Information Security Controls Specialist
Bank Of AmericaJob Description
Info Security Controls Specialist II B
Job Description:
About Us
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We’re devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
Global Business Services
Global Business Services delivers Technology and Operations capabilities to Lines of Business and Staff Support Functions of Bank of America through a centrally managed, globally integrated delivery model and globally resilient operations.
Global Business Services is recognized for flawless execution, sound risk management, operational resiliency, operational excellence and innovation.
In India, we are present in five locations and operate as BA Continuum India Private Limited (BACI), a non-banking subsidiary of Bank of America Corporation and the operating company for India operations of Global Business Services.
Process Overview
The Global Information Security (GIS) is responsible for protecting Bank information systems, confidential and proprietary data, and customer information. The team develops the Bank’s Information Security strategy and policy, manages the Information Security program, and identifies and addresses vulnerabilities, Develops, deploys and manages a risk-based controls portfolio, Manages and operates global security operations center that monitor, detects and responds to cybersecurity incidents.
GIS Identity & Access management (IAM) Access Control Team goal is to ensure that the control processes and effectiveness are within the identified risk tolerance. Manage the performance and effectiveness of the working control through the establishment of metrics with thresholds. Validate the reasonability of Laws, Rules and Regulations mapping alignment to the controls, as aligned by the GIS Policy team.
Job Description
The individual will be part of Privileged Access Management Services team. The role will support the IAM/PAM team by strengthening privileged access security through vulnerability remediation, privileged access solution design, and standards enforcement aligned with least‑privilege and Zero Trust principles. Responsibilities include collaboration with cybersecurity teams, automation using PowerShell/Python, and maintaining IAM/PAM documentation and standards.
Responsibilities
- Evaluate, solution, and remediate active directory IAM vulnerabilities.
- Develop, configure, integrate and deliver solutions to improve the privileged access posture of the company.
- Design and solution IAM-PAM compliance platform to identify control defects, assign remediation, measure and report on risk posture improvement
- Define and enforce standards for multi-layered privileged access management defense plan.
Construct and publish privileged access monitoring standards which include insider threat monitoring
- Partners with Cybersecurity and IAM teams to implement least-privilege, privileged access management (PAM), and Zero Trust-aligned identity controls.
- Develop and maintain scripts and automation (primarily PowerShell or Python) to drive consistency, efficiency, and security in identity operations.
- Provide IAM/PAM support and technical skills to respond to threats and risks. Be able to compose data and relevant artifacts to construct immediate response plans and provide hands on support.
- Produce and maintain technical documentation, runbooks, standards, and process diagrams to support projects and initiatives.
Requirements
Education: BE/BTECH/MCA/MSC (IT) equivalent (Any Technical Degree)
Certifications: Linux+ / RHCA / CyberArk / CompTIA Security+
Experience Range: 8 - 10 yrs
Foundational skills
- 4-5 years of hands-on experience administering privileged access management and understanding of active directory. (CyberArk, HashiVault, Delinea, PowerBroker)
- Strong understanding of authentication and access control standards and technologies. (oAuth, OIDC, SAML, MFA, certificates)
- 3 years of cloud experience and practical knowledge of Azure (EntraID), AWS (IAM, PermissionSets, SWS).
- Exposure and understanding of modern IAM security principles zero trust, ephemeral access, least privileged, JIT.
- Demonstrated success using scripts (PowerShell), python, bash to process data and perform IAM-PAM analysis.
- Experience operating in regulated environments (preferably banking/financial services) with audit, risk, and compliance requirements.
- Solid understanding of networking and security fundamentals (TCP/IP, firewalls, TLS, certificates, PKI as it relates to identity).
- Must be well-versed in understanding the risks associated with privileged access fundamentals.
- Excellent communication skills and ability to translate technical identity risks and solutions for non-technical stakeholders.
Desired skills
- Hands-on expertise with Linux, CyberArk, provisioning policies
- Exposure to cloud IAM/PAM concepts.
- IT compliance and security certifications
Work Timings
12:30 to 21:30 (IST) - Rotational
14:30 to 23:30 (IST) - Rotational
Job Location: Hyderabad, Mumbai
Experience Level
Mid LevelJob role
Job requirements
About company
Similar jobs you can apply for
Accounts / FinanceField Installation Engineer
Quess Corp LimitedComputer Technician
Superman ComputersInstallation Engineer
V5 GlobalFiber Field Engineer
Fixcell Enterprises
System Network Administrator
Prism Bpo Private LimitedField Installation Engineer
Quess Corp LimitedYou can expect a minimum salary of 0 INR. The salary offered will depend on your skills, experience and performance in the interview.
The candidate should have completed the required education and people who have 8 to 10 years are eligible to apply for this job. You can apply for more jobs in Hyderabad to get hired quickly.
The candidate should have sound communication skills and sound communication skills for this job.
Both Male and Female candidates can apply for this job.
No, it's not a work from home job and can't be done online. You can explore and apply for other work from home jobs in Hyderabad at apna.
No work-related deposit needs to be made during your employment with the company.
Go to the apna app and apply for this job. Click on the apply button and call HR directly to schedule your interview.
The last date to apply for this job is . For more details, download apna app and find Full Time jobs in Hyderabad . Through apna, you can find jobs in 64 cities across India. Join NOW!