Identity and Access Management Senior Consultant
Company: Bank of America
Location: Boston
Posted on: April 1, 2026
|
|
|
Job Description:
Job Description: At Bank of America, we are guided by a common
purpose to help make financial lives better through the power of
every connection. We do this by driving Responsible Growth and
delivering for our clients, teammates, communities and shareholders
every day. Being a Great Place to Work is core to how we drive
Responsible Growth. This includes our commitment to being an
inclusive workplace, attracting and developing exceptional talent,
supporting our teammates’ physical, emotional, and financial
wellness, recognizing and rewarding performance, and how we make an
impact in the communities we serve. Bank of America is committed to
an in-office culture with specific requirements for office-based
attendance and which allows for an appropriate level of flexibility
for our teammates and businesses based on role-specific
considerations. At Bank of America, you can build a successful
career with opportunities to learn, grow, and make an impact. Join
us! Line Of Business Summary: Global Information Security (GIS) is
responsible for protecting bank information systems, confidential
and proprietary data, and customer information. GIS develops the
bank’s Information Security strategy and policy, manages the
Information Security program, identifies and addresses
vulnerabilities, and operates a global security operations center
that monitors, detects, and responds to cybersecurity incidents.
Within GIS, Identity and Access Management (IAM) is a security
discipline that enables the right individuals to access the right
resources at the right times and in the right context. IAM
addresses the mission-critical need to ensure appropriate access
across increasingly heterogeneous technology environments and to
meet increasingly rigorous compliance requirements. What you can
expect in Identity & Access Management: In today’s highly connected
world, managing and securing the identity of users is essential to
the safety and success of our workforce. The Identity & Access
Management (IAM) team works within Global Information Services
(GIS) and in close participation with all other LOB teams as well
as second and third line of defense partners. This role is highly
visible and requires frequent interaction with senior management
and key stakeholders. The Senior IAM Information Security Controls
Lead will analyze, strengthen, and secure the company's IAM systems
and overall risk posture for end user, application and privileged
access management. The individual in this role will be a leader in
the IAM innovation space, working with senior leaders to implement
new technologies and frameworks. This role requires collaboration
with technology peers to modernize the IAM ecosystem for securing
evolving technologies and identities. The role also applies
knowledge of laws, rules, regulations, and information security
frameworks (e.g., NIST, COBIT, ISO) to establish and maintain
policies, validate alignment of processes and controls to
requirements, report on adherence to policy requirements, and
maintain governance programs related to IAM Standard controls.
Expectations include leveraging data analytics, governance process
management, and cross-functional partnerships to verify policy
compliance, identify gaps, and support remediation activities.
Responsibilities: Define and steer IAM standards including
designing enterprise appropriate adherence models, and related
measures for governance, controls and effectiveness management.
Drive application/platform IAM modernization approach and program
for information & data synchronization/management, moving from
legacy manual to modernized identity automation solutions, such as
connector frameworks. Collaborate with partner cybersecurity,
engineering, and compliance teams to develop and align controls
with industry standards, to mitigate known threat vectors, adopt
best practice principles and meet regulatory requirements. Drive
optimization & adoption of innovative and transformational
strategies including but not limited to tooling integrations with
enterprise platforms such as Active Directory, Mainframe and Public
Cloud. Drive requirements, modernization and derisk efforts for
processes, controls, systems and platforms, reducing technical
debt, improving identity hygiene and supporting continual risk
reduction efforts. Interacting with examiners and partners within
control oversight organizations such as Audit, Compliance,
Operational Risk, Regulators, and independent assessment
organizations to represent IAM. Manage, liaise with and oversee
currency of documentation, governance routines, and QA processes to
capture, drive and improve alignment with standards and controls.
Drive access management product and systems requirements for
solutions, platforms and application-level integrations. Influence
technology decisions and vendor strategies to support IAM
objectives. Required Qualifications: 10 years of bank and finance
industry hands-on experience in Identity Governance &
Administration (IGA) or Identity and Access Management (IAM),
managing identity lifecycle and enterprise-scale modernization
initiatives. High proficiency and working knowledge of Active
Directory, Entra ID (Azure AD), and federated authentication
protocols (SAML, OIDC, OAuth2). Proven experience IAM functionality
and tools for Azure, AWS, and Google Cloud and with platforms such
as PingIDM, SailPoint, Saviynt, IdentityIQ (IIQ), ForgeRock, Okta,
or Oracle IDCS. Expertise in connector frameworks (e.g., OpenICF),
identity workflows, role management, and policy development.
Familiarity with common Information Security and data protection
frameworks and standards (i.e., CIS, NIST, MITRE, ITIL, COBIT,
HIPAA, GDPR, PCI DSSS, ISO 270001) Familiarity with Zero Trust
architecture, FIDO2, and passwordless authentication concepts.
Proficiency in data analytics and reporting tools (SQL, Tableau,
PowerBI) for compliance and risk metrics. Highly organized and
motivated self-starter who can deliver results with minimal
direction. Ability to own and deliver on complex initiatives in a
high paced, evolving environment. Excellent problem-solving,
documentation, and communication skills with the ability to work
effectively across cross-functional teams. Excellent verbal and
written communication skills. Ability to communicate with business
leaders, users, and tech-savvy stakeholders and influence outcomes.
Shift: 1st shift (United States of America) Hours Per Week: 40 Pay
Transparency details US - DC - Washington - 1800 K St NW - 1800 K
Street NW (DC1842), US - MA - Boston - 100 Federal St - 100 Federal
St Lp (MA5100) Pay and benefits information Pay range $135,000.00 -
$182,100.00 annualized salary, offers to be determined based on
experience, education and skill set. Discretionary incentive
eligible This role is eligible to participate in the annual
discretionary plan. Employees are eligible for an annual
discretionary award based on their overall individual performance
results and behaviors, the performance and contributions of their
line of business and/or group; and the overall success of the
Company. Benefits This role is currently benefits eligible. We
provide industry-leading benefits, access to paid time off,
resources and support to our employees so they can make a genuine
impact and contribute to the sustainable growth of our business and
the communities we serve.
Keywords: Bank of America, Boston , Identity and Access Management Senior Consultant, IT / Software / Systems , Boston, Massachusetts