Senior Analyst, IT Compliance & Risk - Identity and Access Management (IAM)

CVS Health

Confirmed live today High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Woonsocket, RIWellesley, MA
Salary
$79,310–$173,040 / yr
Employment
Full-time
Posted
3 days ago
Freshness
Confirmed live today
Closes
Oct 22, 2026

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $154k
This role $126k
$66k most similar roles pay here $201k

This role pays less than 73% of similar roles. Most pay $123,954–$184,325 — the shaded band above. At the midpoint, this role pays about $126k versus about $154k for comparable roles.

Based on 240 similar postings.

Employer

About CVS Health

CVS Health is a leading American healthcare company operating retail pharmacies, pharmacy benefit management services, and a health insurance segment through Aetna, one of the nation''s largest health insurers. Industry: Healthcare & Pharmacy

CVS Health currently has 105 open roles on FindRole.

Listed pay typically runs $106,605–$260,590 across 102 roles with salary data.

Most-posted roles

View all roles at CVS Health

At a glance

TL;DR · Senior Analyst, IT Compliance & Risk - Identity and Access Management (IAM)

R1054609 Senior Analyst, IT Compliance & Risk - Identity and Access Management (IAM) serves as an IAM Domain SME within the Corporate Functions & Pharmacy Consumer Wellness IT Compliance Team. This individual will develop, maintain, and improve the compliance support and governance framework for the access management domain while providing front-line support to application teams. Key responsibilities include identifying IAM gaps, creating remedial action plans, interpreting IT policies, and maintaining data for reporting and metrics. The role requires expertise in authentication, authorization, privilege access management, and session management. Candidates must possess experience with SailPoint, Beyond Trust, Active Directory, Ping Identity, SSO, SAML, OAuth, and LDAP within cloud-native environments like AWS or Azure. Proficiency in MS Excel is required to manage complex data. The role ensures compliance with standards such as NIST, PCI, SOX, HiTrust, HIPAA, and GDPR.

What you'll do

  • Develop and implement an IAM governance framework aligned with industry standards and company policies.
  • Guide application teams in identifying IAM gaps and creating remedial action plans for non-conformance.
  • Interpret IT policies and control standards to ensure system and operational compliance.
  • Maintain data sources, operational metrics, and documentation such as job-aids and FAQs.
  • Promote best practices for IAM while ensuring compliance with regulations like NIST, PCI, SOX, and HiTrust.
  • Monitor industry trends and emerging technologies to evolve the organization's IAM strategy.
  • Act as a liaison between stakeholders and technical teams to operationalize security mandates.

What we're looking for

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field (or equivalent experience).
  • 3+ years of direct hands-on technical experience within IAM including access reviews, MFA implementation, and identity governance platforms.
  • Deep understanding of IAM concepts such as authentication, authorization, entitlement management, PAM, and session management.
  • Experience working in cloud-native environments like AWS, Azure, or Google Cloud integrating IAM solutions.
  • Intermediate to advanced proficiency in MS Excel including pivot tables, lookups, and Power Query.
  • Knowledge of IT security regulations and frameworks such as PCI, HIPAA, SOX, HITRUST, GDPR, NIST, and ISO 27001.
  • Integration experience with SailPoint and/or Beyond Trust (preferred).
  • Security certifications such as CISSP, CIAM, CISA, CISM, or CCSP (preferred).

More like this

Similar roles

Senior Information Security Analyst

McKesson Corporation

Irving, TX 13 days ago $169,950–$179,300
Azure AWS Databricks Azure Data Factory Python PowerShell JavaScript Zero Trust NIST ISO 27001 HIPAA GDPR Vulnerability Management Penetration Testing Linux Windows Unix Automation Orchestration
7+ yrs exp

Information Security Assurance Analyst I

Global Payments (TSYS)

ALPHARETTA, GA +2 17 days ago
Power Automate Power BI AWS Azure GCP ServiceNow Optro Archer PCI FFIEC FISMA SOX GLBA HIPAA ISO-87001 NIST 800-53 GRC
7+ yrs exp Hybrid

Information Security Risk Analyst

Lam Research

Tualatin, OR 81 days ago
SIEM Microsoft Sentinel Splunk KQL SPL SQL Python PowerShell MITRE ATT&CK UEBA Azure AWS Cloud Platform Entra ID Logic Apps MISP STIX/TAXII Threat Hunting Incident Response

Information Assurance Analyst

Leidos

Hampton, VA 98 days ago $69,550–$125,725
Risk Management Framework (RMF) Assessment and Authorizations (A&a Xacta IA Manager eMASS Information Assurance System Security Plans (SSP) Authority to Operate (ATO) Interim Authorizations to Test (IATT) Network Service Requests (NSR) Port Service Requests (PSR) Security Standards Information Technology
2+ yrs exp

Senior Information Security Analyst

Betterment

New York, NY 4 days ago $170,000–$185,000
GRC SOC 2 ISO 27001 NIST CSF Vulnerability Management SDLC Application Security Cloud Computing Business Continuity Disaster Recovery AI Automation
6+ yrs exp Hybrid