Sailpoint Auditor || 3-5Yrs || WFO || Gurgaon
- Full-time
Company Description
WNS, part of Capgemini, is an Agentic AI-powered leader in intelligent operations and transformation, serving more than 700 clients across 10 industries, including Banking and Financial Services, Healthcare, Insurance, Shipping and Logistics, and Travel and Hospitality. We bring together deep domain excellence – WNS’ core differentiator – with AI-powered platforms and analytics to help businesses innovate, scale, adapt and build resilience in a world defined by disruption.Our purpose is clear: to enable lasting business value by designing intelligent, human-led solutions that deliver sustainable outcomes and a differentiated impact. With three global headquarters across four continents, operations in 13 countries, 65 delivery centers and more than 66,000 employees, WNS combines scale, expertise and execution to create meaningful, measurable impact.
Job Description
Job Title: IAM Auditor (Identity & Access Management)
Experience: 3-5 Years
Location: Gurgaon
Job Summary
We are seeking a detail-oriented and experienced IAM Auditor to support Identity Governance and Administration (IGA) activities with a strong focus on access recertification programs, SailPoint campaigns, and Active Directory access reviews. The ideal candidate will be responsible for executing periodic access certification campaigns, validating user access rights, identifying segregation of duties (SoD) concerns, and ensuring compliance with organizational and regulatory requirements.
The candidate should possess strong analytical skills, hands-on experience with SailPoint IdentityIQ/IdentityNow, and a solid understanding of Identity and Access Management controls, governance processes, and audit requirements.
Key Responsibilities
Access Governance & Recertification
- Manage and execute periodic user access recertification campaigns across enterprise applications.
- Coordinate with application owners, managers, and business stakeholders to review and certify user access.
- Monitor certification progress and ensure completion within defined timelines.
- Analyze recertification results and drive remediation of inappropriate, excessive, or dormant access.
- Generate certification metrics and governance reports for management review.
SailPoint Administration & Campaign Management
- Configure, launch, monitor, and close SailPoint certification campaigns.
- Troubleshoot campaign-related issues and coordinate with SailPoint administrators for remediation.
- Review certification outcomes and ensure accurate implementation of revocation actions.
- Validate role assignments and entitlement mappings within SailPoint.
- Support enhancements and optimization of certification workflows.
Active Directory Access Reviews
- Conduct Active Directory (AD) access recertifications across users, groups, and privileged accounts.
- Review AD security groups and identify excessive or unauthorized access.
- Validate joiner, mover, and leaver (JML) access processes.
- Monitor privileged account reviews and support remediation activities.
- Good knowledge of Power-shell.
- Ensure compliance with least privilege and segregation of duties principles.
Audit & Compliance Support
- Support internal and external audits related to IAM controls.
- Collect and validate audit evidence for access certification activities.
- Assist in remediation of audit findings related to identity governance and access management.
- Ensure adherence to ISO 27001, SOX, PCI-DSS, RBI, or other regulatory requirements as applicable.
- Maintain documentation of IAM procedures, controls, and audit records.
Reporting & Analysis
- Develop and maintain access certification dashboards and KPI reports.
- Analyze trends in access review findings and recommend process improvements.
- Track certification completion rates, exception management, and remediation status.
- Present findings and recommendations to management and auditors.
Qualifications
- Bachelor's degree in Information Technology, Computer Science, Cyber Security, or related field.
- 3–5 years of experience in Identity & Access Management, IAM Governance, or Access Control Auditing.
- Hands-on experience with SailPoint IdentityIQ (IIQ) or SailPoint IdentityNow.
- Experience managing and executing enterprise-wide access recertification campaigns.
- Strong knowledge of Active Directory access controls, group memberships, and privileged accounts.
- Understanding of Identity Governance and Administration (IGA) concepts.
- Familiarity with audit and compliance frameworks such as ISO 27001, SOX, PCI-DSS, SOC2, or similar.
Preferred Skills
- Experience with RBAC (Role-Based Access Control) and entitlement management.
- Knowledge of Joiner-Mover-Leaver (JML) processes.
- Understanding of Segregation of Duties (SoD) controls.
- Experience with IAM tools such as SailPoint, Saviynt, Microsoft Identity Manager, or Entra ID Governance.
- Strong stakeholder management and communication skills.
- Ability to analyze large datasets and identify access risks.
- Experience working with ServiceNow for remediation tracking.
Certifications (Preferred)
- SailPoint Certified IdentityIQ Engineer or IdentityNow Certification.
- Certified Information Systems Auditor (CISA).
- Certified Identity and Access Manager (CIAM).
- ISO 27001 Lead Implementer / Lead Auditor.
- Security+, SC-300, or equivalent IAM certifications.
Success Measures
- Timely completion of access recertification campaigns.
- Reduction in stale and excessive access.
- Successful audit outcomes with minimal findings.
- Accurate and timely remediation of certification exceptions.
- Improved governance and compliance posture across IAM processes.
By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply