Padmi

GRC Analyst - IAM Governance

IndiaPosted 2 months ago
CybersecuritySeniorFull Time; Regular
Apply at Ola

Opens the source posting on shine.com

Source description

About the role

View original

As an Identity and Access Management (IAM) Governance Specialist at Ola Group, your role involves developing, maintaining, and enforcing IAM policies, standards, and guidelines to align with industry best practices such as least privilege and zero trust. You will be responsible for governing the identity lifecycle process, conducting access reviews, and ensuring adherence to defined controls and SLAs across all systems and platforms. Key Responsibilities: - Develop, maintain, and enforce IAM policies, standards, and guidelines - Govern the identity lifecycle process including provisioning and de-provisioning - Conduct periodic access reviews and entitlement recertification campaigns - Assess IAM control effectiveness, document risk, and support remediation - Support internal and external audits by preparing IAM-related evidence - Monitor for identity-related risks and policy violations - Collaborate with IT, Security Engineering, and Compliance teams - Maintain IAM governance metrics and reporting - Stay current on emerging IAM threats and industry developments Qualifications Required: - 25 years of experience in GRC, information security, or IAM - Strong understanding of IAM principles and technologies - Working knowledge of security and compliance frameworks - Experience in access reviews, entitlement analysis, and audit evidence collection - Analytical and detail-oriented with the ability to communicate findings effectively - Bachelor's degree in a related field or equivalent experience - Experience with AI-based tools and automation for IAM governance workflows is a plus As part of the broader GRC team at Ola Group, you will play a vital role in strengthening identity governance practices, integrating IAM governance requirements into security architecture, and contributing to security governance activities. Your expertise in IAM principles, access control, compliance, and risk management will be crucial in ensuring alignment with industry standards and regulatory requirements. As an Identity and Access Management (IAM) Governance Specialist at Ola Group, your role involves developing, maintaining, and enforcing IAM policies, standards, and guidelines to align with industry best practices such as least privilege and zero trust. You will be responsible for governing the identity lifecycle process, conducting access reviews, and ensuring adherence to defined controls and SLAs across all systems and platforms. Key Responsibilities: - Develop, maintain, and enforce IAM policies, standards, and guidelines - Govern the identity lifecycle process including provisioning and de-provisioning - Conduct periodic access reviews and entitlement recertification campaigns - Assess IAM control effectiveness, document risk, and support remediation - Support internal and external audits by preparing IAM-related evidence - Monitor for identity-related risks and policy violations - Collaborate with IT, Security Engineering, and Compliance teams - Maintain IAM governance metrics and reporting - Stay current on emerging IAM threats and industry developments Qualifications Required: - 25 years of experience in GRC, information security, or IAM - Strong understanding of IAM principles and technologies - Working knowledge of security and compliance frameworks - Experience in access reviews, entitlement analysis, and audit evidence collection - Analytical and detail-oriented with the ability to communicate findings effectively - Bachelor's degree in a related field or equivalent experience - Experience with AI-based tools and automation for IAM governance workflows is a plus As part of the broader GRC team at Ola Group, you will play a vital role in strengthening identity governance practices, integrating IAM governance requirements into security architecture, and contributing to security governance activities. Your expertise in IAM principles, access control, compliance, and risk management will be crucial in ensuring alignment with industry standards and regulatory requirements.

One address, no account. We’ll tell you when matching roles go live.