA platforms like SailPoint IIQ and Saviynt EIC.
  • Deep knowledge of IAM processes including role lifecycle governance and entitlement management.
  • Familiarity with compliance and regulatory targets related to IAM frameworks.
  • Proven ability to translate business needs into technical specifications.

Responsibilities

  • Develop Saviynt/SailPoint IIQ policies and configure rules for compliance.
  • Implement and maintain enterprise-level Identity & Access Management tools.
  • Architect IAM solutions and redesign existing processes for efficiency.
  • Translate client business requirements into actionable technical strategies.
  • Integrate IAM systems with existing directory services and security protocols.

Benefits

  • Comprehensive health and dental coverage.
  • Flexible vacation policy to accommodate personal needs.
  • Hybrid work model supporting both in-office and remote work.
  • Opportunities for professional growth through training and mentorship.
  • Inclusive workplace culture promoting teamwork and diversity.
Full Job Description
In an ever-evolving IT landscape, EY stands as a beacon of trust for clients across diverse industries seeking reliable solutions to address their intricate risks and vulnerabilities. As a vital member of our Identity and Access Management (IAM) team, you will play a central role in achieving this objective by empowering clients to comprehend and navigate their complex Enterprise Identity environments. Your expertise will be instrumental in evaluating, enhancing, and devising innovative solutions, processes, and policies to cater to each client's unique IAM requirements. This is an opportunity to leverage both your technical prowess and business acumen to drive our mission and make a significant impact on global cybersecurity.

The opportunity

We currently offer an exciting career opportunity for a Senior Consultant responsible for designing, engineering, maintaining, and troubleshooting a diverse range of Enterprise Employee Solutions across the IAM spectrum. Collaborating with esteemed and innovative professionals in the cybersecurity industry, you will have the opportunity to learn and apply cutting-edge tools and techniques to address some of the most relevant and pressing security challenges in the world.

At our core, our IAM services play a pivotal role in assisting our clients to align security management strategy with business goals. This involves managing access to resources and services, as well as enforcing business, privacy, and security policies. With the support of strategic alliances with third-party vendors, our experienced professionals offer a comprehensive suite of services, including strategy, assessment, testing, and implementation of IAM solutions.

Your Key Responsibilities
  • Developing Saviynt /SailPoint IIQ policies and configuring rules to detect policy violations.
  • Configuring Saviynt/SailPoint connectors, custom connectors, custom rules, workflow configurations, and third-party integrations.
  • Implementing, managing, and maintaining enterprise Identity & Access Management tools.
  • Designing and architecting solutions, alongside process design and re-engineering.
  • Transforming or translating business requirements into technical specifications and executing technical delivery.
  • Leveraging functionality provided by enterprise directory services like Active Directory, Azure AD, and LDAP, as well as MFA and SSO.


Skills and Attributes for Success

IAM & IGA Expertise
  • Strong understanding of Identity Governance and Administration (IGA) concepts and best practices.
  • Experience implementing SailPoint IIQ, SailPoint ISC, Saviynt EIC, or similar IGA platforms.
  • Deep understanding of joiner, mover, leaver, certification, and access request processes.
  • Experience with access reviews, entitlement governance, and provisioning workflows.
  • Role & Entitlement Governance
  • Experience designing RBAC and role lifecycle governance processes.
  • Understanding of role mining, role engineering, entitlement modeling, and business role frameworks.
  • Ability to define entitlement ownership, classification, and risk frameworks.

Risk & Compliance
  • Knowledge of identity risk scoring methodologies.
  • Experience working with Segregation of Duties (SoD), policy management, and compliance requirements.
  • Familiarity with regulatory and audit-driven IAM controls.

Technical Skills
  • Experience configuring IAM connectors, workflows, forms, certifications, and access request processes.
  • Knowledge of:
  • Active Directory
  • Entra ID (Azure AD)
  • LDAP
  • SSO
  • MFA
  • SCIM
  • REST APIs
  • Web Services integrations
  • Experience working with relational databases and SQL.
  • Ability to support integrations across applications, directories, and governance platforms.

To qualify for the role you must have
  • Hands-on experience with one or more of:
  • SailPoint IdentityIQ
  • SailPoint Identity Security Cloud (ISC)
  • Saviynt Enterprise Identity Cloud (EIC)
  • Saviynt
  • Entra ID Governance
  • Other leading IGA platforms
  • Experience working directly with business stakeholders and application teams.
  • Strong documentation, requirements gathering, and communication skills.
  • Ability to travel as required for client engagements.


Ideally, you'd also have
  • Professional certifications in Identity & Access Management, such as CISSP, CISM, or specific vendor certifications like Saviynt or SailPoint Certified Implementation Engineer.
  • Knowledge of financial services IAM governance and regulatory controls. Experience with:
      • Identity Risk Management
      • Authorization Governance
      • Access Certification
      • Role Mining & Analytics
      • Entitlement Rationalization
  • Familiarity with additional IAM technologies and tools, beyond SailPoint, such as ForgeRock, Ping Identity, RSA, etc.
  • Knowledge of cloud-based IAM solutions and experience working with cloud platforms like AWS, Azure, or Google Cloud.
  • Exposure to privileged access management (PAM) solutions and practices, including CyberArk or similar tools.
  • Understanding of regulatory compliance frameworks and industry standards related to IAM, such as GDPR, HIPAA, NIST, or ISO 27001.
  • Prior experience in providing IAM services to clients from various industries, demonstrating versatility and adaptability in addressing diverse IAM challenges.
  • Strong interpersonal and communication skills, with the ability to collaborate effectively with clients and cross-functional teams to present solution designs, options, and innovations.


What we look for

We're interested in intellectually curious people with a genuine passion for cyber security. With your broad exposure across IAM, we'll turn to you to speak up with innovative new ideas that could make a lasting difference not only to us - but also to the industry at large. If you have the confidence in both your presentation and technical abilities to grow into a leading expert here, this is the role for you.

What we offer you
At EY, we'll develop you with future-focused skills and equip you with world-class experiences. We'll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more.
  • We offer a comprehensive compensation and benefits package where you'll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $114,900 to $265,800. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $173,900 to $302,100. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
  • Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
  • Under our flexible vacation policy, you'll decide how much vacation time you need based on your own personal circumstances. You'll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.


Are you ready to shape your future with confidence? Apply today.
EY accepts applications for this position on an on-going basis.

For those living in California, please click here for additional information.

EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.

About Ernst & Young

Ernst & Young (EY) is a multinational professional services firm that provides audit, tax, consulting, and advisory services to clients in a wide range of industries. The firm was founded in 1989 through the merger of Ernst & Whinney and Arthur Young & Co., and has since grown to become one of the largest professional services firms in the world. EY is committed to building a better working world by helping its clients solve their toughest challenges, and by creating a positive impact on the communities it serves.
Learn more about Ernst & Young
Size
300,000 employees
Industry
Founded
1989

Similar Jobs

More Jobs at Ernst & Young

More Information Technology Jobs

Find similar Cyber Managed Services - SDC - Identity and Access Management - Senior jobs: