Brief Role Description This position is
Career Level 20L+, located in Auburn Hills, MI, with a Role Classification of
Hybrid.
Role SummaryUnder the general supervision of the Sr Mgr., Workplace Technologies IAM Svcs the Identity & Access Management Engineer and Technical Lead is a part of both the Information Security and Technology & Operations team. This role is responsible for the day-to-day operations and support of the Information Security Identity and Access Management program. This is a hands-on position that works closely with Information Security team members on continuous design, assessment and hardening of company's information security IAM posture, maturity level and risk assessments.
The IAM Engineer Team Lead will be responsible for supporting the planning, design, development and deployment of centralized identity & access management (IAM) and identity governance & administration (IGA) solutions. This role supports the planning, design, and delivery of the enterprise-level IAM program including but not limited to the areas of identity access management, privileged access management, SSO federation and SaaS / PaaS cloud technologies. This role will work with teams such as Development, Architecture, Security, Engineering and Operations to come up with optimized IAM solutions. This position focuses on both the technical and administrative aspects of IAM.
This role will be responsible for the Smart Card (PKI) infrastructure and processes, including server maintenance, card programming, incident troubleshooting, and alignment with the IT Security team in Germany.Work Flexibility:- Must be willing to travel (mostly domestic) and work outside normal business hours.
- Rotation on-call for support escalations.
Role ResponsibilitiesOperations - 70%- Oversight of identity and access management functions company-wide.
- Responsible for the day to day oversight of Information Security Administration policies, procedures and systems in order to maintain confidentiality, integrity and availability.
- Provide knowledge and act as a subject matter expert on key principles of (IAM) with an in-depth knowledge in the areas of authentication and authorization systems, identity lifecycle management, and identity governance
- Lead, maintain and support Smart Card (PKI) infrastructure and processes
- Responsible for IAM tools administration and configuration according to industry best practices; own identity access and governance related changes
- Generate solutions and policies in support of the Identity Lifecycle Management and Identity Governance for the company.
- Develop, maintain and administer RBAC policies, roles and permissions; employ and maintain segregation of duties and least privilege principles across all services.
- Work closely with Information Security Operations & Engineering teams to ensure proper monitoring on internal and external (third party) access and design.
- Ensure proper implementation and configuration of appropriate preventive, detective, and corrective controls for mitigation of IAM risks.
- Develop and maintain IAM control requirements for cloud-based applications and services.
- Develop technical documentation in support of identity and access management services.
- Act as subject-matter expert (SME) and provide identity and access management consulting services.
- Responsible for planning, managing, facilitating, instructing and monitoring IAM project activities for all assigned tasks.
- Work with application owners to integrate application security and application roles with centralized IAM directories.<