05 Sep
|
Bank Of America
|
Hyderabad
05 Sep
Bank Of America
Hyderabad
Info Security Controls Specialist II A Hyderabad, India;Mumbai, India **To proceed with your application, you must be at least 18 years of age.** Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-ba_continuum/job/Hyderabad/Info-Security-Controls-Specialist-II-A_26021065) **Bank of America employees are required to meet all** **posting eligibility requirements** **prior to applying for any new position.** Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-ba_continuum/job/Hyderabad/Info-Security-Controls-Specialist-II-A_26021065) Refer a friend **To proceed with your application, you must be at least 18 years of age.** Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-ba_continuum/job/Hyderabad/Info-Security-Controls-Specialist-II-A_26021065) **Bank of America employees are required to meet all** **posting eligibility requirements** **prior to applying for any new position.** Acknowledge (https://ghr.wd1.myworkdayjobs.com/lateral-ba_continuum/job/Hyderabad/Info-Security-Controls-Specialist-II-A_26021065) **Job Description:** **About Us** At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day. Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates' physical, emotional, and financial wellness through affordable, competitive and adaptable benefits. We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve. Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs. At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! **Global Business Services** Global Business Services delivers Technology and Operations capabilities to Lines of Business and Staff Support Functions of Bank of America through a centrally managed, globally integrated delivery model and globally resilient operations. Global Business Services is recognized for flawless execution, sound risk management, operational resiliency, operational excellence and innovation. In India, we are present in five locations and operate as BA Continuum India Private Limited (BACI), a non-banking subsidiary of Bank of America Corporation and the operating company for India operations of Global Business Services. **Process Overview** The Global Information Security (GIS) is responsible for protecting Bank information systems, confidential and proprietary data, and customer information. The team develops the Bank's Information Security strategy and policy, manages the Information Security program, and identifies and addresses vulnerabilities, Develops, deploys, and manages a risk-based controls portfolio, Manages and operates global security operations center that monitor, detects and responds to cybersecurity incidents. GIS Team goal is to ensure that the control processes and effectiveness are within the identified risk tolerance. Manage the performance and effectiveness of the working control through the establishment of metrics with thresholds. Validate the reasonability of Laws, Rules and Regulations mapping alignment to the controls, as aligned by the GIS Policy team. **Job Description*** The IAM Analyst (Mainframe Provisioning and Security) is responsible for administering and governing user, privileged, service, and technical identities across the mainframe environment, including RACF, z/OS, z/VM, OMVS, and related security domains. The role ensures timely, accurate, and risk-aligned access provisioning, de-provisioning, role maintenance, and entitlement administration in accordance with enterprise IAM policies, segregation of duties, and regulatory requirements. This role partners with Lines of Business, account owners, and infrastructure teams to deliver secure access lifecycle management for critical mainframe resources. It also drives process modernization through automation, JCL and scripting, AI-assisted operational analysis, control monitoring, and continuous improvement to reduce manual effort,
strengthen compliance, and improve service quality and turnaround time. **Responsibilities*** + Administer and govern mainframe identities and access across RACF, z/OS, z/VM, OMVS, datasets, groups, resource classes, started tasks, and privileged accounts, ensuring least privilege and policy compliance. + Perform end-to-end access provisioning, modification, and de-provisioning for user, functional, service, and robotic IDs, with strong validation of approvals, entitlements, and segregation-of-duties requirements. + Manage access for sensitive mainframe resources including dataset profiles, generic profiles, groups, OMVS segments, USS access, surrogate access, and command/resource controls. + Handle escalations, exception requests, urgent access restorations, and complex provisioning scenarios across multiple LPARs and environments while maintaining control evidence and operational discipline. + Drive process improvement and automation using JCL, REXX, Shell, Python, PowerShell, or equivalent scripting where applicable, reducing manual processing and improving control consistency. + Develop and maintain operational scripts, batch workflows, and JCL-based utilities for bulk updates, reconciliation, reporting, evidence collection, and controlled remediation activities. + Ensure secure administration of privileged, emergency, and non-human accounts by applying strong controls for ownership, monitoring, authentication, and decommissioning. + Perform timely de-provisioning and access removals and ensuring stale access, orphan IDs, and toxic combinations are identified and remediated. + Create and maintain standard operating procedures, and technical documentation for provisioning workflows, command execution standards, and automated jobs. + Partner with security and platform teams to strengthen the mainframe control environment through continuous monitoring, metrics, control testing and strategic modernization initiatives. **Requirements*** **Education*** BE/BTECH/MCA/MSC (IT) equivalent (Any Technical Degree) **Certifications (If Any):** + IBM Security zSecure, RACF administration, SailPoint, CyberArk etc. + Governance, risk, or audit-aligned certifications such as CRISC, CISM, or CISA are also desirable. **Experience Range*** 8-10+ Years **Foundational skills*** + 6+ years of experience in Identity and Access Management, with strong hands-on experience in Mainframe access provisioning, security administration, and control execution. + Strong understanding of IAM architecture, access lifecycle management, RBAC, privileged access concepts, segregation of duties, and risk-based control frameworks. + Deep knowledge of mainframe security administration across RACF, z/OS, z/VM, OMVS/USS, and familiarity with ACF2 or Top Secret concepts in multi-platform environments. + Hands-on experience with automation and scripting such as JCL, REXX, Shell, Python, PowerShell, or equivalent tools used for provisioning, reconciliation, reporting, and workflow optimization. + Experience with bulk data handling, evidence preparation, and reporting using Excel, macros, or data analysis tooling for operational and audit support. + Strong written and verbal communication skills with the ability to articulate access decisions, control requirements, technical issues, and remediation actions to business and technical stakeholders. + Ability to adapt to evolving security tools, AI-assisted operational capabilities, and changing regulatory or control expectations in a high-risk environment. + Experience working in a cross-functional, team-oriented environment involving IAM, infrastructure & platform security. + Self-starter with strong troubleshooting capability, operational ownership, and the ability to manage multiple priorities in a time-sensitive provisioning environment. + Strong analytical and problem-solving skills with the ability to interpret access models, troubleshoot security errors, and identify process or control gaps. + Demonstrated risk-oriented mindset with experience supporting access reviews, audit responses, issue remediation, control validation, and policy compliance. + Good interpersonal and stakeholder management skills, with the ability to collaborate effectively across global teams and Lines of Business. + Ability to provide senior-level judgment, mentor junior analysts, and influence process and control improvements across the provisioning function. + Proficiency in Microsoft Office and reporting tools, especially Excel, Word, Outlook, PowerPoint,
and Visio, for analysis, communication, documentation, and control evidence preparation. **Desired skills** + Proficiency in documenting detailed procedures, work instructions, control steps, operational runbooks, and evidence artifacts for mainframe IAM processes. + Strong technical knowledge of RACF administration, resource class security, dataset protection, OMVS/USS, z/VM concepts, JCL, and familiarity with tools such as zSecure. + Ability to operate effectively across technology, cyber, applications and business teams. + Drive automation by standardizing workflows, reducing manual touchpoints, improving turnaround time **Work Timings:** 7:30 to 16:30 **/** 11:30 to 20:30 (IST) [Rotational / As per Business Requirement] **Job Location:** MUM / HYD Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates. View your "Know your Rights (https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12.pdf) " poster. View the LA County Fair Chance Ordinance (https://dcba.lacounty.gov/wp-content/uploads/2024/08/FCOE-Official-Notice-Eng-Final-8.30.2024.pdf) . Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment. Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work. This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason. Investment products offered through MLPF&S; and insurance and annuity products offered through MLLA: **Are Not FDIC Insured** **Are Not Bank Guaranteed** **May Lose Value** **Are Not Deposits** **Are Not Insured by Any Federal Government Agency** **Are not a condition to Any Banking Service or Activity** Merrill Lynch, Pierce, Fenner & Smith Incorporated (also referred to as "MLPF&S;" or "Merrill") makes available certain investment products sponsored, managed, distributed or provided by companies that are affiliates of Bank of America Corporation ("BofA Corp."). MLPF&S; is a registered broker-dealer, registered investment adviser, **Member SIPC** and a wholly owned subsidiary of BofA Corp. Insurance and annuity products are offered through Merrill Lynch Life Agency Inc., a licensed insurance agency and wholly owned subsidiary of Bank of America Corporation. Trust, fiduciary and investment management services are provided by Bank of America, N.A., Member FDIC and wholly owned subsidiary of Bank of America Corporation ("BofA Corp."). Bank of America Private Bank is a division of Bank of America, N.A. Banking products are provided by Bank of America, N.A. and affiliated banks, Members FDIC and wholly owned subsidiaries of Bank of America Corporation. © 2026 Bank of America Corporation. All rights reserved.
📌 Info Security Controls Specialist II A (Hyderabad)
🏢 Bank Of America
📍 Hyderabad