Gainwell Technologies is a company focused on improving health and well-being through innovative technology solutions. The Senior Business Analyst - Security Specialist will design and support Role-Based Access Control (RBAC) solutions, collaborating with stakeholders to ensure secure and compliant access management across systems.
Responsibilities:
- Apply RBAC and IAM expertise to support role design, access governance, and identity lifecycle processes
- Lead requirements elicitation and documentation, translating business needs into clear functional and technical specifications
- Perform access and role modeling, including analysis of current ("as-is") processes and design of optimized ("to-be") role structures
- Facilitate stakeholder communication and workshops to align business, security, and technical teams on access policies and solutions
- Support testing and validation activities, including UAT, to ensure RBAC implementations meet business, security, and compliance requirements
Requirements:
- 6 or more years of experience in a relevant Business Analyst position
- Strong Business Analyst experience with process mapping tools (Visio, Lucidchart)
- Strong Business Analyst experience with user stories, BRDs, FRDs, use cases
- Ability to handle complex enterprise system integrations
- Core IAM / Security Skills: Hands-on experience with IAM platforms (SailPoint, Saviynt, Okta, Azure AD / Entra ID, Oracle OIM)
- Core IAM / Security Skills: Segregation of Duties (SoD) and least privilege access principles
- Core IAM / Security Skills: Access certifications / access reviews (recertification campaigns)
- Testing & Delivery: UAT coordination and execution
- Testing & Delivery: Defect tracking tools (JIRA, Azure DevOps)
- Experience in Agile / Scrum environments
- Strong stakeholder influence and negotiation skills
- Ability to work across security, IT, and business teams
- Experience handling conflicting access requirements vs. security controls
- 3 or more years of Medicaid and Medicare experience
- Data analysis / SQL (basic to intermediate preferred)
- Privileged Access Management (PAM) concepts (CyberArk, BeyondTrust - nice to have)