IAM Discovery Analyst – Job Description
Role Overview
The IAM Discovery Analyst is a critical role responsible for discovery, analysis, and documentation of enterprise identity ecosystems. The role focuses on identity source discovery, lifecycle mapping, access analysis, and stakeholder-driven documentation to enable robust IAM transformation programs.
This role acts as the foundation for identity governance by establishing visibility across identities, applications, access patterns, and lifecycle processes.
Key Responsibilities
· Lead identity source discovery across AD, LDAP, Microsoft Entra ID, and cloud IAM environments; onboard and normalize identity datasets
· Discover and catalogue enterprise applications, authentication flows, and access pathways; map identity-to-application relationships
· Develop end-to-end Joiner–Mover–Leaver (JML) lifecycle documentation with strong technical writing aligned to audit/compliance needs
· Lead stakeholder workshops (HR, IT, Security, Business) to capture identity flows, access requirements, and process gaps
· Perform HRIS–IAM integration mapping including data flows, attributes, triggers, and provisioning workflows
· Analyze access patterns (roles, entitlements, usage) to establish baseline access models and optimization opportunities
· Correlate and normalize identity data across systems; eliminate duplicates and identify orphan/shadow accounts
· Support RBAC/ABAC role modeling and role mining initiatives using access and attribute insights
· Enable automated discovery using APIs (REST, SCIM) and connectors
· Identify identity risks (excessive access, toxic combinations, privilege creep) and recommend remediation actions
· Develop CISO-ready dashboards (coverage %, orphan accounts, privilege exposure, onboarding gaps)
· Work with IGA tools such as SailPoint IdentityNow, Saviynt, or similar platforms
Additional Key Expectation (Critical for Hiring):
· Strong Business Analyst orientation with ability to translate business processes into IAM constructs
· Proven experience in Wealth Management domain (client onboarding, advisor access, portfolio systems, regulatory controls)
· Ability to bridge business, compliance, and technology for identity lifecycle and access governance design
Bottom of Form
Qualifications & Experience
• 6–10 years of experience in IAM, Identity Governance, or Security Engineering
• Proven experience in large IAM discovery or transformation projects
• Strong experience in identity lifecycle documentation and technical writing
• Experience in HRIS integration and enterprise process mapping
• Experience in leading stakeholder workshops
Technical Skills
• Identity source discovery (AD, LDAP, Entra ID, Cloud IAM)
• Application inventory mapping and access discovery
• Data correlation, normalization, and identity reconciliation
• RBAC/ABAC understanding and role mining
• API (REST, SCIM) and connector knowledge
• Identity lifecycle (JML) mapping
• Risk and anomaly identification
• IAM tooling exposure (SailPoint, Saviynt, etc.)
• Reporting and dashboarding
Certifications
Must-have:
• SailPoint IdentityNow / IdentityIQ Certifications
• Microsoft IAM Certification (SC-300 or equivalent)
Good-to-have:
Okta Certifications , CyberArk Certifications , Cloud Certifications (AWS / Azure / OCI)
Strategic: CISSP , CIAM ,• CIGE
Soft Skills
• Strong analytical and problem-solving skills
• Excellent communication and documentation capability
• Ability to engage C-level stakeholders
• Structured thinking and workshop facilitation capability
Work Location
Austin US
...Product Manager - Healthcare Architectural Building Products - Base Salary to 158k/year - Lebanon... ...and services. This is a hybrid or remote position with headquarters in Lebanon, NJ... ...Collaborate with finance, accounting and business unit management to assemble and evaluate...
...Bankruptcy Associate Philadelphia | 5+ Years Chapter 11 Experience | HighAutonomy Role | Real Path to Partnership Are you a seasoned... ..., and a genuinely enjoyable culture the kind where attorneys stay for years and years because they want to. They are...
...Community Health Educator I (Grade 14): $26.06 - DOE/DOQ Community Health Educator II (Grade 16): $28.43 - DOE/DOQ DEPARTMENT: Weber-Morgan Health Department PERSONNEL STATUS: Full Time Grant Funded BENEFITS: Health, Dental, Vision, Retirement, 401k match, Sick...
...Details As Bodega Taqueria y Tequila continues to expand its footprint in South Florida, we are looking for an experienced General Manager to join our team in Downtown Miami ! Come join a growing brand and an incredible team! Offering traditional Mexican favorites...
...Job Summary We are seeking a dynamic and detail-oriented Benefits Administrator and Recruiter to join our HR team. This pivotal role combines the responsibilities of managing employee benefits programs with leading comprehensive recruitment initiatives across various...