Sr Manager, Security Development & Engineering Senior
Your Opportunity
At Schwab, you’re empowered to make an impact on your career. Here, innovative thought meets creative problem solving, helping us “challenge the status quo” and transform the finance industry together.
Duties: Analyze the business processes, functions, application access and entitlements, as well as access patterns to define the roles. Use Alteryx to create data analytics driven automation, discover role access patterns across the entire enterprise, and improve manual processes. Prepare digestible business roles from analytics output for business review. Work with business owners and entitlement owners to review and finalize business roles. Manage roles following the role life-cycle governance processes including creation, approval, update, deletion, and access certification. Implement the defined roles into IAM platform Oracle identity manager and define the role-based access control. Deploy the automated and business roles into Oracle identity governance by creating the required workflows, prepare the deployment instructions and enable the automation. Configure the automated roles for automated certification process. Generate the confidence scores for all the entitlement assignments across organization and populate them to Oracle identity governance tool to enable the certifiers to make a data driven decision to approve or revoke the access. Manage user provisioning, de-provisioning, role management and access policies. Customize and extend OIM workflows, connectors, and adapters to integrate with various applications and directories. Implement the web services in a service-oriented architecture. Monitor and audit identity management activities to detect and mitigate security risks. Design and implement the IAM solutions including but not limited to provisioning workflows, privileged accounts, access certification, approval workflows and orphan account management which requires backend coding in Java, Java EE, JSF, Spring MVC, Hibernate, REST and SCIM APIs. Perform code reviews for vulnerabilities using Veracode. Derive an access governance program using Oracle identity governance suite and Oracle SOA suite to meet security and compliance standards of SOX, PCI to increase security posture. Migrate the existing role mining solution from Oracle identity governance to SailPoint IIQ. Use SailPoint IIQ to perform role Mining, entitlement discovery and role consolidation. Define and collect source access data, ingest data and run machine learning analytics using SailPoint IIQ to come up with recommended business roles. Maintain and manage the SailPoint AI/ML SaaS Product. Prepare digestible business roles from analytics output of AI/ML product of SailPoint and implement defined roles into SailPoint IIQ. Implement and manage the SOD (segregation of duties) solution, birthright roles and job transfer certifications. Use Alteryx to clean, transform and analyze large manage datasets from different sources. Build predictive models. Create repeatable workflows. Provide the required evidence to the audit on demand. Manage and administer the UiPath orchestrator. Work with GitHub to maintain the codebase of the RAM automation solution. Use Microsoft Power Automate to build surveys and automated processes.
What you have
Job Requirements: Requires Bachelor's in Engineering (any) or related field and 5 years (60 months) of progressive, post-Bachelor’s related experience.. Requires 5 years (60 months) of progressive, post-Bachelor’s related experience in each of the following skills: Oracle Identity Governance; Java; J2EE; SQL; PL/SQl; Unix; Weblogic Server; REST/SCIM API; Oracle Database; JSF; Spring MVC; Hibernate.
We offer competitive pay and benefits. Starting compensation depends on related experience. Annual bonus and other eligible earnings are not included in the ranges above. Benefits include: 401(k) w/ company match; employee stock purchase plan; paid vacation, volunteering, 28-day sabbatical after every 5 years of service for eligible positions; paid parental leave and family building benefits; tuition reimbursement; health, dental, and vision insurance; hybrid/remote work schedule available for eligible positions (subject to Schwab’s internal approach to workplace flexibility).
What’s in it for you
At Schwab, you’re empowered to shape your future. We champion your growth through meaningful work, continuous learning, and a culture of trust and collaboration—so you can build the skills to make a lasting impact. Our Hybrid Work and Flexibility approach balances our ongoing commitment to workplace flexibility, serving our clients, and our strong belief in the value of being together in person on a regular basis.
We offer a competitive benefits package that takes care of the whole you – both today and in the future:
- 401(k) with company match and Employee stock purchase plan
- Paid time for vacation, volunteering, and 28-day sabbatical after every 5 years of service for eligible positions
- Paid parental leave and family building benefits
- Tuition reimbursement
- Health, dental, and vision insurance