Work experience - 2-5 years
Educational Qualification - Bachelors degree or equivalent from an accredited institution, preferably in a technical/technological stream.
Skills matrix -
Topic/Domain
Must have
Good to have
Additional Context
Access & Identity Management
AIM common processes and practices
User onboarding, joiner-mover-leaver processes
Experience of managing accounts and their usage (Shared accounts, service accounts etc.)
Access control concepts like RBAC, RBBAC, DAC, MAC etc.
Remediation and recertification procedures
IAM tools like CyberArk, SailPoint IIQ etc.
Workflow management/ITSM tools like ServiceNow
Various stages and types of approval workflows for granting access
Compliance with SAS, SOX and other regulatory requirements, or industry standards
Industry best practices in Access & Identity Management
Active Directory
Groups - types, scopes nested/looped groups and their uses
High level understanding of Active Directory structure - OUs, Containers, types of policies and their utilities and implications
Shared Folders
Permission types and structure - inheritance, object level permissions
Experience with troubleshooting of shared folder permissions and access issues
Understanding of file servers - types and common use cases
Understanding of different technology-based permissions like NTFS, NFS, share permissions etc.
Understanding of DFS - common practices and restructuring
MS/M365 Exchange
Managing Exchange objects like Shared Mailboxes, Distribution Lists
Dynamic/M365 groups
External Contacts, Public Folders etc.
Application Support/Varonis applications preferred
Supporting application infrastructure for Varonis or similar Products
Experience working on Varonis DatAdvantage, Data Privilege and other Varonis modules
Understanding of various activity monitoring, filesystem scanning tools and their working
PowerShell/Scripting
Creating and/or working with scripts, especially on PowerShell
Knowledge and understanding of functions, scripting/programming best practices
Cloud/M365/Azure Environment
Creation of Azure AD security groups
Basic understanding of API connectivity, app registrations, client ID/secrets etc. in the context of a cloud environment
Experience on Azure EntraID, M365 Admin Centre etc.
Understanding of various types of cloud infrastructure setup - their differences and utilities