Back to search results

Identity and Access Management (IAM) Security Administration Specialist (Client Services exp. Required)

Boston, Massachusetts; Washington, District of Columbia
Refer a friend

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.

We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.

Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Position Overview:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank’s Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS, Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context. IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements.

What you can expect in Identity & Access Management:

In today’s highly connected world, managing and securing the identity of users is essential to the safety and success of our workforce. The Identity & Access Management (IAM) team works within Global Information Services (GIS) and in close participation with all other LOB teams as well as second and third line of defense partners. This role is highly visible and requires frequent interaction with senior management and key stakeholders.  

Are you passionate about the latest IT technologies and thrive in a fast-paced international environment? In a typical day, you may work with other team members on the book of work, operational concerns, or risk items. You will help overcome obstacles and maintain good relationships with key stakeholders across the bank to ensure timely and effective delivery. We offer you the opportunity to collaborate with passionate competent people, experts in their field. We thrive on being challenged and everything we do is anchored in managing risk for the bank.

Responsibilities:

  • Serve as a primary IAM advisor and escalation point for internal clients seeking guidance on access management, access governance, and security control processes.

  • Educate clients on IAM policies, standards, procedures, and best practices while ensuring compliance with enterprise security requirements.

  • Partner with business and technology teams to identify, assess, and mitigate information security risks.

  • Support and administer key IAM functions, including:

  • Access Request Management (ARM)

  • Access Reviews and entitlement recertification processes

  • Security Point of Contact (SPOC) activities

  • Identity governance and entitlement oversight

  • Access remediation and control issue resolution

  • Analyze client issues and provide effective solutions while balancing operational needs and information security requirements.

  • Act as a risk and control partner by identifying emerging risks, control gaps, and opportunities for process improvement.

  • Develop and maintain strong relationships with business partners, application teams, control owners, and risk management organizations.

  • Drive adherence to established information security policies, standards, and procedures.

  • Support audit, regulatory, and compliance activities by providing documentation, evidence, and operational expertise related to IAM controls.

  • Identify opportunities for automation, process optimization, and enhanced client self-service capabilities.

  • Contribute to strategic initiatives that improve the effectiveness, efficiency, and scalability of IAM services.

Role Description:

The Information Security Controls Specialist is responsible for supporting enterprise Identity and Access Management (IAM) processes controls and services while partnering with business, technology, and cybersecurity teams to ensure information security risks are appropriately identified, managed, and mitigated. This role serves as a trusted advisor to clients and stakeholders by providing education, problem resolution, and guidance related to IAM processes, access governance, and security control requirements.

The successful candidate will possess strong IAM subject matter expertise, excellent client engagement skills, and the ability to balance risk management with operational effectiveness. This role requires the ability to influence stakeholders, drive adherence to established security standards, and support enterprise initiatives that strengthen the bank's security posture. 

Required Qualifications:

  • 3+ years of IAM experience with a strong understanding of Identity and Access Management concepts, processes, and controls.

  • Experience supporting Access Request Management (ARM), Access Reviews, Security Point of Contact (SPOC),  Role Based Access and related access governance activities.

  • Excellent customer service, communication, and stakeholder management skills.

  • Ability to educate clients and influence positive security outcomes through consultation and problem-solving.

  • Strong analytical and critical thinking capabilities.

  • Ability to assess risk and develop practical solutions that align with enterprise security standards.

  • Experience working with cross-functional technology, risk, audit, and business teams.

  • Knowledge of information security controls, governance, and regulatory requirements.

  • Ability to manage multiple priorities in a fast-paced environment while maintaining a high level of accuracy and client focus.

Shift:

1st shift (United States of America)

Hours Per Week: 

40

Learn more about this role

Refer a friend

Full time

JR-26026796

Manages People: No

Travel: No

Age requirement: Must at least be 18 years of age.

Massachusetts pay range:

$78,200.00 - $136,300.00 annualized salary, offers to be determined based on experience, education and skill set.

Discretionary incentive eligible

This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.

Benefits

This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve

Washington, DC pay range:

$78,200.00 - $136,300.00 annualized salary, offers to be determined based on experience, education and skill set.

Discretionary incentive eligible

This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.

Benefits

This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve