What are the responsibilities and job description for the GRC Business Analyst position at TPA technologies?
No C/C
Only W2 for this role
Only Local to Boston, MA
Not opened for vendors
GRC Business Analyst
Boston, MA 02116 – hybrid 3 days at the office
12 months contract
- Experience in Identity and access management - identity governance administration ( IGA) systems and processes.
- Experience with governance risk and compliance concepts ( risk assessments, remediation tracking, audit support).
- Looking for a mid-level level BA with 5 years of experience.
We are seeking a Governance Risk and Compliance (GRC) Business Analyst to assist the Information Security GRC department.
• Facilitate requirement sessions to elicit, document, and analyze business requirements and functional specifications, leveraging the information security platforms as required to support small and large projects.
• Translate complex Identity Access Management (IAM) concepts (authentication, provisioning, entitlements, role based access control, certifications) into business-friendly and concise requirements.
• Create and document detailed use cases, workflows, and business rules for the implementation of an enterprise-scale Identity Governance Administration (IGA) solution; Serve as the liaison between technical teams and non-technical business users.
• Leverage knowledge and experience with IAM programs and IGA processes including Joiner/Mover/Leaver (JML), access request and approval workflows, access reviews and recertifications and role engineering and role lifecycle management.
• Leverage knowledge and experience with risk assessments, findings, and tracking the remediation of open risk items by internal and external parties.
• Ensure IAM solutions align with governance, risk, and compliance drivers (e.g., policies, regulatory and legal requirements)
• Identify operational inefficiencies, conflicting business practices, and high-level integration issues, suggesting alternative solutions to cross-functional problems.
• Partner and support information security project teams, including outside vendors, with timely, regularly scheduled delivery of system configuration requirements, data analysis deliverables, appropriate follow-ups on open risk items and other tasks as assigned.
Qualifications
• Bachelor’s degree or equivalent experience required.
• Minimum 5 years professional experience in business analysis, GRC, risk assessments, systems implementation/enhancements, and support of IT systems required.
• Three years of experience in IAM working with enterprise-scale IGA platforms, PAM solutions and/or Access Management control implementations strongly preferred.
• Experience leading cross-functional projects.
• Strong knowledge of Agile, Waterfall, and other IT project management methodologies.
• Understanding of GRC, information security, IT and business concepts