Jobs Companies Oaktree Capital Management Senior Associate - Identity & Security Operations Engineer

About this Senior Associate - Identity & Security Operations Engineer role at Oaktree Capital Management

Oaktree Capital Management · Onsite · Hyderabad

Our Company

Oaktree is a leader among global investment managers specializing in alternative investments, with $224 billion in assets under management.  The firm emphasizes an opportunistic, value-oriented and risk-controlled approach to investments in credit, private equity, real assets and listed equities.  The firm has over 1500 employees and offices in 26 cities worldwide.

We are committed to cultivating an environment that is collaborative, curious, inclusive and honors diversity of thought. Providing training and career development opportunities and emphasizing strong support for our local communities through philanthropic initiatives are essential to our culture.

For additional information please visit our website at www.oaktreecapital.com.

Identity & Security Operations Engineer

Position Summary

We are seeking a hands-on Identity & Security Operations Engineer to support and improve the firm’s enterprise identity, access, and security operations capabilities. This role will sit at the intersection of identity administration, identity governance, directory services, access control, authentication, security operations, and compliance.

The ideal candidate has strong operational experience with Saviynt, Microsoft Active Directory, Microsoft Entra ID, privileged access concepts, access governance, and enterprise security controls. This is not a purely governance or policy role. The successful candidate must be comfortable troubleshooting production issues, supporting identity integrations, resolving access and authentication problems, improving operational processes, and partnering with Security, Infrastructure, HRIS, Application, Audit, and Service Desk teams.

This role will be responsible for maintaining reliable identity operations while also helping mature the firm’s security posture through stronger access controls, better visibility, automation, lifecycle governance, and secure administration practices.

Key Responsibilities

Identity Governance and Saviynt Operations

Provide day-to-day operational support for the Saviynt Identity Governance and Administration platform.

Troubleshoot and resolve complex Saviynt issues involving access requests, entitlement visibility, requestability, certifications, provisioning failures, reconciliation errors, job failures, workflow issues, and user lifecycle events.

Support onboarding and maintenance of applications, entitlements, roles, owners, approval workflows, and access request models within Saviynt.

Partner with application owners to validate entitlement mappings, access models, role definitions, and provisioning behavior.

Support joiner, mover, leaver processes across Workday, Saviynt, Active Directory, Entra ID, and downstream applications.

Monitor scheduled jobs, connectors, feeds, reconciliations, and provisioning tasks to ensure identity data remains accurate and timely.

Identify recurring operational issues and recommend process, workflow, connector, or data-quality improvements.

Microsoft Identity Administration

Administer and support Microsoft Active Directory, Microsoft Entra ID, hybrid identity, directory synchronization, groups, service accounts, privileged groups, and access-related directory objects.

Troubleshoot authentication, authorization, directory replication, group membership, LDAP, Kerberos, DNS-related identity issues, and Entra ID synchronization problems.

Support identity-related components such as Entra Connect, conditional access dependencies, enterprise applications, SSO integrations, group-based access, and directory-based provisioning.

Assist with cleanup and rationalization of legacy identity objects, stale accounts, orphaned groups, privileged access paths, service accounts, and over-permissioned access structures.

Support secure administration practices across Microsoft identity platforms, including administrative role assignments, privileged group management, break-glass account monitoring, and access reviews.

Security Operations and Access Control

Partner with Security Operations to investigate identity-related alerts, suspicious sign-ins, access anomalies, risky users, privilege misuse, and potential account compromise events.

Support enforcement and monitoring of access controls across enterprise platforms, including MFA, Conditional Access, privileged access, least privilege, and separation of duties.

Assist with security incident response activities where identity data, account access, authentication logs, or entitlement history are required.

Review identity and access logs to support investigations, audit requests, control validation, and root cause analysis.

Help improve detection, alerting, and reporting around privileged access, stale access, failed provisioning, unauthorized access changes, and identity lifecycle gaps.

Support operational controls for high-risk accounts, privileged accounts, service accounts, shared accounts, emergency access accounts, and application administrator access.

Access Governance, Audit, and Compliance

Support access certification campaigns, entitlement reviews, privileged access reviews, and compliance-driven access validation activities.

Partner with Audit, Compliance, Risk, and application owners to gather evidence, validate access controls, and remediate access findings.

Help maintain control documentation for identity lifecycle management, access provisioning, deprovisioning, privileged access, role-based access, and access review processes.

Investigate and remediate access exceptions, orphaned entitlements, inappropriate access, excessive privileges, and failed deprovisioning events.

Support control testing for SOX, SOC, internal audit, regulatory examinations, and other compliance requirements.

Ensure identity operations are performed in accordance with firm policies, security standards, and documented procedures.

Identity Integrations and Application Support

Support identity integrations between Workday, Saviynt, Active Directory, Entra ID, ServiceNow, and enterprise applications.

Troubleshoot identity data flow issues, attribute mismatches, provisioning failures, connector errors, group assignment problems, and access synchronization issues.

Work with application teams to define access models, entitlement structures, approval workflows, provisioning requirements, and access review expectations.

Assist with onboarding new applications into identity governance, SSO, lifecycle management, or access review processes.

Support SAML, OIDC, LDAP, and directory-based access patterns from an operations and troubleshooting perspective.

Automation, Reporting, and Continuous Improvement

Develop and maintain scripts, reports, queries, dashboards, and operational checks to improve IAM reliability and visibility.

Use PowerShell, SQL, Python, Saviynt reporting, Entra admin tools, and ITSM data to identify trends, recurring issues, control gaps, and automation opportunities.

Create repeatable procedures for common IAM operations, access corrections, incident response support, application onboarding, and audit evidence collection.

Improve documentation, knowledge base articles, runbooks, troubleshooting guides, and handoff materials for IAM and Service Desk teams.

Participate in change management, incident management, problem management, and post-incident reviews.

Required Qualifications

5+ years of experience in Identity and Access Management, identity operations, security operations, directory services, or access administration.

3+ years of hands-on experience administering or supporting Saviynt in an enterprise environment.

Strong working knowledge of identity governance, access provisioning, access certifications, entitlement management, RBAC, identity lifecycle management, and joiner/mover/leaver processes.

Strong hands-on experience with Microsoft Active Directory and Microsoft Entra ID.

Experience troubleshooting authentication, authorization, directory, synchronization, group membership, provisioning, and access-related issues.

Experience supporting Workday-to-IAM or HR-driven identity lifecycle integrations.

Understanding of security operations concepts, including account compromise investigation, privileged access monitoring, access anomalies, and identity-related incident response.

Experience supporting audit, compliance, access reviews, evidence gathering, and control remediation.

Working knowledge of SSO, SAML, OIDC, LDAP, Kerberos, MFA, Conditional Access, and hybrid identity concepts.

Strong scripting or reporting experience using PowerShell, SQL, Python, or similar tools.

Strong analytical, troubleshooting, documentation, and communication skills.

Ability to work with technical teams, application owners, business stakeholders, auditors, and security teams.

Preferred Qualifications

Saviynt certification or formal Saviynt training.

Microsoft identity or security certifications.

Experience with privileged access management platforms such as CyberArk, Delinea, BeyondTrust, or Microsoft Entra Privileged Identity Management.

Experience with ServiceNow or another enterprise ITSM platform.

Experience with Microsoft Defender, Entra ID Protection, Sentinel, Splunk, or other SIEM/security monitoring tools.

Experience in financial services, asset management, investment management, or another regulated enterprise environment.

Experience supporting SOX, SOC, SEC, FINRA, HIPAA, or similar control frameworks.

Experience with API-based integrations, connector troubleshooting, identity data transformation, or IAM workflow design.

Familiarity with Zero Trust principles, least privilege, separation of duties, and privileged access governance.

Core Competencies

Strong hands-on operational mindset.

Ability to troubleshoot complex identity and access issues across multiple systems.

Security-focused approach to identity administration and access control.

Strong understanding of how identity, access, authentication, and security operations intersect.

Ability to identify root causes and drive long-term fixes, not just one-time access corrections.

Comfortable working in a complex, high-control enterprise environment.

Strong documentation discipline and attention to detail.

Ability to communicate clearly with both technical and non-technical stakeholders.

Tools and Technologies

Saviynt Identity Governance and Administration
 Microsoft Active Directory
 Microsoft Entra ID
 Entra Connect
 Conditional Access
 Microsoft MFA
 Privileged Identity Management
 Workday
 ServiceNow
 PowerShell
 SQL
 Python
 SAML
 OIDC
 LDAP
 Kerberos
 Microsoft Defender
 SIEM tools such as Sentinel or Splunk
 Privileged access management platforms
 Windows Server identity services

Success Measures

Improved stability and reliability of Saviynt operations.

Faster resolution of provisioning, reconciliation, access request, and identity lifecycle issues.

Improved access visibility and entitlement accuracy.

Reduced stale, orphaned, excessive, or inappropriate access.

Stronger privileged access monitoring and operational controls.

Improved audit readiness and faster evidence collection.

Better integration between IAM operations, security operations, and application access management.

Clearer documentation, runbooks, and support processes.

Measurable reduction in recurring IAM incidents and manual access correction work.

Equal Opportunity Employment Policy

Oaktree is committed to diversity and to equal opportunity employment. Oaktree does not make employment decisions on the basis of race, creed, color, ethnicity, national origin, citizenship, religion, sex, sexual orientation, gender identity, gender expression, age, past or present physical or mental disability, HIV status, medical condition as defined by state law (genetic characteristics or cancer), pregnancy, childbirth and related medical conditions, veteran status, military service,  marital status, familial status, genetic information, domestic violence victim status or any other classification protected by applicable federal, state and local laws and ordinances. This policy applies to hiring, placement, internal promotions, training, opportunities for advancement, recruitment advertising, transfers, demotions, layoffs, terminations, recruitment advertising, rates of pay and other forms of compensation and all other terms, conditions and privileges of employment.

This policy applies to all Oaktree applicants, employees, clients, and contractors.

Equal Opportunity Employment Policy

Oaktree is committed to diversity and to equal opportunity employment. Oaktree does not make employment decisions on the basis of race, creed, color, ethnicity, national origin, citizenship, religion, sex, sexual orientation, gender identity, gender expression, age, past or present physical or mental disability, HIV status, medical condition as defined by state law (genetic characteristics or cancer), pregnancy, childbirth and related medical conditions, veteran status, military service, marital status, familial status, genetic information, domestic violence victim status or any other classification protected by applicable federal, state and local laws and ordinances. This policy applies to hiring, placement, internal promotions, training, opportunities for advancement, recruitment advertising, transfers, demotions, layoffs, terminations, recruitment advertising, rates of pay and other forms of compensation and all other terms, conditions and privileges of employment. This policy applies to all Oaktree applicants, employees, clients, and contractors. Staff members wishing to report violations or suspected violations of this policy should contact the head of their department or Human Resources.

For positions based in Los Angeles

For those applying for a position in the city of Los Angeles, the firm will consider for employment qualified applicants with a criminal history in a manner consistent with applicable federal, state and local law.

Ready to apply to Oaktree Capital Management?
Apply to Oaktree Capital Management

About Oaktree Capital Management

At Oaktree, we focus on hiring individuals with intelligence, dedication, team spirit, integrity and a strong work ethic. We welcome the opportunity to speak with talented professionals who have relevant credentials and experience in investments, marketing and client relations, accounting, legal, compliance, information technology, administrative support and other relevant areas. Equal Opportunity Employment Policy Oaktree is committed to diversity and to equal opportunity employment. Oaktree does not make employment decisions on the basis of race, creed, color, ethnicity, national origin, citizenship, religion, sex, sexual orientation, gender identity, gender expression, age, past or presen

See all jobs at Oaktree Capital Management →

Similar jobs

Oaktree Capital Management
Analyst, Open-end Fund Accounting (CLO)
Oaktree Capital Management
⚡ Apply early Hyderabad Onsite
● New 👁 Seen ✓ Applied 19h ago
Oaktree Capital Management
Senior Associate - .Net Fullstack Enginner
Oaktree Capital Management
⚡ Apply early Hyderabad Onsite
● New 👁 Seen ✓ Applied 19h ago
Oaktree Capital Management
Manager, Treasury Risk
Oaktree Capital Management
⚡ Apply early Hyderabad Onsite
● New 👁 Seen ✓ Applied 3d ago
Oaktree Capital Management
Manager or Senior Manager, Rotational Program, CFO Organization
Oaktree Capital Management
⚡ Apply early Hyderabad Onsite
● New 👁 Seen ✓ Applied 4d ago
Oaktree Capital Management
AI Technology & Security Engineer (AVP/VP)
Oaktree Capital Management
⚡ Apply early Los Angeles, California Onsite $150,000–$190,000
● New 👁 Seen ✓ Applied 6d ago
Oaktree Capital Management
Vice President, Technology Tool Management
Oaktree Capital Management
⚡ Apply early Los Angeles Onsite
● New 👁 Seen ✓ Applied 1w ago
Oaktree Capital Management
Associate - .Net Fullstack Engineer
Oaktree Capital Management
⚡ Apply early Hyderabad Onsite
● New 👁 Seen ✓ Applied 1w ago
Oaktree Capital Management
Senior Associate, Forward Deployment Engineer
Oaktree Capital Management
⚡ Apply early Los Angeles, California Onsite $130,000–$160,000
● New 👁 Seen ✓ Applied 1w ago
Oaktree Capital Management
Administrative Assistant, Information Security
Oaktree Capital Management
⚡ Apply early Chicago - 110 North Wacker Onsite $60,000–$100,000
● New 👁 Seen ✓ Applied 1w ago

Sign up for suggestions tailored to the jobs you open and the searches you save.

More jobs at Oaktree Capital Management

See all jobs at Oaktree Capital Management →

Apply now
🤖

Whoa — hold up

JobsRadar was built for real people having a rough time in their job search — not for automated requests. You're clicking way too fast and you're now temporarily blocked.

Come back later. If you're genuinely job hunting, we've got your back — just act like a human.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Get an edge on your job hunt.

Join our Telegram channel for the stuff that helps you land the role — salary benchmarks, the weekly market pulse, and new-feature drops. No spam, just signal.

Join the channel — it's free