Senior Identity and Access Management Analyst
Manchester, GB
Fitch Group is currently seeking a Senior Identity and Access Management Analyst based out of our Manchester office.
As a leading, global financial information services provider, Fitch Group delivers vital credit and risk insights, robust data, and dynamic tools to champion more efficient, transparent financial markets. With over 100 years of experience and colleagues in over 30 countries, Fitch Group’s culture of credibility, independence, and transparency is embedded throughout its structure, which includes Fitch Ratings, one of the world’s top three credit ratings agencies, and Fitch Solutions, a leading provider of insights, data and analytics. With dual headquarters in London and New York, Fitch Group is owned by Hearst.
Fitch is seeking an Identity and Access Management (IAM) Analyst to support operational activities and governance of our Identity and Access Management program. The role focuses on control execution, audit readiness, and human/non-human identity management. The successful candidate will partner with auditors and stakeholders to demonstrate control effectiveness of Fitch’s IAM/PAM program, drive continuous operational improvements, leverage AI to enhance monitoring and evidence collection, and provide clear guidance to teams on platform features and good practice.
How You’ll Make an Impact:
- Provide first-line support for IAM/PAM requests, triage issues, resolve access and permissions problems, and escalate to senior team members or vendors as needed.
- Maintain and enhance IAM control libraries, SOPs, runbooks, and user guides; ensure documentation reflects control owners, frequencies, and evidence requirements.
- Monitor platform health, integrations, and performance; raise and track tickets with vendors or internal teams to timely resolution.
- Operate and administer the IAM program, covering account onboarding, entitlement management, password rotation, session management, approvals, break-glass, and attestations.
- Evidence IAM governance controls (Joiner–Mover–Leaver processes, RBAC, least privilege, separation of duties, access certifications), ensuring consistent documentation and traceability.
- Serve as a key liaison for audit engagements (e.g., SOX, Dodd Frank, internal audits), preparing evidence, conducting walkthroughs, producing reports, responding to queries, and tracking remediation to completion.
- Support onboarding of applications, systems, and service accounts into IAM/PAM, working with product owners, engineering/operations teams to ensure secure and governed integration.
- Generate metrics and dashboards on IAM/PAM operations, control performance, remediation status, audit readiness, and platform adoption.
- Instruct and educate teams and end users on Delinea features, privileged access practices, secrets management, and audit evidence expectations; deliver guidance through documentation, meetings, and enablement sessions.
- Apply AI-enabled tooling and techniques to improve monitoring, anomaly detection, evidence collection, and reporting within IAM/PAM operations, while adhering to governance and data protection standards.
- Manage non-human identities and secrets (service accounts, application credentials, API keys, certificates), including vaulting and lifecycle governance. Support distributed vaulting via Delinea external secrets and ensure secure, compliant configurations.
You May be a Good Fit if:
- 3+ years in IAM/PAM operations, IT controls, audit support, or related technical support in a complex environment.
- Direct operational experience with Delinea Secret Server (Delinea Platform) and SailPoint Identity Security Cloud is strongly preferred.
- Experience with audit or regulatory engagements (e.g., SOX, Dodd Frank, SOC2), including evidence preparation, presentation of controls, and remediation tracking.
- Strong governance orientation and practical understanding of IAM/PAM principles: JML, RBAC, least privilege, separation of duties, access certification, privileged session management, password rotation, and break-glass procedures.
- Familiarity with non-human identity and secrets management, including service account lifecycle, credential vaulting, time-bound access, attestations, and distributed vaulting via external secrets (e.g. AWS Secrets Manager).
- Competence in using AI-enabled tools or analytics to enhance operational monitoring, control evidence, and reporting; ability to evaluate AI outputs critically and maintain governance standards.
- Excellent written and verbal communication skills; ability to translate technical and control concepts into clear business language and to educate stakeholders effectively.
- Strong analytical skills, attention to detail, and time management; ability to shift fluidly between priorities and meet deadlines.
- Experience with collaboration and documentation tools such as Microsoft 365 (SharePoint Online, Teams) and Atlassian suite (Confluence, Jira).
- Working knowledge of directory services and identity platforms (e.g. Entra ID, Active Directory) and common enterprise environments (e.g., Linux, Windows Server).
What Would Make You Stand Out:
- Relevant security or audit certifications are beneficial (e.g., CISSP, CISM, CISA, CRISC, Security+, ISO 27001 lead auditor/implementer), but not mandatory.
- API/scripting skills can be helpful, but this role emphasizes governance and operations over programming.
Why Choose Fitch:
- Hybrid Work Environment: 2 days a week in office required based on your line of business and location
- A Culture of Learning & Mobility: Dedicated trainings, leadership development and mentorship programs designed to ensure that your time at Fitch will be a continuous learning opportunity
- Investing in Your Future: Retirement planning, financial wellness and tuition reimbursement programs that empower you to achieve your short and long-term goals
- Promoting Health & Wellness: Comprehensive healthcare offerings that prioritize a healthy body & mind
- Supportive Parenting Policies: Family-first policies, including a generous global parental leave plan, designed to help you balance career and family life effectively
- Dedication to Giving Back: Paid volunteer days and support for community engagement initiatives
For more information please visit our websites:
www.fitch.group | www.fitchratings.com | www.fitchsolutions.com
Fitch is committed to providing global securities markets with objective, timely, independent and forward-looking credit opinions. To protect Fitch’s credibility and reputation, our employees must take every precaution to avoid conflicts of interests or any appearance of a conflict of interest. Should you be successful in the recruitment process at Fitch Ratings you will be asked to declare any securities holdings and other potential conflicts prior to commencing employment. If you, or your immediate family, have any holdings that may conflict with your work responsibilities, you may be asked to divest yourself of them before beginning work.
Fitch is proud to be an Equal Opportunity and Affirmative Action Employer. We evaluate qualified applicants without regard to race, color, national origin, religion, sex, sexual orientation, gender identity, disability, protected veteran status, and other statuses protected by law.
| #LI-HYBRID #LI-KC1 |
|---|