Padmi
Cencora logo
Cencora

pharmaceutical distribution · contract lifecycle management

Analyst II – IAM User Access Review

Mumbai · OnsitePosted 6 days ago
SecurityMid-levelFull Time
Apply at Cencora

Opens the source posting on myhrabc.wd5.myworkdayjobs.com

Source description

About the role

View original

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today! Job Details This role is responsible for supporting the execution and improvement of the User Access Review (UAR) function within the Identity and Access Management (IAM) space. Working within a small team, this role will support team leads in the overall execution of existing work and contribute to the growth and development of the UAR program overall as Cencora drives toward a risk based UAR program. The ideal candidate is detailed oriented, able to work in a fast paced environment, and strong analytical skills to support the various steps of the program. This role may assist in other IAM related tasks like identity lifecycle management, access provisioning, authentication support, hygiene, or compliance activities. The Analyst II contributes to the analysis of IAM-related incidents, supports access reviews, and helps document and remediate gaps in IAM controls and processes. This role works closely with more senior IAM analysts, engineers, and business stakeholders to ensure secure and efficient access to systems and data. The Analyst II also supports the development of IAM procedures, participates in user support and troubleshooting, and contributes to continuous improvement efforts. They are expected to demonstrate learning agility, attention to detail, and a strong commitment to operational excellence and user experience. Our employee experience is a strategic priority for our company. Our leaders are accountable for leading with purpose, fairness, and equity. They are responsible for building and developing diverse teams, maintaining a safe and inclusive environment, setting clear priorities, and holding self and team accountable for executing with excellence. Key Responsibilities Access Review Management: Eexecute periodic access reviews (certifications) within the SailPoint platform, coordinating with data owners and application teams to validate user access rights. Data Analysis: Strong ability to analyze data to ensure completeness and accuracy between source system and Sailpoint. Expectation is candidate will have strong Microsoft Excel skills Compliance & Audit: Ensure the IAM program adheres to internal policies and external regulatory requirements (e.g., SOX, HIPAA, GDPR, NIST). Act as the primary liaison for internal and external auditors, providing necessary documentation and evidence of compliance. Process Optimization: Identify and assist in implementing opportunities for process improvements and automation within the UAR process. Assists in the delivery of IAM awareness and compliance training programs Follows up on IAM-related audit findings and supports remediation efforts Maintains IAM documentation and contributes to updates for risk and control frameworks Provides user support for IAM tools and platforms, helping troubleshoot access and authentication issues Supports the development and documentation of IAM procedures, workflows, and control activities Assists in the evaluation and implementation of IAM tools and technologies Participates in incident response exercises and applies lessons learned to IAM service improvement Captures and reports IAM metrics and contributes to dashboards and reporting Essential Skills and Qualifications Experience: 3+ years of experience in IAM, with significant hands-on experience in SailPoint IdentityIQ or IdentityNow. Bachelor’s Degree in Computer Science, Information Technology, Cybersecurity, or a related discipline, or equivalent experience. Technical Proficiency: Strong understanding of SailPoint configurations, workflows, tasks, and rules in relation to the execution of user access reviews. Analytical Skills: High attention to detail, strong analytical thinking, and problem-solving abilities to translate business requirements into technical IAM solutions. Communication: Strong interpersonal and communication skills in order to support the " non-technical stakeholders and manage relationships. Certifications: While not always required, professional certifications like Certified Identity and Access Manager (CIAM) or SailPoint-specific credentials such as SailPoint Certified IdentityNow Engineer are highly valued. Compliance Knowledge: Working knowledge of IAM frameworks as well as SOX requirements and NIST framework guidance. SKILLS & KNOWLEDGE: Behavioral Skills: Critical Thinking and Problem Solving Detail Orientation and Accountability Interpersonal Communication Learning Agility and Adaptability Multitasking and Time Management Collaboration and Teamwork Technical Skills: Identity Lifecycle and Access Provisioning Authentication Support (MFA, SSO) IAM Policy and Standards (NIST, ISO 27001, HITRUST) IT Risk and Compliance Awareness Root Cause Analysis and Incident Support Reporting and Documentation Threat Monitoring and Alert Response Tools Knowledge: Sailpoint Directory Services (Active Directory, Azure AD) ITSM Tools (e.g., ServiceNow) . EDUCATIONAL QUALIFICATIONS: Education: Bachelor’s Degree in Computer Science, Information Technology or any other related discipline or equivalent related experience. Preferred Certifications: • Certified Cloud Security Professional (CCSP) • Certification in Information Security Strategy Management (CISM) • Certified Information Systems Security Professional (CISSP) • CompTIA Security + Certification • Systems Security Certified Practitioner (SSCP) • TS-SCI Security Clearance Certification WORK EXPERIENCE: • 2+ years of directly-related or relevant experience, preferably in information security. SKILLS & KNOWLEDGE: Behavioral Skills: • Critical Thinking • Detail Oriented • Interpersonal Communication • Learning Agility • Problem Solving • Multitasking Technical Skills: • Cybersecurity • Data Analysis • Information Security Strategy Standards (SOX, ISO 27001/27002, COBIT, ITIL, NIST, PCI) • IT Risk Management • Network Solutions and Systems • Programming and Development • Reporting and Analysis • Root Cause Analysis • Threat Intelligence and Monitoring Tools Knowledge: • Microsoft Office Suite • Programming and Development Languages - JavaScript, HTML/CSS, Python, SQL • Security Tools - SIEM, EDR, Email Security Gateway, SOAR, Firewall, Anti-virus, Firewalls, VPN IDS/IPS, AV, proxies, etc. What Cencora offers Benefit offerings outside the US may vary by country and will be aligned to local market practice. The eligibility and effective date may differ for some benefits and for team members covered under collective bargaining agreements. Full time Affiliated Companies Affiliated Companies: AmerisourceBergen Services Corporation Equal Employment Opportunity Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law. The company’s continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory. Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email hrsc@cencora.com. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned Cencora is a leading global pharmaceutical solutions company that is committed to improving the lives of people and animals everywhere. We connect manufacturers, providers, and patients to ensure that anyone can get the therapies they need, where and when they need them. We’re a purpose-driven organization, where all of our team members around the world are united in our responsibility to create healthier futures. We work together every day to help our partners bring their innovations to patients worldwide, creating unparalleled access and impact at the center of health. Recruitment scams are on the rise and the intent is to target individuals looking for employment opportunities. To protect yourself, we urge you to be vigilant and follow these guidelines. 1.) Research the Company: Thoroughly research any company before applying or sharing personal information, check their website, read reviews, and verify their legitimacy. 2.) Be Wary of Unrealistic Promises: Exercise caution If a job posting offers high salaries and minimal qualifications. Legitimate jobs will have realistic expectations and provide detailed job requirements. Jobs at Cencora can be found on Cencora.com/careers 3.) Guard Your Personal Information: Only share sensitive information after vetting the employer’s credibility. Avoid sharing your Social Security number, bank account details, or identification documents during the application process. Cencora does not request this information as part of the employment application. 4.) Avoid Upfront Payments: Legitimate employers do not require payment during the hiring process. Be suspicious if you are asked to pay for training materials, processing fees, or background checks before securing a job offer. Cencora will never ask you for payment information during the hiring or onboarding process. 5.) Verify Communication Channels: Scammers often use free email services or chat platforms without providing an official company contact information. Cencora recruiters will have an email address ending in @cencora.com, @alliance-healthcare.net, @alliance-healthcare.co.uk, alliance-healthcare.fr or alliance-healthcare.ro Remember to stay vigilant and informed about common scam tactics to reduce the risk of falling victim to fraudulent employment schemes. If you believe you have encountered a job scam posing as a Cencora opportunity, please report it immediately to: GlobalTalentAcquisition@Cencora.com

More at Cencora

Related open roles

View all roles