Role Summary
The IAM Specialist (NHI & AI Security) will support Xerox's Identity and Access Management (IAM) program within the Information Security organization. This role is responsible for protecting Xerox's enterprise identity infrastructure by managing Identity Security, Non-Human Identity (NHI) governance, Active Directory and Microsoft Entra ID security posture, and identity risks introduced by AI platforms, automation pipelines, and cloud/SaaS integrations. The role partners closely with Security, Infrastructure, Engineering, DevOps, and business stakeholders to reduce identity-related attack surface and strengthen Xerox's Zero Trust security posture.
Functional / Technical Competencies
- Identity & Access Management (IAM)
- Non-Human Identity (NHI) Governance
- Active Directory Security
- Microsoft Entra ID (Azure AD)
- Privileged Identity Management (PIM)
- Conditional Access & Identity Protection
- Service Accounts & Service Principals Management
- PowerShell Scripting
- Python Scripting
- Power BI and Security Reporting
- SaaS Security Governance
- Cloud IAM (Azure, AWS, GCP)
- Identity Risk Assessment & Remediation
- AI & Agentic AI Security
- Identity Governance and Compliance Programs
- Data Analysis and Dashboard Development
- Zero Trust Security Principles
Key Responsibilities
- Manage and support Xerox's Identity Security and NHI governance programs.
- Discover, assess, prioritize, and remediate identity-related vulnerabilities and risks.
- Govern service accounts, service principals, managed identities, API keys, access tokens, and machine identities.
- Monitor and improve Active Directory and Microsoft Entra ID security posture.
- Support Privileged Identity Management (PIM), Conditional Access, Identity Protection, and access review processes.
- Develop and maintain security dashboards, reports, KPIs, and risk metrics.
- Drive remediation initiatives and partner with stakeholders to close identified security gaps.
- Support governance of AI, automation, and Agentic AI workloads from an identity security perspective.
- Analyze security data and convert findings into actionable recommendations.
- Maintain risk registers and provide regular leadership reporting.
- Support audit, compliance, and security assessment activities.
- Collaborate with Infrastructure, Engineering, DevOps, and Security teams on identity security initiatives.
Key Outputs / Tangible Results
- Reduced enterprise identity attack surface.
- Improved NHI governance and credential hygiene.
- Increased remediation of identity-related security risks.
- Accurate security reporting and executive dashboards.
- Improved Active Directory and Entra ID security posture.
- Compliance with identity security standards and policies.
- Successful implementation of identity governance initiatives.
- Enhanced visibility into enterprise identity risks.
- Continuous improvement of Zero Trust security controls.
Organizational Strategies & Objectives
- Support Xerox's Identity & Access Management strategy.
- Strengthen enterprise Identity Security and Zero Trust initiatives.
- Reduce organizational security risk and attack surface.
- Improve governance of Non-Human Identities and AI-driven workloads.
- Support compliance, audit readiness, and risk management objectives.
- Enhance visibility, reporting, and leadership decision-making through security analytics.
- Promote secure adoption of cloud, SaaS, automation, and AI technologies.
Relevant Credentials
- Bachelor's Degree in Computer Science, Information Systems, Information Security, or related discipline.
- SC-300 Microsoft Identity and Access Administrator (preferred)
- AZ-500 Microsoft Azure Security Engineer (preferred)
- SC-200 Microsoft Security Operations Analyst (preferred)
- CISSP (preferred)
- CCSP (preferred)
- CIAM or equivalent Identity Security certification (preferred)
Must Haves
- Minimum 5 years of overall IT experience.
- Minimum 3 years of experience in Identity Security, NHI Governance, IAM, or related cybersecurity functions.
- Strong experience with Active Directory and Microsoft Entra ID.
- Experience managing identity-related risks, vulnerabilities, and remediation activities.
- Experience with security reporting, dashboards, and data analysis.
- PowerShell and/or Python scripting capabilities.
- Strong stakeholder management and cross-functional collaboration skills.
- Excellent verbal and written communication skills, with the ability to communicate security concepts to technical and business audiences.
- Experience supporting enterprise security, governance, or compliance initiatives.
Nice to Haves
- Experience with Non-Human Identity (NHI) platforms and governance programs.
- Exposure to Agentic AI, automation security, or machine identity security.
- Experience with Azure, AWS, and GCP IAM controls.
- Experience with Power BI or advanced reporting tools.
- Knowledge of Zero Trust, SASE, and identity-centric security frameworks.
- Experience with audit and compliance frameworks (ISO 27001, SOC 2, NIST CSF, CIS Controls, SOX).
- Knowledge of secrets management platforms such as Azure Key Vault, AWS Secrets Manager, or Delinea Secret Server.
Role Considerations
- Location: Bangalore, India
- Work Setup: Hybrid (final onsite requirements to be confirmed with local HR)
- Work Schedule: U.S. Eastern Time business hours
- Travel Requirement: None
- Training: Virtual onboarding and training
- Interview Process: Three-stage virtual interview process with camera-on requirement
- Enterprise Scope: Supports global Xerox operations across all regions
- Stakeholder Exposure: High interaction with Security, Infrastructure, Engineering, DevOps, and business leadership teams
#LI-HYBRID
#LI-NR1