Role Summary
As the IGA Product Owner for Saviynt within AbbVie's Information Security & Risk Management (ISRM) team, you will drive the enterprise Identity Governance & Administration program. You will own the Saviynt IGA product and related processes on the Saviynt EIC platform, ensuring alignment with business goals and regulatory requirements. This remote role requires collaboration across IT, Security, Compliance, HR, and business units to deliver secure, compliant identity governance capabilities.
Responsibilities
- Owning and managing the Saviynt IGA product roadmap, including strategic planning and execution of capabilities to meet business needs
- Leading the prioritization of platform enhancements based on business requirements, security priorities, and regulatory compliance needs
- Overseeing the implementation and optimization of IGA processes including access reviews, role-based access control, separation of duties, and identity lifecycle management
- Collaborating with stakeholders across IT, Security, Compliance, HR, and business units to gather requirements and ensure the platform meets organizational needs
- Managing the product backlog, sprint planning, and release management for the Saviynt EIC platform
- Defining and tracking key performance indicators (KPIs) to measure product success and identify areas for improvement
- Overseeing budget planning, resource allocation, and vendor management related to the IGA platform
- Developing and maintaining documentation for IGA processes, policies, and procedures
- Responding to and remediating audit findings related to IGA controls and compliance requirements
- Leading and mentoring a team of IGA specialists, fostering a culture of innovation and continuous improvement
- Serving as the subject matter expert for Saviynt EIC capabilities and IGA best practices
- Ensuring operational excellence through monitoring of system health, performance, and user adoption
- Collaborating with other IAM product owners to ensure seamless integration across the IAM ecosystem
Qualifications
- Bachelor's Degree with 8 years experience; Master's Degree with 7 years experience; PhD with 3 years experience.
- Deep knowledge of Saviynt EIC platform functionality and capabilities
- Experience with role mining, role engineering, and role-based access control implementation
- Understanding of directory services, LDAP, Active Directory, and cloud identity providers
- Knowledge of identity lifecycle management and provisioning workflows
- Proficiency in access certification processes and segregation of duties controls
- Experience with project management and product management methodologies
- Strong analytical and problem-solving skills with ability to translate complex requirements
- Excellent communication and presentation skills for technical and non-technical audiences
- Knowledge of integration with enterprise systems (e.g., Workday, ServiceNow, Active Directory, SAP)
- Understanding of cloud platforms and IGA capabilities in cloud environments
- Experience with enterprise governance, risk, and compliance frameworks
- 8+ years of experience in identity and access management, with at least 5 years focused on identity governance and administration
- Proven experience leading and managing Saviynt EIC global implementations
- Strong product ownership background with experience in leading technology implementations and enhancements
- Demonstrated ability to translate business requirements into technical solutions and product features
- Experience in developing and implementing role-based access control models and governance frameworks
- Strong understanding of identity lifecycle processes, access certification, and separation of duties controls
- Proven track record of stakeholder management and ability to influence across all levels of the organization
- Experience responding to and remediating audit findings related to access controls
- Solid financial management skills including budget planning and resource allocation
- Strong leadership abilities with experience managing and developing technical teams
- Knowledge of regulatory requirements related to identity and access (SOX, GDPR, PCI, etc.)
- Experience with Agile methodologies and product management practices