Helping careers take flight. Reshaping an industry. Enable your career to be Made on Duck Creek.
WHO WE ARE:
Duck Creek Technologies is the intelligent solutions provider defining the future of the property and casualty (P&C) and general insurance industry. We are the platform upon which modern insurance systems are built, enabling the industry to capitalize on the power of the cloud to run agile, intelligent, and evergreen operations. Our modern SaaS solutions help insurers set a new standard and revolutionize how consumers interact with insurance companies.
Authenticity, purpose, and transparency are core to Duck Creek, and we believe insurance should be there for individuals and businesses when, where, and how they need it most. Our market-leading solutions are available on a standalone basis or as a full suite, and all are available via Duck Creek OnDemand. With more than 1,000 successful implementations to date, Duck Creek removes the IT burden for insurers so they can focus on the business of insurance.
We have a flock of more than 1,800 employees across the globe and are proud to be a Flexible-First employer. We empower our employees with the choice to work from an office, from home, or on a hybrid schedule. Our flexible-first environment fosters productivity, inclusion, collaboration, and ensures a consistent employee experience regardless of location.
If working in a fast-paced, rapidly evolving company that is transforming one of the world’s oldest and largest industries sounds exciting, let us know. We are excited you are considering Duck Creek as a future employer and hope you decide to join “The Flock”!
To learn more about us, visit www.duckcreek.com and follow us on our social channels for the latest information – LinkedIn and Twitter.
TITLE: IAM Operations Analyst II
WHAT YOU’LL DO:
The IAM Operations Analyst II is an individual contributor within Duck Creek Technologies’ IAM function. The role executes day-to-day identity operations, maintains enterprise SSO configurations, supports business-to-business (B2B) collaboration, conducts control and configuration audits, and partners with IAM Engineering to operationalize new capabilities. Scope includes identity lifecycle execution, access request processing, application onboarding to SSO, access certification administration, entitlement hygiene, incident response support, and production change execution within documented standards.
Job Functions & Responsibilities:
Operate and maintain daily IAM processes (joiner/mover/leaver, access requests, group/role updates) according to documented controls and SLAs.
Configure and sustain enterprise SSO integrations (SAML, OIDC) for internal and third-party applications, following approved patterns and change procedures.
Administer B2B/B2C collaboration workflows (e.g., guest invitations, entitlement reviews, conditional access for external users) in alignment with security policy.
Execute and document periodic access certifications in Okta IGA platform; track remediation and produce audit-ready evidence.
Perform configuration and entitlement audits across directories, groups, app assignments, and privileged roles; drive remediation of drift and hygiene issues.
Partner with IAM Engineering to productionize new workflows (e.g., SCIM provisioning, group rules, lifecycle automations) and provide feedback for supportability.
Monitor identity health and activity dashboards; investigate anomalies, access failures, and configuration regressions; escalate incidents per runbook.
Maintain accurate application catalogs, data flows, and runbooks; update SOPs and knowledge articles to reflect current-state operations.
Execute approved changes in production (attribute mappings, group rules, assignment scopes, conditional access updates) with appropriate testing and rollback plans.
Support application owner onboarding: collect metadata, validate claims, coordinate test plans, and validate successful SSO cutovers.
Coordinate with Security, IAM Engineering, and other teams on evidence requests, control testing, and mitigation plans related to IAM controls and certifications.
Contribute to continuous improvement by identifying operational pain points, proposing standardization, and reducing exceptions to improve reliability and auditability.
Perform all other duties and activities as required.
Act in accordance with and as a good steward of Duck Creek Technologies mission, vision, and core values
Competencies:
Core Employee:
Communication: Effective communication, both verbal and written; includes ability to express ideas clearly, listen actively, and collaborate with colleagues and clients.
Collaboration: Work effectively in teams, build positive relationships, and contribute to achieving common goals; includes the ability to recognize and incorporate a broad range of diverse perspectives
Problem Solving: Can analyse complex situations, identify problems, ask important questions, and generate creative solutions; involves critical thinking, adaptability, and the ability to make informed decisions
Accountability: Willingness to accept responsibility for your actions and work; ability to set and achieve meaningful outcomes for oneself
Adaptability: Can adapt to change, embrace new technologies, and learn quickly; embracing a growth mindset, being flexible and open to different approaches is highly valued
Integrity: Conducts themselves with integrity and professionalism, understands and models our core values, and is obsessed with doing the right thing; incorporates this mindset in how they behave, in the products or services they provide, and how they treat others
Cultural Agility: Ability to effectively and comfortably adapt to different cultural contexts. It involves the capacity to understand, communicate, and interact with people from diverse cultural backgrounds in a respectful and inclusive manner.
WHAT YOU’VE DONE:
Bachelor’s degree in Information Security, Information Technology, Computer Science, or a related discipline; or equivalent practical experience in enterprise IT.
At least 2 years of experience in IAM operations, directory services administration, or closely related security/identity functions.
Hands-on experience operating an enterprise IAM/IGA or SSO platform (e.g., Okta, Microsoft Entra ID) including user/group administration and app assignments.
Working knowledge of SSO integrations (SAML, OIDC/OAuth2) and lifecycle execution (provisioning/de-provisioning).
PREFERRED:
Experience administering access certifications/recertifications, role reviews, and remediation tracking within an IGA platform.
Familiarity with B2B collaboration governance (guest lifecycle, conditional access for externals, terms of use, access packages).
Exposure to scripting/automation (e.g., PowerShell, REST/Graph/Okta APIs) for data pulls, report generation, and bulk updates.
Experience supporting audits, control testing, and evidence collection for IAM controls and SOX/ISO/other frameworks.
Relevant certifications (e.g., Okta Certified Professional/Administrator, Microsoft Identity/Entra, Security+ or equivalent).
Knowledge, Skills, Abilities & Behaviours:
Working knowledge of identity standards/protocols: SAML, OIDC/OAuth2, SCIM, MFA methods, session/time-outs.
Ability to configure SSO integrations using approved patterns (metadata exchange, claims/attribute mapping, signing/encryption, token lifetimes).
Practical understanding of identity lifecycle execution, RBAC/group-based access, and entitlement hygiene.
Proficiency operating in Okta and/or Microsoft Entra ID for user/group management, app assignments, and policy administration.
Ability to conduct access certifications end-to-end: campaign setup, evidence capture, exception handling, and remediation follow-through.
Familiarity with B2B governance: guest invite workflows, cross-tenant access, conditional access targeting, and external user lifecycle.
Skill in interpreting logs/telemetry (sign-in logs, app logs, admin actions) to troubleshoot access failures and validate changes.
Competence with basic scripting/automation for reporting and operational tasks (e.g., PowerShell, Graph/Okta APIs); comfort with CSV and data validation.
Strong documentation discipline: SOPs, runbooks, application catalogs, data flow diagrams, and change records suitable for audit.
Structured change execution mindset: test/rollback planning, maintenance window coordination, and adherence to CAB/change policies.
Attention to detail and data quality (unique identifiers, attribute mapping integrity, group/role scope accuracy).
Effective collaboration with IAM Engineering, Security, End User Experience & Engineering, End User Support, application owners, and other teams; willingness to escalate and seek alignment on risk decisions.
Clear, concise communication appropriate for technical and non-technical stakeholders across global teams and time zones. Consistent ownership and follow-through on tickets/requests; reliable adherence to SLAs and queue management practices.
Commitment to secure-by-default, least privilege, and standardization to ensure scalability, reliability, and audit readiness.
Other Requirements:
Travel: 0 – 25%
Work Authorization: Legally authorized to work in the country of the job location.
WHAT WE STAND FOR
Our global company celebrates & leverages the differences each employee brings to the table. Our success is a direct result of an inclusive culture where opportunities to learn from one another occur regardless of title, seniority, or background. This collaborative and team-oriented approach is at the core of how we operate and continuously improves our products, services, and systems. As such, Duck Creek is committed to providing equal opportunity to all employees and applicants – to recruit, hire, train, and reward employees for their individual abilities, achievements, and experience without regard to race, color, gender, religion, sexual orientation, age, national origin, disability, marital, military, or any other protected status.
We strive to be an example to the world of inclusion, diversity, and equity in all things – where employees are free to be their authentic selves in the workplace and in the communities in which we live. We believe in leading by example and are proud of the diversity of our team and our shared commitment to our Core Values: We Prioritize Respect; We Listen; We Care; We Add Value; and We Lead.
To learn more about our inclusive company culture, values, DE&I initiatives, and people, please visit: https://www.duckcreek.com/life-at-duck-creek/
Please let us know if you encounter accessibility barriers with our web content by sending an email to accessibility@duckcreek.com.
Duck Creek Technologies does not accept, nor will we pay a fee for any hires resulting from unsolicited headhunter or agency resumes.
Privacy Notice: By submitting your application, you acknowledge that Duck Creek Technologies may collect and process your personal data for recruitment purposes in accordance with our Privacy Notice and applicable data protection laws.
Duck Creek Technologies does not accept, nor will we pay a fee for any hires resulting from unsolicited head-hunter or agency resumes.
#LI-DD1
#Remote India