User Access Manager

Location: 

Hyderabad, IN

ABOUT US:

 

As a world leading provider of integrated solutions for the alternative investment industry, Alter Domus (meaning “The Other House” in Latin) is proud to be home to 90% of the top 30 asset managers in the private markets, and more than 6,000 professionals across 24 jurisdictions. 

 

With a deep understanding of what it takes to succeed in alternatives, we believe in being different - in what we do, in how we work and most importantly in how we enable and develop our people. Invest yourself in the alternative, and join an organization where you progress on merit, where you can speak openly with whoever you are speaking to, and where you will be supported along whichever path you choose to take. 

 

Find out more about life at Alter Domus at careers.alterdomus.com  

 

The User Access Manager is a senior individual contributor and people leader responsible for the day-to-day operation, health, and continuous improvement of alterDomus' Identity and Access Management capabilities. This role sits at the intersection of operational excellence and strategic enablement, ensuring that the right people have the right access to the right resources — nothing more, nothing less. 

Leading a team of 10 professionals — 1 Team Lead, 3 Shift Leads and 6 Access Management Analysts — the User Access Manager will own BAU delivery across the three IAM pillars: Identity Governance (SailPoint IdentityNow), Customer Identity (Okta / Auth0), and Privileged Access (CyberArk PAM, EPM & WPM). The role operates within alterDomus' broader Cyber Resiliency Programme and reports directly to the CISO or Deputy CISO. 


Your responsibilities:


Team Leadership & BAU Delivery 

 

  • Lead, mentor, and develop a team of 10 professionals — comprising 1 Team Lead, 3 Shift Leads and 6 Access Management Analysts — across the three platform domains. 

  • Own the BAU service model: incident triage, access request fulfilment, certification campaigns, and recertification reviews; maintaining 24×5 operational coverage. 

  • Define team SLAs, OKRs, and operational KPIs; produce regular MI for CISO and governance forums. 

  • Manage on-call rotation and escalation paths to ensure 24/7 operational cover where required. 

 

Identity Governance & Administration — SailPoint IdentityNow / Identity Security Cloud 

 

  • Serve as the functional owner of the SailPoint IDN/ISC platform across all production, UAT, and sandbox environments. 

  • Drive lifecycle management processes: joiner/mover/leaver, access request, approval workflows, and role-based access control (RBAC). 

  • Maintain and extend source/target connectors (Salesforce, Active Directory, ServiceNow, cloud SaaS). 

  • Lead Separation of Duties (SoD) policy enforcement, access certification design, and audit evidence generation. 

 

Customer Identity & Access Management — Okta / Auth0 

 

  • Own the CIAM platform landscape, covering both Okta Workforce Identity and Auth0 Customer Identity tenants. 

  • Govern MFA policies, adaptive authentication, SSO federation (SAML/OIDC), and B2B/B2C user journeys. 

  • Partner with application teams to onboard new integrations, enforce secure token flows, and maintain API security standards. 

  • Monitor and respond to anomalous authentication events; drive threat model reviews of identity attack surfaces. 

 

Privileged Access Management — CyberArk PAM, EPM & WPM 

 

  • Manage the operational lifecycle of privileged accounts across the enterprise, including service accounts, admin credentials, and secrets. 

  • Maintain CyberArk vault health, session recording policy, and just-in-time (JIT) provisioning workflows in PAM and WPM. 

  • Administer CyberArk Endpoint Privilege Manager (EPM): manage application control policies, least-privilege enforcement on endpoints, and threat protection coverage. 

  • Enforce least-privilege principles through regular privilege entitlement reviews and attestation cycles. 

  • Support red-team and penetration-testing activities by providing PAM architecture context and remediation ownership. 

 

Risk, Compliance & Audit 

 

  • Act as the primary IAM subject matter expert (SME) for internal audits, external assessments, and regulatory reviews (DORA, GDPR, SOX, ISO 27001). 

  • Maintain an IAM risk register; track and remediate control deficiencies to agreed timelines. 

  • Produce Board-level and management-level reporting on access risk posture, certification completion rates, and remediation SLA adherence. 

 

Your profile:

  • 10+ years of progressive experience in Identity & Access Management, Information Security, or a related discipline. 

  • Proven operational experience with Okta and/or Auth0 in an enterprise or multi-tenant environment. 

  • Experience of working with technical IAM team, with accountability for BAU service delivery. 

  • Familiriaty with identity protocols: SAML 2.0, OAuth 2.0, OIDC, SCIM, LDAP/AD. 

  • Solid grounding in regulatory frameworks relevant to financial services: SOC 1 & 2, ISO 27001. 

  • Track record of delivering IAM audit evidence and supporting external assessors. 

 

Nice to Have 

  • Familiarity with NIST CSF 2.0 

  • Exposure to cloud IAM in Azure AD / Entra ID, AWS IAM, or GCP IAM. 

 

WHAT WE OFFER

 

We are committed to supporting your development, advancing your career, and providing benefits that matter to you. 

 

Our industry-leading Alter Domus Academy offers six learning zones for every stage of your career, with resources tailored to your ambitions and resources from LinkedIn Learning. 

 

Our global benefits also include:

  • Support for professional accreditations such as ACCA and study leave 
  • Flexible arrangements, generous holidays, plus an additional day off for your birthday!
  • Continuous mentoring along your career progression 
  • Active sports, events and social committees across our offices 
  • 24/7 support available from our Employee Assistance Program 
  • The opportunity to invest in our growth and success through our Employee Share Plan 
  • Plus additional local benefits depending on your location 

 

Equity in every sense of the word:

We are in the business of equity, in every sense of the word. For us, this means taking action to ensure every colleague has equal opportunity, valuing every voice and experience across our organisation, maintaining an inclusive culture where you can bring your whole self to work, and making Alter Domus a workplace where everyone feels they belong. 

 

We celebrate our differences, and understand that our success relies on diverse perspectives and experiences, working towards shared goals and a common purpose. We take pride in creating a workplace where all our people are empowered to be truly invested in the alternative and bring their whole selves to work.

 

We are committed to ensuring a welcoming recruiting and onboarding process for everyone. Please contact our hiring team if you require any accommodations to make our recruitment process more accessible for you. 

 

(Alter Domus Privacy notice can be reviewed via Alter Domus webpage: https://alterdomus.com/privacy-notice/)

 

#LI-HYBRID
#LI-TC1