Identity & Access Management Analyst II
Duquesne Light Company, headquartered in downtown Pittsburgh, is a leader in providing electric energy and has been in the forefront of the electric energy market, with a history rooted in technological innovation and superior customer service. Today, the company continues its role as a leader in the transmission and distribution of electric energy, providing a secure supply of reliable power to more than half a million customers in southwestern Pennsylvania.
Duquesne Light Company is committed to creating a culture of inclusion. We value and respect the unique differences and experiences of our employees. We believe that our differences lead to better collaboration, innovation and outcomes. We want you to join our team!
Job Title: Identity & Access Management (IAM) Analyst II
Position Summary: The Identity & Access Management (IAM) Analyst II will support and execute core IAM operations, governance, and compliance activities within a regulated utility environment .
This role is ideal for a well-rounded IAM professional who can independently manage identity lifecycle processes (Joiner, Mover, Leaver), access provisioning, and governance controls while supporting audit readiness and regulatory compliance.
You’ll play a key role in securing access to critical infrastructure systems , ensuring adherence to least privilege , and contributing to continuous improvement and automation across IAM processes.
Note: This is a highly hands-on, execution-focused role , not a managerial or purely advisory position.
Location: Pittsburgh, PA - Hybrid
Job Duties and Responsibilities:
IAM Operations & Lifecycle Management
- Execute end-to-end identity lifecycle processes (Joiner, Mover, Leaver)
- Provision, modify, and revoke access across enterprise and regulated systems
- Enforce least privilege access for both privileged and non-privileged users
- Identify and remediate:
- Orphaned accounts
- Excessive or inappropriate access
- Segregation of duties conflicts
- Maintain alignment between HR systems, IAM platforms, directories, and applications
Access Governance & Compliance
- Support and execute access governance controls aligned to regulatory frameworks (e.g., NERC CIP, SOX, SOC)
- Perform access certifications and recertifications
- Support audit activities, evidence collection, and remediation tracking
- Ensure access changes are properly approved, documented, and audit-ready
- Identify and escalate control gaps, policy exceptions, and risks
Directory Services & Authentication
- Administer and support:
- Active Directory (on-premises) and Azure AD / Entra ID
- User accounts, groups, roles, and service accounts
- Manage MFA solutions (e.g., RSA or similar):
- Token provisioning, revocation, and tracking
- Support access across infrastructure, applications, and databases
ITSM & Operational Support
- Own and manage IAM-related service requests and incident queues
- Ensure tickets are properly approved, documented, and completed within SLAs
- Partner with Service Desk teams to improve request quality and consistency
- Coordinate with vendors and application teams for access-related activities
Quality Assurance & Control Validation
- Perform validation of IAM processes, including:
- Provisioning/deprovisioning accuracy
- JML completeness and timeliness
- Access certification outcomes
- Conduct reconciliation across IAM systems, HR platforms, and directories
- Validate privileged access, shared accounts, and MFA lifecycle events
- Support audit readiness and control attestation
Automation & Reporting
- Develop and support reporting for compliance, audit, and operational metrics
- Use tools such as PowerShell, Python, SQL, Excel, or Power Query
- Analyze trends and identify risks or process gaps
- Contribute to automation initiatives to improve efficiency and reduce manual effort
Process Improvement
- Execute IAM processes using defined workflows and procedures
- Identify opportunities to improve:
- Provisioning workflows
- Access request processes
- Role and entitlement models
- Maintain and enhance documentation, runbooks, and procedures
Collaboration
- Partner with:
- Cybersecurity and compliance teams
- HR and workforce administration
- IT and OT operations teams
- Application owners and system administrators
- Contribute to a team-oriented, high-accountability environment
- Act as a resource for complex IAM issues
Additional Responsibilities:
- Perform other job-related duties as assigned
- Storm role duties as assigned
Education and Experience Required:
- Bachelor’s degree in Information Systems, Cybersecurity, or related field
- 2+ years of relevant experience required
- Hands-on experience with:
- Identity lifecycle management (JML)
- Access provisioning and deprovisioning
- Active Directory and Azure AD
- Experience supporting audit and compliance frameworks (e.g., SOX, SOC, ISO)
- Working knowledge of:
- RBAC and least privilege principles
- ITSM/ticket-based environments
- MFA technologies
- Strong analytical, troubleshooting, and problem-solving skills
- Ability to work independently and take ownership of responsibilities
Preferred Qualifications:
- Experience in regulated industries (utilities, energy, financial services, healthcare)
- Familiarity with NERC CIP standards and critical infrastructure environments
- Experience with:
- Identity Governance platforms (e.g., SailPoint)
- SAP access provisioning and role governance
- SQL-based analysis and reporting
- Scripting/automation experience (PowerShell, Python)
- Experience managing privileged, shared, and service accounts
- Relevant certifications (e.g., Security+, IAM or SailPoint certifications)
Scope
Primary focus is on daily deliverables, outputs and reporting. Typically, accountable for managing one's own time and workflow. Responsible for using prescribed guidelines to analyze situations and solve problems. Work is typically of moderate complexity requiring the incumbent to draw on previous knowledge to perform role. Continues to build knowledge base and develop capabilities by partnering with more experienced staff as needed
Decision Impact
Problems and issues faced are vague but may be recognizable based on past experience. Accountable for some direct level of reasoning and decision making in straightforward situations based on precedents.
Hybrid Work
Position follows our hybrid work model, with a minimum of two days working in the office and the remaining days working remotely. Reporting location and frequency may be subject to change based on job role and department needs.
Storm Roles
All Non-Union Employees will serve in storm roles as appropriate to their role and skillset. Please be sure to discuss storm roles with the hiring manager for this position, as duties can vary across the Company. Examples of storm roles could include but aren't limited to duties such as: working with operations for service center support or with the communications, customer service or government affairs teams to respond to public and customer requests for information, etc.
Data Governance
Utilize data to make business decisions as appropriate for the position, support data stewardship activities and partner with IT on underlying data needs.
EQUAL OPPORTUNITY EMPLOYER
Duquesne Light Holdings is committed to providing equal employment opportunity to all people in all aspects of the employment relationship, without discrimination because of race, age, sex, color, religion, national origin, disability, sexual orientation and gender identity or status as a Vietnam era or special disabled veteran or any other unlawful basis, as defined by applicable law, and fostering a workplace free of unlawful discrimination and retaliation. This policy affects decisions including, but not limited to, hiring, compensation, benefits, terms and conditions of employment, opportunities for promotion, transfer, layoffs, return from a layoff, training and development, and other privileges of employment. An integral part of Duquesne Light Holdings' commitment is to comply with all applicable federal, state and local laws concerning equal employment and affirmative action.
Duquesne Light Holdings is committed to offering an inclusive and accessible experience for all job seekers, including individuals with disabilities. Our goal is to foster an inclusive and accessible workplace where everyone has the opportunity to be successful.
If you need a reasonable accommodation to search for a job opening, apply for a position, or participate in the interview process, connect with us at [email protected] and describe the specific accommodation requested for a disability-related limitation.
Recommended Jobs
Travel Nurse RN - Telemetry - $2,053 per week in Philadelphia, PA
Registered Nurse (RN) | Telemetry Location: Philadelphia, PA Agency: Triage Staffing Pay: $2,053 per week Shift Information: Days - 3 days x 12 hours Contract Duration: 13 Wee…
Future Regional Sales Opportunities
Job Description Job Description We're in this for the greater good at ParetoHealth. Our mission is collective greatness, nothing less will do. Our team is a single force united in the drive to tr…
Sales Support & Training Specialist - Camp Hill, Pennsylvania
Job Description Job Description Position Summary The leading Central PA & MD Plumbing & Heating Wholesaler is growing. The Sales Support & Training Specialist plays a key role in strengthening…
Hose Assembler
Job Description Job Description Looking for someone that is eager to learn the hydraulic and pneumatic industry. Job is laid back. Job duties will be to wait on customers when they walk through…
Assistant Project Manager
Engineering excellence, built on people-first values. At LUZCO, we’re more than an engineering firm — we’re a familia. We pair technical excellence with a culture rooted in respect, flexibility, a…
Therapeutic Learning Classroom (Emotional Support) Teacher
Job Title: Therapeutic Learning Classroom Teacher We are seeking a committed and passionate Special Education Teacher to lead our Therapeutic Learning Classroom serving students in the lower g…
College Bookstore Cashier
: The College Bookstore at Elizabethtown College is currently seeking a (part-time) Cashier . This is a part-time position which runs 10-months per year from mid- August through mid-May. Job Dutie…
Sales Account Manager
Join an innovative, fast-growing, late-stage medical device startup. We are looking for a Sales Account Manager to sell a non-invasive point-of-care liver diagnosis and monitoring tool. This is a HUN…
Occupational Therapist / OT - Full-time
Part-Time Occupational Therapist (OT) Opportunity in Berlin, PA! Join a Passionate Rehab Team at Meadow View Nursing Center - Berlin, Pennsylvania Continuum Therapy Partners is excited to of…
Director of Operations, Critical Infrastructure
Job Description As Director of Operations, Critical Infrastructure , you will lead the safe, reliable, and efficient operation of mission-critical electrical, mechanical, and building infrast…