Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Bank of America

Senior IAM Security Specialist – Identity, Authentication, Authorization, Governance

Bank of America

. Establish IAM control requirements, governance measures, and escalation paths with risk and control organizations .

Posted 10/6/2026full-timeUnited StatesSenior💰 $140,000 - $200,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive expertise in Identity and Access Management (IAM) with a focus on governance, risk management, and compliance within complex organizations. Proficient in translating regulatory requirements into effective identity controls and driving enterprise-scale IAM transformation initiatives.

Highest-signal resume keywords
Identity And Access ManagementOAuth 2.0OpenID ConnectNIST StandardsCISSP Certification

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Identity Risk ManagementToken-Based AuthenticationCloud SecurityAPI SecurityIdentity AnalyticsPolicy-As-CodeRBACABACPythonSQL
Soft Skills
Executive-Level CommunicationAnalytical Decision-MakingCross-Functional CollaborationInfluencing Senior LeadersPrioritization
Tools & Technologies
Active DirectoryMicrosoft Entra IDPingSplunkTableauPower BIMicrosoft Copilot StudioPower Automate
Certifications & Qualifications
CISSPCCSPCRISCCISM
Industry Keywords
Financial ServicesBankingRegulated EnvironmentsIdentity GovernanceZero Trust

Tech Stack

Tools & technologies
CloudCyber SecurityPythonSplunkSQLTableau

About the role

Key responsibilities & impact
  • Establish IAM control requirements, governance measures, and escalation paths with risk and control organizations
  • Translate internal policy, regulatory, and audit requirements into sustainable controls across enterprise platforms and processes
  • Drive remediation of identity risks and control gaps across business and technology organizations
  • Provide executive-level reporting and recommendations on identity risk, control health, adoption, exceptions, and remediation progress
  • Support audit readiness and sustainable issue closure through accountability, evidence, metrics, and ongoing control monitoring
  • Build partnerships across GIS, Core Technology, Application Development, Risk, Compliance, Audit, and Third-Party Management
  • Advise and influence senior leaders on complex identity, technology, security, and risk matters
  • Drive cross-functional alignment, ownership, and adoption across teams
  • Translate complex technical and risk concepts into executive recommendations, decisions, and measurable outcomes
  • Define enterprise requirements, strategic direction, and standards for authentication, authorization, and identity governance
  • Establish governance for human, non-human, workload, service, and AI-agent identities
  • Set enterprise standards for API authentication and authorization, service-to-service access, token-based controls, and secure identity patterns
  • Drive adoption of zero trust, least privilege, phishing-resistant and passwordless authentication, continuous access evaluation, and context-aware authorization
  • Advance policy-as-code, automated control enforcement, and identity threat detection
  • Embed IAM requirements into application, platform, API, cloud, and AI design and development lifecycles
  • Influence investment priorities and modernization roadmaps to reduce standing privilege, unmanaged identities, inconsistent access patterns, and control gaps
  • Define measures of adoption, control health, identity risk, and remediation progress

Requirements

What you’ll need
  • 10+ years of experience in identity and access management, cybersecurity, cloud security, or access management within large, complex organizations
  • Leadership experience required
  • Demonstrated success setting direction for or influencing enterprise-scale IAM transformation, modernization, governance, or control programs
  • Deep knowledge of OAuth 2.0, OpenID Connect, SAML, service-to-service access, and token-based authentication
  • Experience governing identity and access across cloud, SaaS, API, application, and hybrid environments
  • Strong understanding of human and non-human identity risk, including workload, service, machine, and AI-agent identities, delegated authority, and lifecycle accountability
  • Experience translating policy, regulatory, and audit requirements into practical identity controls within regulated environments
  • Knowledge of NIST, ISO, FFIEC, SOX, SOC, or equivalent standards and frameworks
  • Ability to advise, brief, and influence senior leaders on complex technology, security, and risk matters
  • Exceptional written and verbal communication skills, including executive-level presentations and recommendations
  • Strong judgment and analytical decision-making skills
  • Ability to prioritize competing demands, drive cross-functional alignment, and deliver measurable outcomes
  • Experience in financial services, banking, or another highly regulated industry
  • Knowledge of RBAC, ABAC, PBAC, segregation of duties, just-in-time access, runtime authorization, and cloud entitlement management
  • Experience with Active Directory, Microsoft Entra ID, Ping, or equivalent identity platforms
  • Experience with identity analytics, automation, policy-as-code, AI-enabled security solutions, or workflow optimization
  • Familiarity with Python, R, SQL, Splunk, Tableau, Power BI, Microsoft Copilot Studio, Power Automate, or equivalent
  • Experience with cloud security, infrastructure, microsegmentation, monitoring, infrastructure-as-code, or related technologies
  • Industry certification such as CISSP, CCSP, CRISC, CISM, or equivalent

Benefits

Comp & perks
  • Annual discretionary incentive plan eligibility
  • Benefits eligibility
  • Paid time off
  • Resources and support for employees
  • In-office flexibility based on role-specific responsibilities and business needs
  • Opportunities to learn, grow, and make an impact