Identity and Access Management Analyst
Taguig, Metro Manila, Philippines
Identity and Access Management Analyst
- 202505983
- Taguig, Metro Manila, Philippines
- Full time
Description
Key Responsibilities:
- Monitor, investigate, and respond to access-related incidents and anomalies.
- Support and maintain IAM tools, including Azure AD, Microsoft Entra ID, and PIM (Privileged Identity Management).
- Perform regular audits of user roles and access permissions across subscriptions and AD groups.
- Execute and support onboarding/offboarding processes to enforce least privilege access principles.
- Provide first-level support related to IAM operations.
- Collaborate with cloud and security teams to review role assignments, service principals, and RBAC policies.
- Maintain compliance documentation related to access control changes and audit responses.
- Contribute to continuous improvement initiatives in IAM governance and automation.
- Document and maintain runbooks and process flows for IAM tasks and escalation procedures.
- Participate in incident reviews and support investigations related to identity threats or misconfigurations.
Qualifications
Qualifications:
Essential
- Solid understanding of identity management principles and IAM lifecycle operations.
- Experience with Microsoft Entra ID/Azure AD, including RBAC and PIM role activations.
- Familiarity with AuditLogs and interpreting access activity via KQL queries.
- Strong troubleshooting and analytical skills with attention to data accuracy.
- Experience with support tools such as ServiceNow, Log Analytics, and Azure Monitor.
- Basic scripting knowledge (PowerShell or KQL) for automation and reporting.
- Understanding of compliance frameworks such as ISO, SOC, or GDPR.
- Strong written and verbal English communication skills.
- Ability to work in a rotational shift environment and collaborate across time zones.
Desirable
- Certification in Azure Security Engineer Associate or related Microsoft certifications.
- Experience in Entra ID role design and JIT (Just-In-Time) access governance.
- Familiarity with enterprise IAM platforms (SailPoint, Okta, etc.)
- Knowledge of ITIL practices, especially in incident and change management.
- Experience in working with multi-tenant environments or hybrid cloud setups.
WTW is an Equal Opportunity Employer
Other People Viewed
Unsolicited Contact
Any unsolicited resumes/candidate profiles submitted through our web site or to personal e-mail accounts of employees of Willis Towers Watson are considered property of Willis Towers Watson and are not subject to payment of agency fees. In order to be an authorized Recruitment Agency/Search Firm for Willis Towers Watson, any such agency must have an existing formal written agreement signed by an authorized Willis Towers Watson recruiter and an active working relationship with the organization. Resumes must be submitted according to our candidate submission process, which includes being actively engaged on the particular search. Likewise, for our authorized Recruitment Agencies/Search Firms, if the candidate submission process is not followed, no agency fees will be paid by Willis Towers Watson. Willis Towers Watson is an equal opportunity employer. If you would like to have your contact information saved for future consideration, please email: Agency.inquiries@willistowerswatson.com.
Our Offices
Our colleagues serve more than 140 countries and markets around the world. This gives a global dimension to everything we do and creates lots of exciting opportunities for you to collaborate and grow. Explore the map below to see where you career could take you.