Title: Specialist, IAM Access Governance
Requisition ID: 229223
Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.
The Global Identity & Access Management (GIAM), Governance Team is responsible for the governance of established security controls pertaining to Identity and Access. Our IAM Enterprise Access Governance (EAG) team work closely with Engineering and operations teams to ensure our controls are in place and remediated by operations teams to reduce risks to our Bank.
As a Specialist within the Enterprise Access Governance Team, you would be responsible for supporting the achievement of the Bank’s information security objectives of integrity, confidentiality/privacy and continuity by ensuring Logical Access is effectively governed for the Enterprise. You will provide oversight for access management through various controls (certifications, toxic combinations, SoD, etc.) across applications and platforms.
Is this role right for you? In this Role, you will:
- Enjoy working in a positive environment with highly motivated individuals that want to reduce the risks within the bank.
- Perform required tasks for access governance functions; tasks relevant to Identity & Access Governance including access certification, communication, and documentation of operational processes and procedures, etc.
- Assist Senior Manager to make decisions based on research, consultation with experts and experience, and considers the impact of decisions on self, group, customers, and the Bank.
- Gather evidence and respond to various audit, compliance, and IT risk teams to remediate risk-related issues.
- Run the Operational Processes and Procedures Maintenance function that defines and maintains operations processes.
- Identify, maintain & remediate orphan IDs in SailPoint IIQ on an ongoing BAU basis by working with various application teams and providing required guidance and remediation plan.
- Look for continuous improvements to maximize automation where possible and reduce manual efforts in all processes and procedures within the team, while considering and evaluating the bank’s risk appetite and risk culture.
- Create and contribute to specific analytics and reporting goals, in support of the overall success of Global Identity and Access Management (GIAM) business strategies.
- Excel in relationship building (internal / external GIAM) and work with various teams to assist in completion of all certifications across the enterprise.
- Look for continuous improvements to maximize automation where possible and reduce manual efforts in all processes and procedures within the team, while considering and evaluating the bank’s risk appetite and risk culture.
- Demonstrate personal accountability for assigned projects, initiatives, and daily processes.
Do you have the skills that will enable you to succeed in this role?- We’d love to work with you if you have:
- Solid understanding of SailPoint IIQ.
- 5+ years of IAM experience.
- Solid understanding of RBAC (Role Based Access Control) and Orphan Remediation;
- Solid understanding of Access Controls – (e.g. life cycle management of certifications);
- Superior written and oral communication skills; ability to express complex thoughts clearly, know how to listen and contribute in a team environment.
- Strong analytical skills, specifically data analysis.
- Information Security background including an understanding of the security best practices, standards, methodologies, and KPIs.
- Strategic thinker, leader, and high achiever.
- Work successfully in a matrixed IT and business team environment.
- Detail oriented, results driven individual.
- Prioritize tasks to meet deadlines and deliver measurable results.
- Experience building and leading a high performing team and establishing strong working relationships with business partners.
- Build teams, mentor team members, identify process improvements, and lead enterprise-wide security initiatives.
- Good understanding of various tools/platforms (i.e: Google Cloud Platform, SailPoint, Centrify, CyberArk, Active Directory, UNIX-flavor systems and/or LDAP);
- Excellent organizational skills and the ability to manage multiple intake channels efficiently.
- Competent to work on complex projects independently.
- Technical designation is considered an asset (e.g., CompTIA Security+, CISSP);
- Fluency in Spanish is considered an asset but not a requirement.
What's in it for you?
- Diversity, Equity, Inclusion & Allyship - We strive to create an inclusive culture where every employee is empowered to reach their fullest potential, respected for who they are, and are embraced through bias-free practices and inclusive values across Scotiabank. We embrace diversity and provide opportunities for all employee to learn, grow & participate through our various Employee Resource Groups (ERGs) that span across diverse gender identities, ethnicity, race, age, ability & veterans.
- Accessibility and Workplace Accommodations - We value the unique skills and experiences each individual brings to the Bank and are committed to creating and maintaining an inclusive and accessible environment for everyone. Scotiabank continues to locate, remove and prevent barriers so that we can build a diverse and inclusive environment while meeting accessibility requirements.
- Upskilling through online courses, cross-functional development opportunities, and tuition assistance.
- Competitive Rewards program including bonus, flexible vacation, personal, sick days and benefits will start on day one.
- Community Engagement - no matter where you choose to work from; we offer opportunities for community engagement & belonging with our various programs such as hackathons, contests, Humans of Digital and much more!
Location(s): Canada : Ontario : Toronto
Scotiabank is a leading bank in the Americas. Guided by our purpose: "for every future", we help our customers, their families and their communities achieve success through a broad range of advice, products and services, including personal and commercial banking, wealth management and private banking, corporate and investment banking, and capital markets.
At Scotiabank, we value the unique skills and experiences each individual brings to the Bank, and are committed to creating and maintaining an inclusive and accessible environment for everyone. If you require accommodation (including, but not limited to, an accessible interview site, alternate format documents, ASL Interpreter, or Assistive Technology) during the recruitment and selection process, please let our Recruitment team know. If you require technical assistance, please click here. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at Scotiabank; however, only those candidates who are selected for an interview will be contacted.
Job Segment:
Information Security, Investment Banking, Software Engineer, Cloud, Data Analyst, Technology, Engineering, Finance, Data