Skip to main content
Back to jobs

Privileged Access Management (PAM) Sr. Analyst

External
Bank of America logoBank Of America · Boston
Full-timeOn-site1d ago
ComplianceDocumentationIAMInformation SecurityRisk Management
Cover LetterConnect

Prepare for this interview

Elite

AI-generated questions, company research, and talking points tailored to this role


Responsibilities

  • This role is primarily responsible for ensuring that relevant Privileged Access Controls are enforced across platforms and applications to provide optimal security.
  • Partner with PAM Governance leads to ensure that Privileged Access Controls are appropriately measured, reported and governed.
  • Monitor industry information security and PAM trends and engages peer organizations to refine and enhance BAC's PAM strategy.
  • Apply industry PAM best practices, templates, and documentation while also proposing improvements based on practical knowledge.
  • Provide extensive Active Directory security best practices and consultation to the cross functional teams, ensuring compliance with or exceeding IAM standards, and better protect privileged accounts against cyberattacks.
  • Develop new PAM requirements and cloud-based security solutions to govern cloud identities, credentials, and access.
  • Establish and maintain strong partnership with other Global Information Security (GIS) functions, Core Technology Infrastructure (CTI), Cyber Security Technology (CST), Third Party management, Global Compliance and Operations Risk (CGOR), internal Audit, and regulatory agencies.
  • Influence technology and PAM tools' owners to build/implement enhanced PAM solutions that are efficient, highly-effective, and modern and able to result in material risk reduction in sustainable manner.
  • Collaborate with stakeholders to develop PAM requirements that iteratively support long term PAM modernization and transformation (covers Process, Data and Technology aspects).
  • Engage with Product Managers and Senior Architects to comprehend the strategic PAM technology roadmap, which dictates the need for modernized security principles.
  • Consult with the business to identify gaps and governance issues, leveraging own domain expertise to find effective solutions.
  • Clearly articulate reasons and methods behind proposed changes through informative materials for educating others.
  • Required Qualifications:
  • 10+ years experience.
  • Provide education to team members and technology partners regarding the proposed changes.
  • Partner with the policy governance team for socialization and publication of proposed changes to the PAM Standard
  • Take accountability for addressing PAM risks. Proactively identify risk and ways to continuously enhance and improve BAC's PAM controls. Implement and take decisive actions in finding solutions. Drives towards intended outcomes.
  • Engage senior management to provide factual, transparent, and timely reporting on existing and emerging PAM or information security risks.
  • Active participation in GIS IAM/PAM forums including but not limited to Monthly IAM Stakeholder Forum and Control Owner Forum for standard and Single Process Inventory (SPI) enhancements.
  • Support audit issues for closure and sustainability
  • Extensive knowledge and understanding of PAM-specific laws, rules, and regulations within the financial services sector.
  • Expert level knowledge of privileged access management methodologies and techniques for on-prem and Cloud implementation.
  • Familiarity with security standards such as NIST, ISO/EC, FFIEC, and MITRE ATT&CK framework. Knowledge of Compliance Certifications such as SOX, SOC, SOC2.
  • Understanding and interpreting BAC's established information security Policy,

Additional Information

Job Description: At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve. Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! Role Description: This role reports directly to the Technology Executive overseeing Privileged Access Management governance and operations for the bank. This role is primarily responsible for ensuring that relevant Privileged Access controls are adequately enforced across platforms and applications to comply with or exceed requirements in the IAM Standard.


Your Match

How well this role fits your profile.

Company Intel

What employees say

Worked at Bank of America? Share your experience

Interested in this role?

Apply on the company's website.

Cover LetterConnect