Description

  1. Management of Shared Folder permissions and structures across various file servers - both region and cloud based
  2. Providing data/report request responses from Audit and other support teams in a timely manner
  3. Facilitating data migration activities across various systems/platforms (Windows Shared Folders, SharePoint Online, MS Teams etc.)
  4. Managing permissions on SharePoint Online, MS Teams sites and other M365 Products
  5. Creation of AzureAD (EntraID) security groups, Service Principles (SPNs), Shared Mailboxes, Auto/Dynamic Distribution Groups etc.
  6. Creation of Active Directory groups of various types and scopes, for permissions setup
  7. Managing application infrastructure (Varonis DatAdvantage, Data Privilege etc) - supporting maintenance and upgrade activities
  8. Handling user access provisioning requests for various systems/platforms

 

 

Job Requirements

Details:

 

Work experience - 2-5 years

Educational Qualification - Bachelor's degree or equivalent from an accredited institution, preferably in a technical/technological stream.

Skills matrix -

 

Topic/DomainMust haveGood to haveAdditional Context
Access & Identity Management

AIM common processes and practices

 

User onboarding, joiner-mover-leaver processes

 

Experience of managing accounts and their usage (Shared accounts, service accounts etc.)

 

Access control concepts like RBAC, RBBAC, DAC, MAC etc.

 

Remediation and recertification procedures

 

IAM tools like CyberArk, SailPoint IIQ etc.

 

Workflow management/ITSM tools like ServiceNow

 

Various stages and types of approval workflows for granting access

 

Compliance with SAS, SOX and other regulatory requirements, or industry standards

 

Industry best practices in Access & Identity Management

Active Directory

Groups - types, scopes nested/looped groups and their uses

 

High level understanding of Active Directory structure - OUs, Containers, types of policies and their utilities and implications 
Shared Folders

Permission types and structure - inheritance, object level permissions

 

Experience with troubleshooting of shared folder permissions and access issues

 

Understanding of file servers - types and common use cases

 

Understanding of different technology-based permissions like NTFS, NFS, share permissions etc.

 

Understanding of DFS - common practices and restructuring

 
MS/M365 ExchangeManaging Exchange objects like Shared Mailboxes, Distribution Lists

Dynamic/M365 groups

 

External Contacts, Public Folders etc.

 

 
Application Support/Varonis applications preferredSupporting application infrastructure for Varonis or similar Products

Experience working on Varonis DatAdvantage, Data Privilege and other Varonis modules

 

 

Understanding of various activity monitoring, filesystem scanning tools and their working
PowerShell/Scripting

Creating and/or working with scripts, especially on PowerShell

 

Knowledge and understanding of functions, scripting/programming best practices 
Cloud/M365/Azure EnvironmentCreation of Azure AD security groups

Basic understanding of API connectivity, app registrations, client ID/secrets etc. in the context of a cloud environment

 

Experience on Azure EntraID, M365 Ad

 

Education

Bachelor's degree