Identity & Access Management (IAM) Governance Executive Job at Bank of America, Washington DC

d2U2a1FaeTRRRlplTkxmNFZ6YzI3SGRy
  • Bank of America
  • Washington DC

Job Description

Identity & Access Management (IAM) Governance Executive

Boston, Massachusetts;Washington, District of Columbia

To proceed with your application, you must be at least 18 years of age.

Acknowledge (

Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.

Acknowledge (

Refer a friend

To proceed with your application, you must be at least 18 years of age.

Acknowledge (

Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.

Acknowledge (

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.

Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.

Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.

At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

Summary:

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the bank's Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates a global security operations center that monitors, detects and responds to cybersecurity incidents. Within GIS,Identity and Access Management (IAM) is a security discipline that enables the right individuals to access the right resources at the right times and in the right context.

IAM addresses the mission-critical need to ensure appropriate access to the resources across increasingly heterogeneous technology environments, and to meet increasingly rigorous compliance requirements

Role Description:

The Senior Vice President executive of Identity & Access Management (IAM) Governance serves as the enterprise authority for identity governance strategy, policy, and risk management within Global Information Security. This leader defines and drives the IAM governance vision across the bank, ensuring that identity controls, technologies, and processes align with globally recognized frameworks, regulatory expectations, and the bank's strategic objectives.

The role oversees enterprise-wide, global, IAM governance, including policy, standards, lifecycle controls, access certifications, privileged access governance, authentication, and identity risk metrics, anchored to leading industry standards: NIST SP 800-63-4 Digital Identity Guidelines, NIST SP 800-53 Access Control & Identification/Authentication controls, ISO/IEC 27001:2022 Annex A 5.16 Identity Management, and FFIEC Authentication & Access Management guidance for financial institutions.

As the global IAM Governanceleader, you will shape the long-term direction of the IAM technology ecosystem, including Identity Governance & Administration (IGA), federation/SSO/MFA, privileged access management (PAM), secrets vaulting, and directory services, and ensure robust auditability, regulatory alignment, and measurable risk reduction across all identity domains.

Required Skillset:

Expertise in IAM Governance & Control Framework

-Deep command of identity standards and regulatory expectations including NIST 800-63-4 (digital identity assurance), NIST 800-53 AC/IA controls, and ISO 27001 Annex A 5.16 identity lifecycle requirements.

-Ability to translate these frameworks into enterprise policy, standards, and measurable control objectives.

-Participate in industry forums and represent the bank as needed, to ensure evolution of IAM governance in alignment with peer banks.

Identity Technologies & Architecture Mastery

-Extensive experience with enterprise IGA platforms (e.g., SailPoint, Saviynt), federation/SSO/MFA (OIDC, SAML), directory services, and privileged access technologies-consistent with senior-level role expectations in industry postings.

Privileged Access & Zero Standing Privilege (ZSP)

-Strong understanding of Just-in-Time (JIT) privileged access models and risk-based reduction of standing admin privileges aligned with modern PAM best practices.

Regulatory & Audit Alignment for Financial Services

-Ability to interpret, operationalize, and evidence compliance with FFIEC Authentication & Access Guidance as well as global regulatory expectations for layered security, MFA, and monitoring expectations.

Executive Communication & Governance Leadership

-Exceptional ability to articulate technical identity risks, residual exposure, and compliance posture to senior business leaders, regulators, Internal Audit, Compliance, and Operational Risk, and relate the same in governance routines.

Enterprise Metrics & Identity Risk Insight

-Skilled in designing and governing IAM KRIs/KPIs (e.g., certification quality, toxic entitlement reduction, IGA onboarding velocity, JIT/ZSP adoption), as emphasized in senior IGA director roles.

Cross-Functional Influence & Three-Lines-of-Defense Partnership

-Ability to influence technology executives, CIO organizations, BISOs, and control partners to drive identity risk reduction and consistent taxonomy and control adoption.

Required Qualifications:

-10+ years of leadership experience in IAM, information security governance, risk management, or related executive technology functions within large-scale, regulated enterprises, aligned with senior and executive-level identity roles.

-Proven experience leading large global teams, managing executive-level governance forums, and directing complex IAM transformation initiatives.

-Demonstrated success overseeing and continually improving IGA, federation, privileged access, secrets management, and identity lifecycle modernization programs across hybrid environments.

-Experience preparing for and responding to regulatory exams and internal/external audits, ensuring alignment to FFIEC requirements and NIST/ISO frameworks.

-Track record driving adoption of modern authentication and identity proofing approaches aligned with NIST SP 800-63-4.

-Ability to reduce privileged access risk through JIT/ZSP and PAM modernization initiatives in alignment with IAM policy requirements.

-Professional certifications preferred: CISSP, CISM, CISA, CGEIT, and IAM platform-specific certifications.

Shift:

1st shift (United States of America)

Hours Per Week:

40

Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.

View your "Know your Rights ( " poster.

View the LA County Fair Chance Ordinance ( .

Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.

Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.

This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.

Job Tags

Work at office, Shift work, Day shift

Similar Jobs

Uncommon Schools

High School Science Teacher Job at Uncommon Schools

 ...difference! Job Description Uncommon High School Science teachers work collaboratively across the network to prepare all students...  ...includes, but is not limited to, analysis of Biology, Chemistry, Physics, and Environmental Sciences that prepares students for Advanced... 

FocusGroupPanel

Remote Entry-Level Data Entry Clerk | Flexible Hours Job at FocusGroupPanel

A leading remote work platform is seeking a Data Entry Clerk for an entry-level remote position in Carrollton, Georgia. This role offers maximum flexibility for individuals looking to earn extra income. You will work from the comfort of your home performing data entry... 

Nothing Bundt Cakes

Shift Lead Job at Nothing Bundt Cakes

 ...The Nothing Bundt Cakes (NbC) Shift Leader works alongside the Assistant Bakery Manager and Bakery Manager and team members to create...  ...retail, restaurant or food service environment, preferably in a lead role with progressive managerial responsibilities.Demonstrated... 

PrideStaff

Forklift Operator Job at PrideStaff

 ...~ Determines when repairs are needed on equipment. ~ Loads and unloads product onto and from tractor-trailers, rail cars, and cargo ships. ~ Quality assurance (QA) duties, including reporting product damage and shortages. ~ Documents arrival, departure, and movement... 

Catholic Charities

Case Manager Job at Catholic Charities

 ...unaccompanied minors, individuals with mental health issues, and in cases involving crimmigration. Esperanza is one of the few programs...  .... More information can be found about Esperanza at The Case Manager works under the direct supervision of a Case Management...