Role Summary
The Senior IAM Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and strengthening Identity and Access Management governance programs across the enterprise. The role focuses on access governance, compliance management, audit support, access certification, risk management, control implementation, and continuous improvement of IAM processes. The analyst will work closely with application owners, business stakeholders, security teams, compliance teams, and auditors to ensure secure, compliant, and efficient access management practices aligned with organizational policies and regulatory requirements.
Key Responsibilities
IAM Governance & Compliance
- Support implementation and maintenance of IAM governance controls across enterprise applications and technology platforms.
- Assist in developing and maintaining IAM policies, standards, procedures, and control frameworks.
- Monitor IAM control effectiveness and compliance with organizational security requirements.
- Support governance initiatives related to identity lifecycle management, access management, and compliance activities.
- Contribute to IAM strategy, governance roadmaps, and process improvement initiatives.
Access Governance & Certification
- Coordinate and support periodic user access reviews and access certification campaigns.
- Review and validate user access, entitlements, and role assignments.
- Support role governance, entitlement management, and Segregation of Duties (SoD) review activities.
- Identify inappropriate access, policy violations, and access control risks.
- Assist with remediation tracking and closure of governance findings.
Audit, Risk & Compliance Management
- Support internal and external audit activities by gathering evidence and responding to audit requests.
- Maintain audit documentation and compliance records.
- Track audit observations, findings, and remediation plans.
- Conduct control assessments and identify governance gaps.
- Assist in risk assessments related to identity and access management processes.
- Support compliance initiatives aligned with regulatory and industry frameworks.
Application Onboarding & Governance
- Support governance activities associated with onboarding new applications into IAM solutions.
- Review access models, role structures, and governance controls for new applications.
- Collaborate with application owners to ensure governance requirements are met.
- Support integration of governance controls into application onboarding processes.
Governance Reporting & Documentation
- Develop and maintain governance procedures, SOPs, workflows, and control documentation.
- Prepare governance metrics, compliance reports, dashboards, and management reports.
- Maintain audit evidence repositories and governance records.
- Document process improvements and control enhancements.
- Support governance reporting for leadership and compliance stakeholders.
Stakeholder Collaboration
- Partner with business stakeholders, security teams, technology teams, compliance teams, and auditors.
- Provide guidance on IAM governance requirements and access governance best practices.
- Participate in governance meetings, compliance reviews, and risk discussions.
- Support remediation activities and continuous improvement initiatives.
Continuous Improvement
- Identify opportunities to improve governance processes and control effectiveness.
- Recommend automation and optimization opportunities for access governance processes.
- Support implementation of governance best practices across IAM operations.
- Contribute to maturity improvement initiatives within IAM governance programs.
Required Technical Skills
Identity Governance & Administration
- Strong understanding of IAM governance, access governance, and identity lifecycle management.
- Experience supporting access certification and entitlement review programs.
- Knowledge of role-based access control (RBAC), entitlement management, and Segregation of Duties (SoD).
- Understanding of identity governance and compliance processes.
Governance, Risk & Compliance
- Experience supporting compliance initiatives, audit readiness, and control monitoring.
- Knowledge of risk assessment methodologies and remediation processes.
- Experience documenting controls, procedures, and governance requirements.
- Familiarity with compliance reporting and evidence collection.
IAM Technologies
- Microsoft Entra ID (Azure AD)
- Okta
- SailPoint
- CyberArk
- SAP GRC
- Saviynt (Preferred)
- Oracle Identity Governance (Preferred)
Access Governance
- User Access Reviews
- Access Certification Campaigns
- Entitlement Management
- Role Management
- Segregation of Duties (SoD)
- Compliance Monitoring
ITSM & Process Management
- ServiceNow or equivalent ITSM platform
- ITIL framework knowledge
- Incident, Change, and Request Management processes
Documentation & Reporting
- Process Documentation
- Governance Reporting
- Audit Evidence Management
- Dashboard & Metrics Preparation
Preferred Qualifications
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Engineering, or related discipline.
- 4–8 years of experience in IAM Governance, Access Governance, Compliance Management, Information Security, or related fields.
- Experience supporting enterprise IAM governance initiatives across cloud and on-premises environments.
- Experience collaborating with auditors, compliance teams, and control owners.
- Familiarity with SOX, ISO 27001, NIST, PCI-DSS, GDPR, or similar regulatory frameworks.
Preferred Certifications
- Certified Information Systems Auditor (CISA)
- Certified Information Security Manager (CISM)
- Certified Information Systems Security Professional (CISSP)
- Certified Identity and Access Manager (CIAM)
- Microsoft Identity & Access Administrator (SC-300)
- Okta Certified Professional
- SailPoint Identity Security Certification
- ITIL Foundation
At Tieto, we believe in the power of diversity, equity, and inclusion. We encourage applicants of all backgrounds, genders (m/f/d), and walks of life to join our team, as we believe that this fosters an inspiring workplace and fuels innovation. Our commitment to openness, trust, and diversity is at the heart of our mission to create digital futures that benefit businesses, societies, and humanity.
Important Advisory Regarding Recruitment Fraud
Tieto has been made aware of fraudulent recruitment activities being carried out by individuals falsely impersonating our organization.
Learn moreWe are Tieto - A leading software and technology consulting company
We provide customers across different industries with mission-critical solutions through our specialized software businesses Tieto Caretech, Tieto Banktech and Tieto Indtech as well as Tieto Tech Consulting business.
Our around 14 000 talented vertical software, design, cloud and AI experts are dedicated to empowering our customers to succeed and innovate with latest technology.
Tieto’s annual revenue is approximately EUR 2 billion. The company’s shares are listed on the NASDAQ exchange in Helsinki and Stockholm, as well as on Oslo Børs.
Related positions
Salary
Location
Bangalore, India
Location
Bengaluru
Job Families
Technical Specialist
Job Area
Technical and Functional Expertise
Function
Tieto Tech Consulting
Type of Employment
Full-time
Work location type
Onsite
Description
Job Title: IAM Engineer L2Experience: 3-6 YearsLocation: [Remote/Hybrid]Role SummaryThe IAM L2 Analyst is responsible for managing and supporting identity and access management services across the ent
Reference
2e579565-ae0f-4aa7-9498-27641dd5a625
Expiry Date
01/01/0001
Salary
Location
Bangalore, India
Location
Bengaluru
Job Families
Technical Specialist
Job Area
Technical and Functional Expertise
Function
Tieto Tech Consulting
Type of Employment
Full-time
Work location type
Hybrid
Description
JD (Job Description) for CloudOps Engineer Position: CloudOps Engineer Exp: 5+ yrslocation:
Reference
f9a3635f-77d1-466c-b07d-9f010003c451
Expiry Date
01/01/0001
Salary
Location
Uppsala, Sweden
Location
Uppsala
Job Families
Solution Consultant
Job Area
Consulting
Function
Tieto Indtech
Type of Employment
Full-time
Work location type
Hybrid
Description
Verksamhetsutvecklare - Tieto Indtech Public360 (m/f/d) Strategic advisory & value-based consulting About Public 360° Tieto is a leading digital services and software company creating real digital
Reference
770a14c0-b20d-489d-a268-dbefb7acc503
Expiry Date
01/01/0001
Join our talent community
Whether you're actively job hunting or simply exploring, stay connected with exciting opportunities and updates from Tieto!
Sign up here