Michigan IT Jobs

Mobile michigan-jobbank Logo

Job Information

Zoetis, Inc. IDAM Privileged and Conditional Access in Kalamazoo, Michigan

SUMMARY: Zoetis Information Technology Services team is seeking a motivated individual that has a broad information technology background to work within our Identity, Directory Access Management (IDAM) team. This position will be a hybrid engineering and systems analyst role, with a heavy emphasis on task management and coordinating activities with other teams. This resource will provide support and oversight of the internal IDAM disciplines of Privileged Access Management (PAM) and Conditional Access Management (CAM). The objective of this role is to improve and expand the methods by which Zoetis secures, controls, manages and monitors access to information resources. Primary focus will be on privileged access to critical resources by system administrators and others with elevated access. Secondary focus will be on providing SSO and controlling access to enterprise application using Microsoft Azure s conditional access framework. RESPONSIBILITIES: Ensure 24x7 operation of relevant privileged and conditional access platforms Set and enforce guidelines regarding least privilege, just in time access, password rotation, session management/recording, privileged access review, etc. Work directly with technologists and platform owners to integrate with PAM tools Design, implement, administer and troubleshoot conditional access policies based on the Microsoft Azure framework Manage global rollouts, platform architecture, scalability and performance Engage and drive vendor support Ensure compliance with relevant corporate policies and regulation Partner with internal teams and support vendors Manage SLAs EDUCATION: Bachelor s degree in Computer Science/ Information Systems/Business Administration or related field MS or advanced security/identity courses or other applicable certifications (CISSP, CCSP) desirable EXPERIENCE: Minimum 5+ years of experience working in the corporate IDAM space Experience implementing or supporting PAM solutions such as Thycotic Secret Server, Thycotic Privilege Manager, Remediant SecureONE, CyberArk, Centrify, BeyondTrust (Bomgar), etc. Expertise in platform security, administration and management of Microsoft Active Directory (especially service accounts) Microsoft Windows (Server and Desktop), Linux/UNIX, various database platforms (SQL Server, Oracle), VMWare, MS Azure, and other operating environments Strong understanding and experience with Microsoft Azure administration, SSO, Conditional Access and Data Synchronization Hands on, coding level experience with technologies including SAML, OAuth, PowerShell, SQL, SOAP, REST, Python, SSH Experience with troubleshooting and debugging tools such as Fiddler, tracert/traceroute, nslookup, SAML-tracer, Fiddler, Wireshark Experience with large scale ITS projects and how the various roles work together to ensure success Zoetis is committed to equal opportunity in the terms and conditions of employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, disability or veteran status or any other protected classification. Disabled individuals are given an equal opportunity to use our online application system. We offer reasonable accommodations as an alternative if requested by an individual with a disability. Please contact Zoetis Colleague Services at to request an accommodation. Zoetis also complies with all applicable national, state and local laws governing nondiscrimination in employment as well as employment eligibility verification requirements of the Immigration and Nationality Act. All applicants must possess or obtain authorization to work in the US for Zoetis. Zoetis retains sole and exclusive discretion to pursue sponsorship for the acquisition or maintenance of nonimmigrant status and employment eligibility, considering factors such as availability of qualified US workers. Individuals requiring sponsorship m

DirectEmployers