Identity & Access Management Specialist
$140k - $160kMilbank, Tweed, Hadley & McCloy LLP
Overview The Identity Management Specialist is responsible for designing, implementing, and operating the firm’s identity and access management (IAM) program across on-premises and cloud environments — with a strong emphasis on Microsoft Entra ID and hybrid identity architectures. This role administers the full identity lifecycle — joiner, mover, leaver (JML) - enforces least-privilege access, automates provisioning and governance, and ensures that every user, service account, and privileged identity is provisioned, reviewed, and deprovisioned in a controlled, auditable manner across both on-premises Active Directory and the Entra ID cloud. Responsibilities Identity Lifecycle Management Operate and enhance the JML (Joiner / Mover / Leaver) process across Active Directory, Entra ID, Exchange, M365, and downstream business applications. Automate provisioning, role changes, and deprovisioning through identity management solutions (One Identity Manager, ServiceNow, ManageEngine ADManager Plus, Cayosoft Administrator or others). Manage Active Directory and Entra ID objects (users, groups, OUs, contacts, mail-enabled objects) at scale using identity management solutions. Hybrid Identity & Directory Operations Design, operate, and troubleshoot hybrid identity across on-premises Active Directory and Microsoft Entra ID — including Entra Connect / Connect Sync / Cloud Sync, password hash sync (PHS), pass-through authentication (PTA), federation (AD FS), and seamless SSO. Administer multi-domain / multi-forest Active Directory, Entra ID tenants, and B2B/B2C scenarios. Manage Conditional Access, Entra ID Protection, Privileged Identity Management (PIM), Access Reviews, and Entra ID Governance. Maintain hybrid object flow, attribute mapping, filtering, and writeback (group, device, password writeback). Access Governance & Reviews Design and execute periodic access certification campaigns (One Identity Manager / ServiceNow Access Reviews / Entra ID Access Reviews) for high-risk applications, shared mailboxes, distribution lists, and privileged groups. Maintain role-based access control (RBAC) models, entitlement catalogs, and segregation of duties (SoD) policies. Investigate and remediate orphaned accounts, stale entitlements, and policy violations. Service Request & Workflow Automation Own the IAM request catalog in ServiceNow — new accounts, group membership changes, application access, privileged access, and terminations. Build and maintain ServiceNow workflows, IntegrationHub / Flow Designer flows, and approval routings that connect HRIS, ITSM, and identity systems. Implement self-service password reset, MFA enrollment, and account unlock through Entra ID SSPR. Privileged Account Operations Administer privileged and service accounts across AD and Entra ID; integrate with PAM solutions where applicable. Use privilege accounts password management solution for delegated administration, change auditing, AD recovery, and Entra ID tenant management. Monitoring, Compliance & Reporting Monitor identity-related alerts, sign-in risk events, and Conditional Access policy enforcement. Produce metrics and reports for audit, risk, and leadership — provisioning SLAs, access review completion, dormant accounts, privileged access usage. Support compliance evidence collection for SOC 2, ISO 27001, NYDFS Part 500, GDPR, and client security questionnaires. Collaboration & Documentation Partner with HR, Security, Infrastructure, and Application owners on onboarding/offboarding and role design. Maintain runbooks, SOPs, integration designs, and architecture diagrams for the IAM platform. Provide L3 support and mentor L1/L2 service desk staff on identity issues. Compensation : -The anticipated base salary range offered for this role will be between $140,000 to $160,000 and represents the firm’s good faith and reasonable estimate of the range of possible base compensation. Actual base compensation will be dependent upon several factors, including but not limited to the candidate’s relevant experience, performance, qualifications, degrees, and location, well as the needs of the firm. Qualifications Bachelor’s degree in Computer Science, Information Systems, or related field (equivalent experience accepted). 5+ years of hands‑on Identity and Access Management experience across hybrid Microsoft environments (Active Directory + Entra ID / Azure AD). Strong working knowledge of Microsoft Entra ID (Azure AD) and hybrid identity models — including Entra Connect / Connect Sync / Cloud Sync, password hash sync, pass‑through authentication, federation (AD FS), seamless SSO, Conditional Access, MFA, Entra ID Protection, Privileged Identity Management (PIM), Access Reviews, Entra ID Governance, and Enterprise Application SSO/provisioning. Deep, demonstrable experience with the following IAM/IGA toolset: One Identity Manager (OneIM) — connectors, synchronization projects, attestation/access reviews, custom workflows, IT Shop, role and entitlement modeling, and PowerShell/SQL customization. ServiceNow — IAM service catalog, workflow / Flow Designer, IntegrationHub, ITSM integration with identity systems, and ideally ServiceNow Identity Governance & Administration (SN-IGA) or HR Service Delivery integrations. ManageEngine ADManager Plus — bulk AD/Entra ID administration, automation policies, custom reports, self‑service password reset/MFA, and delegation. Cayosoft Administrator and Cayosoft Guardian — hybrid AD/Entra ID administration, change monitoring, AD object recovery, and tenant management. Solid understanding of Active Directory, Group Policy, Kerberos, LDAP, SAML, OAuth 2.0, OIDC, and SCIM. Scripting and automation proficiency in PowerShell (AD, Exchange Online, Microsoft Graph, Entra ID / MSOnline / AzureAD modules); familiarity with REST APIs and JSON. Solid understanding of RBAC, ABAC, least privilege, segregation of duties, and identity lifecycle controls. Preferred Qualifications Experience integrating IAM with HRIS platforms (Workday) as authoritative source for JML. Exposure to additional IAM/IGA/PAM platforms (SailPoint IdentityIQ / OneIdentity. Saviynt, CyberArk, BeyondTrust, Delinea, Microsoft Entra ID Governance). Experience with SaaS provisioning via SCIM and Entra ID Enterprise Applications. Industry certifications: SC-300 (Microsoft Identity and Access Administrator) , One Identity Manager certifications, ServiceNow CIS-ITSM / CIS-SecOps, CISSP, CIAM, or equivalent. Experience in a law firm, financial services, or other highly regulated environment. #J-18808-Ljbffr Milbank, Tweed, Hadley & McCloy LLP
$121k - $172.5k
...expertise fuels innovation, agility, and growth — driving the company’s success. IAM Developer – Senior, Hands‑On Engineer The Identity & Access Management (IAM) Developer is a senior, hands‑on engineering role responsible for designing, developing, and supporting enterprise...SuggestedLocal area- ...involves installing, integrating, and maintaining SailPoint IdentityIQ while managing project scope and communicating with clients. The ideal candidate has 1-2+ years of experience in Identity and Access Management and proficiency in relevant technologies. Travel may be...Suggested
$90k - $115k
...investment firm in New York is seeking an Identity & Privileged Governance Analyst to join... ...supporting identity and privileged access governance and remediation activities, monitoring... ..., and career development opportunities. #J-18808-Ljbffr Point72 Asset Management, L.PSuggested$134.71k - $268.99k
...experiences, and have the flexibility and access to constantly find new areas of... ...KPMG is currently seeking a Lead Specialist, ServiceNow, E&T to join our Managed Services practice.... ..., sex, sexual orientation, gender identity, national origin, citizenship status...SuggestedFull timeH1bLocal area$114.1k - $268.18k
...experiences, and have the flexibility and access to constantly find new areas of... ...KPMG is currently seeking a Lead Specialist, IAM, Saviynt to join our Managed Services practice.... ...IAM architecture and strategy for Identity Governance and Privileged Access Management...SuggestedFull timeH1bLocal area$19.98 per hour
...serve. As a Security Officer Part Time Access Specialist in Bear, DE , you will serve and... ...dynamic government location where you will manage access control, monitor entry points, and... ...religion, sex, sexual orientation, gender identity, national origin, genetic information,...Part timeWork at officeLocal areaShift work$18.92 - $23.46 per hour
...authorizations or other issues that delay service to ensure patient access and to avoid delays that may interrupt therapy. Communicate... ..., national origin, disability, genetic information, gender identity, sexual orientation, veterans’ status, or any other basis protected...Full timeContract workTemporary workLocal areaRemote workFlexible hours$93k - $116k
...Role as a Labor Optimization Specialist: The Labor & Optimization... ...optimization KPIs. Support change management by reinforcing consistent... ..., crafting and marketing of accessible luxury jewelry made from... ...vacancies to refrain from adding identity‑related elements such as a...Temporary workSeasonal workWork at officeWorldwideRelocation- ...Leadership through Safety Incident Management, Safety Management System,... ..., coach/develop the Safety Specialists and lead safety committee... ...Word, Outlook, Excel, Access, Power Point, SAP EH&S and SAP... ...sexual orientation, gender identity, transgender status, physical...Work experience placementLocal areaFlexible hoursNight shift
$100k - $115k
Job Summary The Change Management Specialist drives adoption, alignment, and accountability across... ...religion, sex, sexual orientation, gender identity, gender expression, age, national... ...or limited in your ability to use or access our career site as a result of your disability...Full time$70k
...’ll Make: The Process Safety Specialist provides technical services and... .... These benefits include access to competitive health care and... ...to: Process Safety Consulting Manager Work Model: Remote Work Location... ..., sexual orientation, gender identity or expression, pregnancy, age...Full timeTemporary workRemote workWork from homeVisa sponsorshipLong distanceFlexible hoursShift work$124.74k - $254.5k
...experiences, and have the flexibility and access to constantly find new areas of... ...is currently seeking a Lead Specialist, AI Solution Architect to join our KPMG Managed Services practice.... ...sex, sexual orientation, gender identity, national origin, citizenship status...Full timeH1bLocal area$32.39 - $36.04 per hour
...Preferred Healthcare/Medical - Admissions as well as Patient Access experience in a hospital and/or ambulatory care setting or... ...military status, marital status, sex, sexual orientation, gender identity or expression, or any other basis prohibited by federal, state,...Full timeLocal areaShift work$85k
Specialist (Fleet Management System) Transportation Operations Job Info Job Identification 9083 Job Category... ...software, including user account and access management. Monitor system... ...age, national origin, gender, gender identity, gender expression, genetic information...Full timePart timeWork experience placementWork at officeFlexible hoursShift workNight shift- Intelligence Management Specialist - Senior Evans & Chambers Technology is seeking a highly Intelligence... ...-domain solutions, secure network access, data management, systems integration,... ...status, sexual orientation, gender identity or expression, genetic information, marital...
- Library Specialist for Access & Circulation, Evening The Library Specialist for Access and Circulation... ...students of historically marginalized identities; accessibility; and a welcoming... ...between Barnard students and the library: Manage student staff, including recruiting,...Work experience placementSummer workSummer holidayWork at officeLocal areaMonday to FridayShift workAfternoon shift
$61.5k - $112.8k
...Trading Team works with Account Management and Business Development to... ...of a Trading Specialist are to provide detailed performance... ...sexual orientation, gender identity or expression, veteran status... ...accommodation or discuss any accessibility needs you may require to access...Full timeTemporary workLocal area- ...through revolutionary sustainable materials management solutions that reduce, reuse, recycle... ...origin, sexual orientation, gender identity, disability (including perceived disability... ...are unable or limited in your ability to access job openings or apply for a job on this...
$50k - $60k
...billion in digital media under management and more than 1,200... ...a Workplace Experience Sr. Specialist based at our New York hub, you... ...including seating, food & beverage, accessibility, safety, and... ...sexual orientation, gender identity or expression, religion, national...Contract workWork at officeRemote work- ...Specialty Therapy clinics offer people with I/DD access to high-quality primary care and... ...opportunity to learn how health information is managed across the various disciplines and how... ..., sex, sexual orientation, gender identity, national origin, age, disability, or status...InternshipWork at office
- Position Overview The Prescription Access Specialist is responsible for driving engagement with clinicians and office staff to expand GoodRx... ...to race, color, religion,sex, sexual orientation, gender identity, national origin, disability or veteran status. #J-18808-Ljbffr...
$10 - $20 per hour
...of Trust" for global digital identity. You will join an elite freelance... ..., you ensure that digital access remains secure for everyone.... ...Collaborate with a network of specialists across 20+ domains and 500+... ...dialects. Flexible Engagement: Manage your own schedule while...Hourly payFreelanceRemote workFlexible hours- A healthcare provider in New York seeks a Call Center Representative to manage inbound and outbound patient communications, ensuring timely access to care. Responsibilities include scheduling appointments and maintaining patient confidentiality. Candidates should have...
$35.7 - $39.72 per hour
...the future. Job Responsibilities Manage escalated insurance and financial clearance... ...Serve as a lead resource for Patient Access Specialist I and II staff, providing mentorship,... ...status, sex, sexual orientation, gender identity or expression, or any other basis...Full timeLocal areaShift work- ...Technologies is a global IT managed services firm that partners with... ...The Technical Project Specialist L1 is a critical role on our... ...security workstreams (e.g., access control, video, alarms, monitoring... ...color, religion, gender, gender identity, marital status, age,...Temporary workWork at officeLocal areaWorldwide
- ...GHG emission through better management of its forest and land use,... ...and monitoring system that is accessible to all land use stakeholders... ...The role of the Livelihood Specialist is to provide technical and... ...sexual orientation, gender identity, parental status, protected...Full timeContract workTemporary workFixed term contractWork experience placementLocal areaRemote workWorldwideFlexible hours
- Systems Specialist Purpose: Improve lives through accessible information by scaling the tech that powers how Winnowers... ...accessible. We blend content management services, digital accessibility,... ...and Spanish. Comfortable across identity/SSO, device management, SaaS administration...Full timeRemote work
$18.65 - $19.9 per hour
...technology-enabled revenue cycle management solutions for health systems,... ...Financial Counseling Specialist performs the task of benefit... ...liability.* Works various patient access, insurance eligibility, follow... ...orientation, gender, gender identity, religion, national origin, age...Local areaRemote workNight shiftWeekend work$98k - $133.93k
...Technology is seeking a qualified candidate for the role of Identity Platform Administrator. This position involves maintaining and optimizing the Okta platform, managing account lifecycle, and ensuring compliance with access governance. Candidates should hold a Bachelor’s...- Specialist: Quality Assurance and Training - Patient Access page is loaded## Specialist: Quality Assurance and Training -... ...resolutions. Provide statistics to management. Responsible for presenting... ...sexual orientation, gender, gender identity, marital status, pregnancy,...Daily paidFull timeTemporary workPart timeWork at officeAll shiftsFlexible hoursRotating shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Identity & Access Management Specialist. Be the first to apply!
- live chat specialist New York, NY
- mental health specialist New York, NY
- cash reconciliation specialist New York, NY
- instructional technology specialist New York, NY
- channel specialist New York, NY
- privacy specialist New York, NY
- assessment specialist New York, NY
- asset protection specialist New York, NY
- sourcing specialist New York, NY
- program specialist New York, NY


