Senior Identity and Access Management Analyst
Listed on 2026-01-01
-
IT/Tech
Cybersecurity
Senior Identity and Access Management Analyst
We are seeking a highly skilled and proactive Senior Identity and Access Management Analyst to lead and optimize our IAM operations. This role is critical to ensuring secure, compliant, and efficient access to enterprise systems and data. The ideal candidate will bring deep technical expertise, critical thinking, and a collaborative mindset to support identity lifecycle management, privileged access management, and governance initiatives.
Your role- Act as primary admin of identity providers across cloud and on-prem environments.
- Manage authentication and access controls such as conditional access and multi‑factor authentication (MFA).
- Design, implement, and manage identity and access management tools, such as Identity Threat Detection and Response (ITDR) solutions.
- Oversee provisioning and deprovisioning of all directory objects, including but not limited to staff accounts, non‑human identities (NHI), and security groups.
- Develop, document, and maintain Cybersecurity IAM policy and procedural documentation.
- Manage identities, directory permissions, privileged access management controls across multi‑cloud environments, ensuring alignment with least‑privilege and role‑based access control (RBAC) principles.
- Bachelor’s degree in Computer Science, Information Security, or related field.
- 5+ years of experience in IAM or cybersecurity roles.
- Hands‑on experience implementing and managing Entra , Entra Connect Sync and Active Directory services.
- Strong understanding of identity lifecycle events, authentication protocols (SAML, OAuth, OpenID), and access provisioning models.
- Experience implementing and managing IAM governance platforms (e.g., Microsoft Identity Governance, SailPoint, Saviynt, or Okta).
- Strong problem‑solving skills and drive to expand technical cybersecurity skills with a strong preference for and experience with automation.
- Ability to manage multiple priorities simultaneously, delivering results within defined timelines.
- Ability to work independently and as part of a team.
On the surface, we’re one of the nation’s largest audit, tax, consulting, and wealth management firms. We pride ourselves on a relatively jerk‑free culture, one of Fortune Magazine’s “100 Best Companies to Work For,” and an endless array of opportunities.
BenefitsWe are pleased to offer eligible staff a robust benefits package. Highlights include health, dental, vision, disability, and life insurance. Eligible staff also have Flexible Time Off, a range of holidays, a 401(k) plan, flexible benefits, business‑related travel expense reimbursement, lodging, meal reimbursement, and more. A pension plan is available for eligible administrative staff and a discretionary bonus plan for eligible staff.
Some contingent staff may elect health insurance beyond limited paid sick time.
Plante Moran is an Equal Opportunity Employer. We are committed to a diverse workplace and a culture where all staff feel a sense of belonging. Candidates must be legally authorized to work in the United States without sponsorship, except for qualified bilingual English‑Japanese or English‑Chinese candidates. Plante Moran maintains a drug‑free workplace. Interested applicants must submit a resume via our application system.
Candidates not selected for interview will not receive contact. The specific statements above are not intended to be all‑inclusive. Under Colorado’s Job Application Fairness Act, you have the right to redact identifying age and educational information from your application.
Compensation for this role in IL, MA, or CO ranges from $96,000.00 to $. Compensation decisions also consider responsibilities, education, experience, skills, and geography.
Seniority LevelAssociate
Employment typeFull‑time
Job functionBusiness Development and Sales;
Industries:
Accounting
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).