20 Aug
|
Alter Domus
|
Hyderabad
20 Aug
Alter Domus
Hyderabad
Job Level
Manager
Role
User Access Manager The User Access Manager is a senior individual contributor and people leader responsible for the day-to-day operation, health, and continuous improvement of Alter Domus Identity and Access Management capabilities. This role sits at the intersection of operational excellence and strategic enablement, ensuring that the right people have the right access to the right resources nothing more, nothing less.
Leading a team of 10 professionals: 1 Team Lead, 3 Shift Leads and 6 Access Management Analysts, the User Access Manager will own BAU delivery across the three IAM pillars: Identity Governance (SailPoint IdentityNow), Customer Identity (Okta / Auth0), and Privileged Access (CyberArk PAM, EPM WPM). The role operates within Alter Domus broader Cyber Resiliency Programme and reports directly to the CISO or Deputy CISO.
Responsibilities
- Lead, mentor, and develop a team of 10 professionals comprising 1 Team Lead, 3 Shift Leads and 6 Access Management Analysts across the three platform domains.
- Own the BAU service model: incident triage, access request fulfilment, certification campaigns, and recertification reviews; maintaining 24 5 operational coverage.
- Define team SLAs, OKRs, and operational KPIs; produce regular MI for CISO and governance forums.
- Manage on-call rotation and escalation paths to ensure 24/7 operational cover where required.
- Identity Governance Administration SailPoint IdentityNow / Identity Security Cloud: Serve as the functional owner of the SailPoint IDN/ISC platform across all production, UAT, and sandbox environments.
- Drive lifecycle management processes: joiner/mover/leaver, access request,
approval workflows, and role-based access control (RBAC).
- Maintain and extend source/target connectors (Salesforce, Active Directory, ServiceNow, cloud SaaS).
- Lead Separation of Duties (SoD) policy enforcement, access certification design, and audit evidence generation.
- Customer Identity Access Management Okta / Auth0: Own the CIAM platform landscape, covering both Okta Workforce Identity and Auth0 Customer Identity tenants.
- Govern MFA policies, adaptive authentication, SSO federation (SAML/OIDC), and B2B/B2C user journeys.
- Partner with application teams to onboard recent integrations, enforce secure token flows, and maintain API security standards.
- Monitor and respond to anomalous authentication events; drive threat model reviews of identity attack surfaces.
- Privileged Access Management CyberArk PAM, EPM WPM: Manage the operational lifecycle of privileged accounts across the enterprise, including service accounts, admin credentials, and secrets.
- Maintain CyberArk vault health, session recording policy, and just-in-time (JIT) provisioning workflows in PAM and WPM.
- Administer CyberArk Endpoint Privilege Manager (EPM): manage application control policies, least-privilege enforcement on endpoints, and threat protection coverage.
- Enforce least-privilege principles through regular privilege entitlement reviews and attestation cycles.
- Support red-team and penetration-testing activities by providing PAM architecture context and remediation ownership.
- Risk, Compliance Audit: Act as the primary IAM subject matter expert (SME) for internal audits, external assessments, and regulatory reviews (DORA, GDPR, SOX, ISO 27001).
- Maintain an IAM risk register; track and remediate control deficiencies to agreed timelines.
- Produce Board-level and management-level reporting on access risk posture, certification completion rates, and remediation SLA adherence.
Your profile
- 10+ years of progressive experience in Identity Access Management, Information Security, or a related discipline.
- Proven operational experience with Okta and/or Auth0 in an enterprise or multi-tenant environment.
- Experience of working with technical IAM team, with accountability for BAU service delivery.
- Familiarity with identity protocols: SAML 2.0, OAuth 2.0, OIDC, SCIM, LDAP/AD.
- Solid grounding in regulatory frameworks relevant to financial services: SOC 1 2, ISO 27001.
- Track record of delivering IAM audit evidence and supporting external assessors.
Nice to Have
- Familiarity with NIST CSF 2.0
- Exposure to cloud IAM in Azure AD / Entra ID, AWS IAM, or GCP IAM.
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 User Access Manager (Hyderabad)
🏢 Alter Domus
📍 Hyderabad