{"id":1111712,"url":"https://alion.io/job/intuitive-surgical-it-security-analyst-rbac","title":"IT Security Analyst - RBAC","company":{"id":3128,"name":"Intuitive Surgical","domain":"intuitive.com","url":"https://alion.io/company/intuitive","size_band":"1001-5000","is_staffing_agency":false,"is_intermediary":false,"ats_vendor":"SmartRecruiters","truth_index":{"grade":"B","score":76,"open_postings":76,"ghost_share":0,"stale_share":0.974,"repost_share":0,"time_to_fill_p50_days":22,"computed_at":"2026-09-23T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"senior","employment_type":"full_time","work_mode":"hybrid","remote_scope":null,"hiring_geo_confidence":"structured","locations":["Bengaluru, India"],"countries":["IN"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":34000,"max_usd":75000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":1098},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"IAM","optional":false},{"name":"Java","optional":false},{"name":"Least Privilege","optional":false},{"name":"Okta","optional":false},{"name":"Perl","optional":false},{"name":"Rest API","optional":false}],"status":"live","first_seen_at":"2026-09-22T09:24:15Z","employer_posted_date":"2026-09-22","last_verified_at":"2026-09-23T08:41:10Z","board_verified":true,"closed_at":null,"days_open":1,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":1},"description":"It started with a simple idea: what if surgery could be less invasive and recovery less painful? Nearly 30 years later, that question still fuels everything we do at Intuitive. As a global leader in robotic-assisted surgery and minimally invasive care, our technologies-like the da Vinci surgical system and Ion -have transformed how care is delivered for millions of patients worldwide.\nWe’re a team of engineers, clinicians, and innovators united by one purpose: to make surgery smarter, safer, and more human. Every day, our work helps care teams perform with greater precision and patients recover faster, improving outcomes around the world.\nThe problems we solve demand creativity, rigor, and collaboration. The work is challenging, but deeply meaningful-because every improvement we make has the potential to change a life.\nIf you’re ready to contribute to something bigger than yourself and help transform the future of healthcare, you’ll find your purpose here.\n Primary Function of Position\nThis position is responsible for managing the technical side of our Role-Based Access Control (RBAC) program in support of the organization's business applications. As a Security Analyst, you will partner directly with business application owners to design, build, and maintain role models that support each application's access needs, and will act as an SME for RBAC initiatives, working across business, security, engineering, and operational teams to onboard and govern access for business applications.\nEssential Job Duties\nPartner directly with business application owners and IT teams to design and implement role-based access control (RBAC) models tailored to each application's access needs.\nLead application enrollment into Sailpoint IdentityIQ, defining application-specific roles, entitlements, and provisioning/de-provisioning workflows via REST APIs.\nPerform role mining and role engineering at the application level: analyze entitlements within business applications and group them into business-aligned roles.\nDevelop custom workflows, rules, and forms to support application-specific role assignment, approval, and certification processes.\nAct as the primary IAM point of contact for business application teams, translating business access requirements into technical role designs.\nAdminister RBAC governance for onboarded business applications, ensuring role catalogs stay current as applications and business needs evolve.\nIdentify gaps in application access models - excess access, orphaned entitlements, missing segregation-of-duties (SoD) controls - and drive remediation.\nSupport access certification/attestation campaigns for business applications, ensuring role assignments remain accurate and audit ready.\nImplement least-privilege and SoD principles within application-specific role designs, aligning to security best practices.\nDesign, integrate, and support IAM/IAG tools and processes as they relate to onboarding and maintain business application access.\nSupport Sailpoint IdentityIQ version upgrades and patching as they affect application role/RBAC configurations.\nWork across Sailpoint IdentityIQ modules - LCM, Reporting/Analytics, and Certifications - with emphasis on application-level, role-based reporting.\nSupport SSO/MFA-integrated access for business applications (e.g., Okta) as it intersects with role assignments.\nAnalyze application access requests to assess risk, applying RBAC and least-privilege principles to define acceptable solutions.\nDevelop and monitor KPIs and metrics on role coverage, SoD violations, and certification completion across supported business applications.\nRequired Skills and Experience\n5+ years of experience in access governance with a focus on RBAC design for business applications; IAM tool experience (Sailpoint IdentityIQ preferred); Java development or scripting (shell or Perl) a plus.\n\nMinimum 5 years' experience with application enrollment into an IAM/IAG platform, access controls (RBAC), attestations/certifications, and supporting audit-related activities.\n\nExperience partnering with business application owners to gather access requirements and translate them into role definitions and entitlement structures.\n\nKnowledge of identity directory architecture, identity federation, provisioning processes, and single sign-on (SSO).\n\nKnowledge of core IT technologies and processes (network systems, operating systems, databases, change control) as they relate to business application access.\n\nAbility to communicate complex access control concepts to diverse audiences, from application owners and technology providers to business leaders.\n\nExperience with IT audit/assessment/examination, particularly around application access reviews and SoD.\n\nDemonstrated experience delivering RBAC/role-based access projects across multiple business applications and stakeholder groups.\n\nExcellent documentation and communication skills.\n\nRequired Education and Training\nMS or Bachelor's degree in a technical field (or equivalent additional experience).\nWorking Conditions\nNone\nPreferred Skills and Experience\nMust have Skills\nIdentity Access Management Expertise + Role Based Access Controls\n Intuitive is an Equal Employment Opportunity Employer. We provide equal employment opportunities to all qualified applicants and employees, and prohibit discrimination and harassment of any type, without regard to race, sex, pregnancy, sexual orientation, gender identity, national origin, color, age, religion, protected veteran or disability status, genetic information or any other status protected under federal, state, or local applicable laws.\nWe will consider for employment qualified applicants with arrest and conviction records in accordance with fair chance laws.\nU.S. Export Controls Disclaimer: In accordance with the U.S. Export Administration Regulations (15 CFR §743.13(b)), some roles at Intuitive Surgical may be subject to U.S. export controls for prospective employees who are nationals from countries currently on embargo or sanctions status.\nCertain information you provide as part of the application will be used for purposes of determining whether Intuitive Surgical will need to (i) obtain an export license from the U.S. Government on your behalf (note: the government’s licensing process can take 3 to 6+ months) or (ii) implement a Technology Control Plan (“TCP”) (note: typically adds 2 weeks to the hiring process).\nFor any Intuitive role subject to export controls, final offers are contingent upon obtaining an approved export license and/or an executed TCP prior to the prospective employee’s start date, which may or may not be flexible, and within a timeframe that does not unreasonably impede the hiring need. If applicable, candidates will be notified and instructed on any requirements for these purposes.\nThis position may be filled at a different job level than listed here depending on\nbusiness need and/or on the selected candidate’s experience, knowledge and skills.\nCompensation will be based primarily on the job level at which the role is filled and the\ncandidate’s qualifications, consistent with applicable law.","description_format":"text","description_chars":7127,"description_truncated":false,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[{"language":"English","level":"All levels","optional":false}]},"benefits":[],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"},{"name":"India","iso":"IN","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Medical & Healthcare Robotics"],"lifecycle":[{"event":"open","at":"2026-09-22T12:30:28Z"}],"liveness":{"score":63,"band":"ok","label":"Likely open","p_open":1,"p_active":0.632,"p_room":1,"age_days":0,"expected_fill_days":22,"reasons":["conf:6","stale_co","velocity","win:early","comp:brand"],"computed_at":"2026-09-23T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/intuitive-surgical-it-security-analyst-rbac","json_url":"https://alion.io/job/intuitive-surgical-it-security-analyst-rbac.json","meta":{"generated_at":"2026-09-23T19:24:48Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}