Job Summary
Manage the Identity and Access Management ( IAM ) program for all information technology systems and networks, supporting Radford University’s day to day operations. Plan, operate, maintain, update, and modernize the IAM system and Multi-Factor Authentication solutions operated by Radford University. Organize and facilitate IAM system and Multi-Factor Authentication ( MFA ) integration with the appropriate entities operating and maintaining the Single-Sign-On ( SSO ) and directory services across all IT systems and networks. Map the system and data flows of the comprehensive IAM system and leverage this information to inform leadership of cyber security shortfalls and to efficiently plan for system upgrades and patching. Effectively and efficiently responds to all identity and access management incidents and requests. Complete and review internal reviews and audits of the university’s third-party vendor System and Organization Controls 2 (SOC2) and Higher Education Cloud Vendor Assessment Tool ( HECVAT ) documentation and compliance. Support the ISO in monitoring security logs, responding to potential threats, and performing internal reviews to evaluate the performance of the university’s security program. Support the ISO in gathering detailed technical information and data to create Information Assurance and Cyber Security policies and procedures. Support and maintain the security awareness program.
Required Qualifications
Knowledge of IAM , SSO , MFA systems and best practices. Knowledge of LINUX and Windows Servers. Knowledge of web, application, and database tiers and security considerations for each layer. Knowledge of multi-platform environments and security considerations for each platform. Ability to organize, plan and coordinate activities designed to mitigate unauthorized activity; skills to resolve complex problems, and carry out follow-up procedures. An understanding of the security issues involved in maintaining and safeguarding institutional data. Excellent communication skills.
Preferred Qualifications
Security certification such as Security +, CISSP , or GIAC are desired. Experience administering and monitoring enterprise IAM , SSO , and MFA solutions. Experience with Tenable Nessus vulnerability scanner desired. Experience creating process diagrams and technical documentation. Experience with system integration, system administration, and computer security. Knowledge of Identity and Access Management ( IAM ) and account management principles. Experience with NIST 800-171 and ISO 270001 Information Assurance policies and procedures. Familiar with Center for Internet Security ( CIS )/Security Technical Implementation Guide ( STIG ) Benchmarks.