Enable America Jobs

Enable America Logo

Job Information

American Express Global Business Travel Identity and Access Management PAM Manager in United States, Arizona

Amex GBT is a place where colleagues find inspiration in travel as a force for good and – through their work – can make an impact on our industry. We’re here to help our colleagues achieve success and offer an inclusive and collaborative culture where your voice is valued.

Ready to explore a career path? Start your journey.

The Manager of Privileged Access Management within IAM will be responsible for managing and overseeing our PAM and Cloud IAM initiatives. This role is critical in ensuring that privileged access across the organization is secure, compliant, and effectively managed.

The ideal candidate will have a solid background in PAM solutions and AWS IAM, combined with leadership capabilities to drive standard methodologies and continuous improvement. They will be responsible for project planning, delivery, troubleshooting, execution, monitoring, and vendor management. They will be fundamental for seeing programs through from beginning to end, ensuring efficient workflows, driving to measurable results and facilitating through effective communication.

Job Responsibilities –

  • Develop, implement, and manage the organization's Privileged Access Management program, ensuring robust security controls and compliance.

  • Plan and implement the delivery of Privileged Access Management (PAM) services that include health check assessments, strategy, and implementation engagements.

  • Lead and oversee the build, configuration, and architecture of PAM platform, CyberArk, including integral technology components such as password vaulting, privileged session management, application to application authentication, SSH key management, etc.

  • Define and implement policies and procedures for PAM.

  • Develop and implement a comprehensive IAM strategy for AWS, aligning with organizational security policies and compliance requirements.

  • Lead the design, deployment, and management of AWS IAM solutions, including policies, roles, user management, and access controls.

  • Conduct risk assessments to identify and mitigate vulnerabilities within the AWS IAM environment.

  • Collaborate with IT, security, and development teams to integrate PAM and AWS IAM with existing systems and applications.

  • Provide technical leadership and guidance to internal teams on IAM best practices and security standards.

  • Lead the evaluation, selection, and implementation of PAM tools and technologies to enhance the organization's security posture.

  • Conduct regular audits and assessments of privileged access controls to identify and remediate vulnerabilities.

  • Monitor and respond to security incidents related to privileged access, conducting root cause analysis and implementing corrective actions.

  • Stay current with industry trends, emerging technologies, and standard processes in IAM and PAM to continuously improve the program.

  • Define ambitious, measurable goals and objectives; identity metrics and solutions that show impact and progress over time

  • Provide functional leadership during technology enhancements, upgrades, implementations, and work successfully as a liaison with various internal business technical partners

  • Collaborate with managers and engineers to deliver the best technical and operational design and approach, delivering value quickly to customers

  • Work with internal technology partners and offshore managed services teams to support, utilize and maintain IAM standards, systems, and procedures

  • Help streamline work process to improve efficiency and consistency

  • Provide transparent updates, help drive key decisions, pro-actively remove obstacles, lead dependencies across teams, identify risks and address key program issues

  • Set documentation standards and ensure all as-is, future state, and roadmaps are documented and socialized

  • Lead the Agile scrum team, write, enhance, research user stories and be responsible as business lead. Apply agile methodologies and product development lifecycle to successfully partner with product and engineering leaders

  • Produce IAM program and project level dashboards, scorecards, reporting and metrics to monitor progress & performance, and provide on-going written and verbal release status updates to leadership and keep project team members updated on information security program execution

  • Assist in internal & external audit reviews and ensure processes and procedures comply

  • Identify resource constraints as well as highlight project risks

  • Ensure effective teamwork, communication, collaboration and commitment across multiple teams and vendors

  • Manage, plan and grow your team in their professional careers by providing development plans, goals, and opportunity for them to succeed in their current or future position

  • Manage the vendor team and their deliverables through periodic status meetings

  • Set Clear Roles and Responsibilities of the vendor resources

  • Manage the vendor Service Levels fulfillment, Performance Analysis and Improvement procedures

Qualifications –

  • Bachelor’s degree in computer science, information technology, or equivalent combination of education, certification, and experience required.

  • 8+ years’ experience in the Identity and Access Management (IAM).

  • 5+ years’ experience in Privileged access management solution such as CyberArk with a strong technical knowledge.

  • 4+ years’ experience in Cloud Identity Management with an In-depth understanding of AWS IAM, including policies, roles, user management, and security best practices.

  • 4+ years in cross-functional management roles. Strong interpersonal and leadership skills of teams across multiple geographies.

  • Strong understanding of security best practices and regulatory requirements related to IAM.

  • Proven track record in building and leading a high-performing team of security experts focused on driving cultural change.

  • Experience working in a distributed team model and collaborating with remote team members

  • Experience being a people leader leading individual contributors and providing career direction, coaching and building development plans for highly talented IAM technical teams

  • Proficiency in project management tools – Jira, Smartsheet, etc

  • Excellent organizational skills, solid attention to detail and proven project management skills.

  • Highly adaptable in a fast-paced hyper-growth environment; proven track record of delivering key results.

  • Support delivery by creating alignment across multiple teams, resolving conflict, clarifying priorities.

  • Understanding of software development lifecycle, change management, and release management practices.

  • Experience managing a vendor Engineering and Operations team.

  • Requires excellent communication, interpersonal, organizational and team building and leadership skills, business judgment, and proven expertise in directing the efforts of a technical staff.

  • Strong communication and interpersonal skills, with the ability to collaborate effectively with cross-functional teams.

  • Proven experience in developing and managing IAM policies, procedures, and controls within an AWS environment.

  • Relevant certifications such as CISSP, CISM, AWS Certified Security – Specialty, or similar are highly desirable.

Preferred Skills –

  • Experience with other cloud platforms (Azure, Google Cloud) and their IAM components is a plus.

  • Familiarity with identity governance and administration (IGA) solutions.

  • Familiarity with regulatory requirements and standards such as GDPR, HIPAA, and ISO 27001.

  • Knowledge of DevOps practices and tools related to AWS security and automation.

Location

Arizona, United States

The US national annual base salary range for this position is from $85,000 to $170,000. The national range provided includes the base salary that GBT expects to pay for the role. Actual base salary will be based on factors including the scope and complexity of the role and the successful candidate’s relevant experience, skills, knowledge, and work location.

In addition to base salary, this role is eligible for our Annual Incentive Award plan, which rewards participants based on company and individual performance. For information about our comprehensive US benefits programs and eligibility, please review our Benefits-at-a-Glance document.

Benefits at a glance (https://explorer.amexglobalbusinesstravel.com/rs/346-POJ-129/images/GBT_2023BenefitsAtAGlance_Without_Rates_Final.pdf)

The #TeamGBT Experience

Work and life: Find your happy medium at Amex GBT.

  • Flexible benefits are tailored to each country and start the day you do. These include health and welfare insurance plans, retirement programs, parental leave, adoption assistance, and more.

  • Travel perks: get a choice of deals each week from major travel providers on everything from flights to hotels to cruises and car rentals.

  • Develop the skills you want when the time is right for you, with global tuition assistance, access to over 20,000 courses on our learning platform, leadership courses, and new job openings available to internal candidates first.

  • We strive to champion Diversity, Equity, and Inclusion in every aspect of our business at GBT. You can connect with colleagues through our global Inclusion Groups, centered around common identities or initiatives, to discuss challenges, obstacles, achievements, and drive company awareness and action.

  • Wellbeing resources to support mental and emotional health for you and your immediate family.

  • And much more!

All applicants will receive equal consideration for employment without regard to age, sex, gender (and characteristics related to sex and gender), pregnancy (and related medical conditions), race, color, citizenship, religion, disability, or any other class or characteristic protected by law.

Furthermore, we are committed to providing reasonable accommodation to qualified individuals with disabilities. Please let your recruiter know if you need an accommodation at any point during the hiring process. For details regarding how we protect your data, please consult GBT Recruitment Privacy Statement (https://www.amexglobalbusinesstravel.com/gbt-recruitment-privacy-statement/) .

What if I don’t meet every requirement? If you’re passionate about our mission and believe you’d be a phenomenal addition to our team, don’t worry about “checking every box;" please apply anyway. You may be exactly the person we’re looking for!

Click Here to Learn More (https://www.amexglobalbusinesstravel.com/careers/)

DirectEmployers