Description & Requirements
For more than 100 years, Xerox has continually redefined the workplace experience. Harnessing our leadership position in office and production print technology, we’ve expanded into software and services to sustainably power the hybrid workplace of today and tomorrow. Today, Xerox is continuing its legacy of innovation to deliver client-centric and digitally-driven technology solutions and meet the needs of today’s global, distributed workforce. From the office to industrial environments, our differentiated business and technology offerings and financial services are essential workplace technology solutions that drive success for our clients. At Xerox, we make work, work. Learn more about us at www.xerox.com.
Role Summary
The IAM Specialist (NHI & AI Security) will support Xerox's Identity and Access Management (IAM) program within the Information Security organization. This role is responsible for protecting Xerox's enterprise identity infrastructure by managing Identity Security, Non-Human Identity (NHI) governance, Active Directory and Microsoft Entra ID security posture, and identity risks introduced by AI platforms, automation pipelines, and cloud/SaaS integrations. The role partners closely with Security, Infrastructure, Engineering, DevOps, and business stakeholders to reduce identity-related attack surface and strengthen Xerox's Zero Trust security posture.
Functional / Technical Competencies
- Identity & Access Management (IAM)
- Non-Human Identity (NHI) Governance
- Active Directory Security
- Microsoft Entra ID (Azure AD)
- Privileged Identity Management (PIM)
- Conditional Access & Identity Protection
- Service Accounts & Service Principals Management
- PowerShell Scripting
- Python Scripting
- Power BI and Security Reporting
- SaaS Security Governance
- Cloud IAM (Azure, AWS, GCP)
- Identity Risk Assessment & Remediation
- AI & Agentic AI Security
- Identity Governance and Compliance Programs
- Data Analysis and Dashboard Development
- Zero Trust Security Principles
Key Responsibilities
- Manage and support Xerox's Identity Security and NHI governance programs.
- Discover, assess, prioritize, and remediate identity-related vulnerabilities and risks.
- Govern service accounts, service principals, managed identities, API keys, access tokens, and machine identities.
- Monitor and improve Active Directory and Microsoft Entra ID security posture.
- Support Privileged Identity Management (PIM), Conditional Access, Identity Protection, and access review processes.
- Develop and maintain security dashboards, reports, KPIs, and risk metrics.
- Drive remediation initiatives and partner with stakeholders to close identified security gaps.
- Support governance of AI, automation, and Agentic AI workloads from an identity security perspective.
- Analyze security data and convert findings into actionable recommendations.
- Maintain risk registers and provide regular leadership reporting.
- Support audit, compliance, and security assessment activities.
- Collaborate with Infrastructure, Engineering, DevOps, and Security teams on identity security initiatives.
Key Outputs / Tangible Results
- Reduced enterprise identity attack surface.
- Improved NHI governance and credential hygiene.
- Increased remediation of identity-related security risks.
- Accurate security reporting and executive dashboards.
- Improved Active Directory and Entra ID security posture.
- Compliance with identity security standards and policies.
- Successful implementation of identity governance initiatives.
- Enhanced visibility into enterprise identity risks.
- Continuous improvement of Zero Trust security controls.
Organizational Strategies & Objectives
- Support Xerox's Identity & Access Management strategy.
- Strengthen enterprise Identity Security and Zero Trust initiatives.
- Reduce organizational security risk and attack surface.
- Improve governance of Non-Human Identities and AI-driven workloads.
- Support compliance, audit readiness, and risk management objectives.
- Enhance visibility, reporting, and leadership decision-making through security analytics.
- Promote secure adoption of cloud, SaaS, automation, and AI technologies.
Relevant Credentials
- Bachelor's Degree in Computer Science, Information Systems, Information Security, or related discipline.
- SC-300 Microsoft Identity and Access Administrator (preferred)
- AZ-500 Microsoft Azure Security Engineer (preferred)
- SC-200 Microsoft Security Operations Analyst (preferred)
- CISSP (preferred)
- CCSP (preferred)
- CIAM or equivalent Identity Security certification (preferred)
Must Haves
- Minimum 5 years of overall IT experience.
- Minimum 3 years of experience in Identity Security, NHI Governance, IAM, or related cybersecurity functions.
- Strong experience with Active Directory and Microsoft Entra ID.
- Experience managing identity-related risks, vulnerabilities, and remediation activities.
- Experience with security reporting, dashboards, and data analysis.
- PowerShell and/or Python scripting capabilities.
- Strong stakeholder management and cross-functional collaboration skills.
- Excellent verbal and written communication skills, with the ability to communicate security concepts to technical and business audiences.
- Experience supporting enterprise security, governance, or compliance initiatives.
Nice to Haves
- Experience with Non-Human Identity (NHI) platforms and governance programs.
- Exposure to Agentic AI, automation security, or machine identity security.
- Experience with Azure, AWS, and GCP IAM controls.
- Experience with Power BI or advanced reporting tools.
- Knowledge of Zero Trust, SASE, and identity-centric security frameworks.
- Experience with audit and compliance frameworks (ISO 27001, SOC 2, NIST CSF, CIS Controls, SOX).
- Knowledge of secrets management platforms such as Azure Key Vault, AWS Secrets Manager, or Delinea Secret Server.
Role Considerations
- Location: Bangalore, India
- Work Setup: Hybrid (final onsite requirements to be confirmed with local HR)
- Work Schedule: U.S. Eastern Time business hours
- Travel Requirement: None
- Training: Virtual onboarding and training
- Interview Process: Three-stage virtual interview process with camera-on requirement
- Enterprise Scope: Supports global Xerox operations across all regions
- Stakeholder Exposure: High interaction with Security, Infrastructure, Engineering, DevOps, and business leadership teams
#LI-HYBRID
#LI-NR1