Senior Business Analyst

Gruve

San Francisco (CA)

On-site

USD 150,000 - 170,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Gruve is seeking a senior IAM/IGA program lead to own requirements, governance, and lifecycle automation across access requests, approvals, and role mining. You will map controls to major standards and drive audit-ready evidence artifacts.

You will facilitate workshops, define onboarding and certification workflows, and ensure successful UAT and change management while coordinating with business owners and engineers.

Qualifications

  • Certification in CBAP, PMI-PBA or ITIL.
  • Hands-on config with SailPoint/Saviynt/Okta admin consoles; SQL for entitlement analysis.
  • Role mining or identity data-quality tooling experience.
  • Experience creating dashboards in Power BI or Tableau.

Responsibilities

  • Run current-state discovery for access request and approval processes.
  • Document requirements for identity lifecycle automation and SoD policy.
  • Lead role engineering workshops with business owners and map entitlements.
  • Own the application onboarding pipeline and create onboarding playbooks.
  • Design certification campaigns including reviewer models and escalation paths.
  • Map controls to audit drivers (SOX, HIPAA, PCI DSS, GDPR, NIST, ISO 27001).
  • Author specs, user stories and acceptance criteria with traceability.
  • Own UAT, test planning and defect triage.
  • Create change management materials and track adoption.
  • Produce program reports for client steering committees.

Skills

CBAP
PMI-PBA
ITIL
SailPoint
Saviynt
Okta

Tools

SailPoint
Saviynt
Okta

Job description

About Gruve

Gruve is an innovative software services startup dedicated to transforming enterprises to AI powerhouses. We specialize in cybersecurity, customer experience, cloud infrastructure, and advanced technologies such as Large Language Models (LLMs). Our mission is to assist our customers in their business strategies utilizing their data to make more intelligent decisions. As a well-funded early-stage startup, Gruve offers a dynamic environment with strong customer and partner networks.

About the Role

Owns requirements, process design and stakeholder alignment on IGA programs. Translates audit findings, compliance obligations and the way a business grants access into a governed identity model the platform can enforce.

Key Responsibilities
  • Run current-state discovery: access request and approval processes, application and entitlement inventory, authoritative source analysis, joiner-mover-leaver process mapping, and identification of governance gaps.
  • Elicit and document requirements for identity lifecycle automation, access request and approval flows, certification scope and cadence, SoD policy, and delegated administration models.
  • Facilitate role engineering workshops with business and application owners — role mining output validation, role definition and hierarchy, entitlement description cleanup and risk rating.
  • Own the application onboarding pipeline: intake questionnaire, connector feasibility assessment with engineering, data and attribute mapping, owner identification, and the onboarding runbook.
  • Design certification campaigns end to end: reviewer models, scope and frequency, escalation paths, revocation and closed-loop remediation, and reviewer fatigue mitigation.
  • Map program controls to audit and compliance drivers — SOX ITGC access controls, HIPAA, PCI DSS, GDPR, NIST 800-53, ISO 27001 — and produce the evidence artifacts auditors will request.
  • Author functional specifications, user stories and acceptance criteria; maintain requirements traceability from control objective through to configured platform behavior.
  • Own UAT: test planning, test case authoring, coordination of business testers, defect triage and sign-off readiness.
  • Build organizational change management material — reviewer and requester training, communications, job aids — and track adoption.
  • Produce program reporting for client steering committees: application onboarding burn-down, campaign completion rates, orphan and dormant account reduction, SoD violation trend, and access request cycle time.
Basic Qualifications
  • CBAP, PMI-PBA or ITIL certification; vendor functional certification on a primary IGA platform.
  • Hands-on configuration exposure to SailPoint, Saviynt or Okta admin consoles; SQL for entitlement and access-data analysis.
  • Role mining or identity data-quality tooling experience.
  • Reporting and dashboard build in Power BI or Tableau for program metrics.
  • Regulated-industry program experience — financial services, healthcare or public sector.
  • Prior work on a legacy IGA migration or a post-audit remediation program.
Preferred Qualifications
  • 7–10+ years in business analysis or consulting, including 4+ years on IAM/IGA programs.
  • Strong working knowledge of IGA concepts: identity lifecycle, entitlements, roles and RBAC, segregation of duties, access certification, access request and provisioning, orphan and dormant accounts, privileged account governance.
  • Requirements engineering discipline — BRD/FRD authoring, user stories and acceptance criteria, process mapping (BPMN or swimlane), traceability matrices.
  • Audit and compliance literacy: SOX ITGC user access controls, least privilege, segregation of duties, and how an access review finding becomes a program requirement.
  • Exposure to at least one IGA platform from the functional side — SailPoint, Saviynt, or Okta Identity Governance — enough to know what is configurable versus custom.
  • Workshop facilitation with business, application, security and audit stakeholders; executive-quality written deliverables.
  • Agile delivery experience (Jira or Azure Boards) and ownership of UAT through sign-off.
  • Consulting presence — comfortable holding a position with a client stakeholder who does not want to own their entitlements.
Salary Range

$150k - $170k USD

This is a full-time opportunity with Gruve.

Why Gruve

At Gruve, we foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you’re passionate about technology and eager to make an impact, we’d love to hear from you.

Gruve is an equal opportunity employer. We welcome applicants from all backgrounds and thank all who apply; however, only those selected for an interview will be contacted.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Business Analyst
Senior Business Analyst

Gruve • United States

On-site
USD 150,000 - 170,000
Principal Engineering Manager
Principal Engineering Manager

Gruve • Redwood City (CA)

On-site
USD 200,000 - 230,000
Senior Software Engineer
Senior Software Engineer

Gruve • San Francisco (CA)

On-site
USD 180,000 - 200,000
Principal Engineering Manager
Principal Engineering Manager

Gruve • San Francisco (CA)

On-site
USD 200,000 - 230,000
DevOps Director
DevOps Director

Gruve • San Francisco (CA)

On-site
USD 200,000 - 230,000
Senior Software Engineer
Senior Software Engineer

Gruve • Redwood City (CA)

On-site
USD 180,000 - 200,000
DevOps Director
DevOps Director

Gruve • United States

On-site
USD 200,000 - 230,000
Senior Identity & IGA Analyst – Access Governance
Senior Identity & IGA Analyst – Access Governance

Gruve • United States

On-site
USD 150,000 - 170,000
DevOps Director - Gruve
DevOps Director - Gruve

OpenTalent • United States

On-site
USD 150,000 - 190,000
Head of Strategic Finance & GTM
Head of Strategic Finance & GTM

Doist • Redwood City (CA)

On-site
USD 180,000 - 220,000