TN Visa Identity Access Management Jobs
Identity Access Management roles qualify for TN visa sponsorship under the Systems Analyst category for Canadian citizens and the USMCA-capped allocation for Mexican citizens. Employers in cybersecurity, finance, and enterprise IT actively hire IAM engineers, architects, and analysts who can start without lottery delays.
See All Identity Access Management JobsOverview
Showing 5 of 30+ Identity Access Management jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 30+ Identity Access Management jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Identity Access Management roles.
Get Access To All Jobs
JOIN THE TEAM THAT’S POWERING PROGRESS
Building cities. Driving commerce. Fueling Progress. For over 100 years, Allison has powered the vehicles and technology that move our world forward.
What powers us? Our employees. From the first person hired by James Allison in 1915 to the thousands across the globe who work for Allison today, we're driving progress everywhere because we employ top talent worldwide. In both the Allison Transmission and Allison Off-Highway Drive and Motion Systems business units, our team strives to Improve the Way the World Works.
Learn more about this role and how you can begin driving your career forward!
Benefits:
The below list features some of the benefits currently available. Eligibility may be subject to the terms and conditions of governing documents and available benefits may be subject to change at the company’s discretion.
- Choice of medical plans with prescription coverage
- Employer HSA contribution
- Dental & Vision Insurance
- Paid Parental Leave
- Short & Long-Term Disability
- Other voluntary benefits including: Critical Illness, Hospital Indemnity, Identity Theft Protection and Pet Insurance
- 401K with generous Company match & contribution
- Accrued Paid Time Off
- 12 Paid Holidays + 1 Floating Holiday
- Robust employee wellness program
- Tuition assistance program
Job Description:
The Identity Access Management (IAM) Analyst III (SAP Security) is responsible for the design, implementation, governance, and operational support of SAP application security across the enterprise. This role serves as the SAP Security Subject Matter Expert (SME) and ensures SAP access controls are compliant with internal security policies, regulatory requirements, and audit standards.
The analyst leads SAP role design, provisioning, and access governance activities, working closely with business stakeholders, SAP functional teams, auditors, and IAM platform teams. The role emphasizes SAP authorization concepts, Segregation of Duties (SoD), privileged access, and lifecycle provisioning, with integration into corporate IAM tools to facilitate capabilities such as joiner, mover, leaver, and privileged access control. The role will have responsibilities outside of SAP Security; however, SAP Security will be their primary focus.
This position is operationally focused, balancing user access needs with strict security controls, and plays a key role in monitoring access-related risks, supporting audits, and responding to SAP security incidents.
Key Responsibilities
- Serve as the SAP Security SME, responsible for end-to-end SAP security administration across related SAP platforms.
- Design, create, maintain, and troubleshoot SAP roles, composite roles, authorization objects, and user assignments.
- Assist with the development of role-based access control (RBAC) models aligned with job functions and business processes.
- Ensure compliance with Segregation of Duties (SoD), CMMC, SOX, and internal audit requirements using SAP GRC or equivalent tools.
- Define and enforce SAP security standards, naming conventions, policies, and procedures.
- Support and enhance SAP access provisioning and deprovisioning through IAM provisioning tools, including role modeling and access workflows.
- Partner with IAM teams to automate the SAP joiner/mover/leaver lifecycle.
- Assist with integrating Privileged Access Management (PAM) solutions for SAP privileged and firefighter accounts.
- Support SAP user access reviews, certifications, and attestation campaigns.
- Support internal and external audits by providing SAP security documentation, access evidence, and remediation plans.
- Assist in analyzing security threat notifications related to SAP systems and recommend corrective actions.
- Work closely with SAP functional teams, business process owners, PMO, Enterprise Architecture, HR, Legal, and Audit partners.
- Establish and maintain strong working relationships with SAP end users and IAM customers.
- Providing guidance and education on SAP accesses best practices and security controls.
- Identify and recommend process improvements to enhance SAP security efficiency, automation, and compliance posture.
- Support ongoing SAP security operations and other IAM/security initiatives as required.
Required Experience & Qualifications
Education
- Bachelor’s degree in Information Systems, Cybersecurity, Computer Science, or equivalent practical experience.
Experience
- 6+ years of experience in Identity and Access Management, with a strong concentration in SAP Security.
- Demonstrated hands-on SAP Security administration experience (required), including role design, authorization concepts, and user provisioning.
- Experience in integrating SAP systems with IAM platforms (preferred).
- Experience administering or supporting Privileged Access Management solutions.
- Strong experience securing privileged and elevated SAP accounts, including firefighters and emergency access.
- Experience supporting security for SAP in regulated environments (SOX, CMMC, NIST).
- SAP Security certifications (preferred).
Technical & Compliance Knowledge
- In-depth understanding of:
- SAP authorization framework
- Segregation of Duties (SoD)
- SAP GRC Access Control (or equivalent)
- Knowledge of information security standards and frameworks:
- NIST 800-53, 800-171, CMMC (preferred)
- SOX compliance and audit support
- Familiarity with Active Directory, Red Hat Linux, and enterprise IAM ecosystems relate to SAP access.
Skills & Competencies
- Strong analytical and problem-solving skills with high attention to detail.
- Excellent interpersonal and organizational skills; ability to manage deadlines and competing priorities.
- Ability to adapt to evolving SAP technologies and security requirements.
- Proven ability to identify and implement process optimizations and security improvements.
- Commitment to delivering consistent, high-quality customer service while maintaining strong security controls.
Allison Transmission is an equal opportunity employer. We have opportunities for all qualified applicants regardless of age, race, color, sex, religion, creed, national origin, disability, sexual orientation, gender identity/expression or veteran status.
If you are an individual with a disability or a disabled veteran requiring assistance and/or reasonable accommodations reviewing any of the careers information, please contact us at ati+ask4max@service-now.com.
Please note that Allison Transmission will make an offer of employment only to individuals who have applied for a position using our official application. Be on alert for possible fraudulent offers of employment. Allison Transmission will not solicit money or banking information from applicants.

JOIN THE TEAM THAT’S POWERING PROGRESS
Building cities. Driving commerce. Fueling Progress. For over 100 years, Allison has powered the vehicles and technology that move our world forward.
What powers us? Our employees. From the first person hired by James Allison in 1915 to the thousands across the globe who work for Allison today, we're driving progress everywhere because we employ top talent worldwide. In both the Allison Transmission and Allison Off-Highway Drive and Motion Systems business units, our team strives to Improve the Way the World Works.
Learn more about this role and how you can begin driving your career forward!
Benefits:
The below list features some of the benefits currently available. Eligibility may be subject to the terms and conditions of governing documents and available benefits may be subject to change at the company’s discretion.
- Choice of medical plans with prescription coverage
- Employer HSA contribution
- Dental & Vision Insurance
- Paid Parental Leave
- Short & Long-Term Disability
- Other voluntary benefits including: Critical Illness, Hospital Indemnity, Identity Theft Protection and Pet Insurance
- 401K with generous Company match & contribution
- Accrued Paid Time Off
- 12 Paid Holidays + 1 Floating Holiday
- Robust employee wellness program
- Tuition assistance program
Job Description:
The Identity Access Management (IAM) Analyst III (SAP Security) is responsible for the design, implementation, governance, and operational support of SAP application security across the enterprise. This role serves as the SAP Security Subject Matter Expert (SME) and ensures SAP access controls are compliant with internal security policies, regulatory requirements, and audit standards.
The analyst leads SAP role design, provisioning, and access governance activities, working closely with business stakeholders, SAP functional teams, auditors, and IAM platform teams. The role emphasizes SAP authorization concepts, Segregation of Duties (SoD), privileged access, and lifecycle provisioning, with integration into corporate IAM tools to facilitate capabilities such as joiner, mover, leaver, and privileged access control. The role will have responsibilities outside of SAP Security; however, SAP Security will be their primary focus.
This position is operationally focused, balancing user access needs with strict security controls, and plays a key role in monitoring access-related risks, supporting audits, and responding to SAP security incidents.
Key Responsibilities
- Serve as the SAP Security SME, responsible for end-to-end SAP security administration across related SAP platforms.
- Design, create, maintain, and troubleshoot SAP roles, composite roles, authorization objects, and user assignments.
- Assist with the development of role-based access control (RBAC) models aligned with job functions and business processes.
- Ensure compliance with Segregation of Duties (SoD), CMMC, SOX, and internal audit requirements using SAP GRC or equivalent tools.
- Define and enforce SAP security standards, naming conventions, policies, and procedures.
- Support and enhance SAP access provisioning and deprovisioning through IAM provisioning tools, including role modeling and access workflows.
- Partner with IAM teams to automate the SAP joiner/mover/leaver lifecycle.
- Assist with integrating Privileged Access Management (PAM) solutions for SAP privileged and firefighter accounts.
- Support SAP user access reviews, certifications, and attestation campaigns.
- Support internal and external audits by providing SAP security documentation, access evidence, and remediation plans.
- Assist in analyzing security threat notifications related to SAP systems and recommend corrective actions.
- Work closely with SAP functional teams, business process owners, PMO, Enterprise Architecture, HR, Legal, and Audit partners.
- Establish and maintain strong working relationships with SAP end users and IAM customers.
- Providing guidance and education on SAP accesses best practices and security controls.
- Identify and recommend process improvements to enhance SAP security efficiency, automation, and compliance posture.
- Support ongoing SAP security operations and other IAM/security initiatives as required.
Required Experience & Qualifications
Education
- Bachelor’s degree in Information Systems, Cybersecurity, Computer Science, or equivalent practical experience.
Experience
- 6+ years of experience in Identity and Access Management, with a strong concentration in SAP Security.
- Demonstrated hands-on SAP Security administration experience (required), including role design, authorization concepts, and user provisioning.
- Experience in integrating SAP systems with IAM platforms (preferred).
- Experience administering or supporting Privileged Access Management solutions.
- Strong experience securing privileged and elevated SAP accounts, including firefighters and emergency access.
- Experience supporting security for SAP in regulated environments (SOX, CMMC, NIST).
- SAP Security certifications (preferred).
Technical & Compliance Knowledge
- In-depth understanding of:
- SAP authorization framework
- Segregation of Duties (SoD)
- SAP GRC Access Control (or equivalent)
- Knowledge of information security standards and frameworks:
- NIST 800-53, 800-171, CMMC (preferred)
- SOX compliance and audit support
- Familiarity with Active Directory, Red Hat Linux, and enterprise IAM ecosystems relate to SAP access.
Skills & Competencies
- Strong analytical and problem-solving skills with high attention to detail.
- Excellent interpersonal and organizational skills; ability to manage deadlines and competing priorities.
- Ability to adapt to evolving SAP technologies and security requirements.
- Proven ability to identify and implement process optimizations and security improvements.
- Commitment to delivering consistent, high-quality customer service while maintaining strong security controls.
Allison Transmission is an equal opportunity employer. We have opportunities for all qualified applicants regardless of age, race, color, sex, religion, creed, national origin, disability, sexual orientation, gender identity/expression or veteran status.
If you are an individual with a disability or a disabled veteran requiring assistance and/or reasonable accommodations reviewing any of the careers information, please contact us at ati+ask4max@service-now.com.
Please note that Allison Transmission will make an offer of employment only to individuals who have applied for a position using our official application. Be on alert for possible fraudulent offers of employment. Allison Transmission will not solicit money or banking information from applicants.
See all 30+ Identity Access Management jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Identity Access Management roles.
Get Access To All JobsTips for Finding TN Visa Sponsorship as an Identity Access Management
Document your IAM credentials before applying
TN officers evaluate whether your degree and job title map to Systems Analyst. Gather transcripts, certifications like CISSP or SailPoint credentials, and a letter tying your IAM work history to that USMCA category before you target roles.
Target employers with active USMCA filing history
Financial institutions, healthcare networks, and government contractors run large identity programs and file TN petitions regularly. Prioritize organizations that already manage PAM and identity governance tools, since their HR teams understand the sponsorship paperwork.
Clarify the Systems Analyst classification with your offer letter
The offer letter is your primary TN document. Ask the hiring manager to describe your IAM duties in terms of systems analysis, not just security operations, so CBP can verify the specialty occupation classification without issuing a delay.
Use Migrate Mate to filter roles by sponsorship status
Migrate Mate lets you search IAM jobs specifically filtered for TN visa sponsorship, so you spend time on employers already open to Canadian and Mexican applicants rather than screening out roles after interviews.
Negotiate TN filing timing before accepting an offer
Canadians can file TN at the border the day before starting, but Mexicans need consular processing that takes longer. Confirm your start date accounts for the consular appointment window so you don't lose the role over a paperwork timeline.
Request a detailed support letter from your new employer
CBP wants to see your job title, duties, credentials, and the Systems Analyst nexus in one document. A vague offer letter is the most common reason TN applications for IAM roles get delayed or refused at the port of entry.
Identity Access Management jobs are hiring across the US. Find yours.
Find Identity Access Management JobsIdentity Access Management TN Visa: Frequently Asked Questions
Does Identity Access Management qualify for a TN visa?
Yes. IAM roles typically fall under the Systems Analyst category in the USMCA TN classification list, which covers professionals who analyze and design systems for managing user permissions, authentication, and access controls. Your offer letter must clearly describe duties that map to systems analysis rather than general IT support, and your degree should be in computer science, information systems, or a related field.
How does the TN visa compare to H-1B for IAM professionals?
TN is significantly faster for IAM professionals than H-1B. There is no annual lottery, no cap for Canadian citizens, and Canadians can get TN approval at a port of entry the same day. H-1B registration opens once per year with randomized selection, meaning qualified IAM engineers can wait years before getting a slot. The tradeoff is that TN requires an active job offer and does not allow dual intent toward a green card.
Can Mexican citizens get TN sponsorship for IAM jobs?
Yes, but the process differs from Canada. Mexico has a finite TN allocation under USMCA, and Mexican citizens must apply at a U.S. consulate in Mexico rather than at a port of entry. Consular processing adds time, so Mexican IAM professionals should confirm their start date with employers allows for the appointment and approval window, which can range from a few weeks to over a month.
Where can I find IAM jobs that offer TN visa sponsorship?
Migrate Mate is built specifically for this search. You can filter Identity Access Management roles by TN visa sponsorship status, so you see employers already open to Canadian and Mexican applicants. This removes the guesswork of contacting companies that may not have sponsored TN workers before or lack HR teams familiar with the USMCA process.
What documents do I need to bring to a TN border crossing for an IAM role?
You need a detailed support letter from your employer describing your IAM duties and the Systems Analyst TN category, your degree transcripts and diploma, any relevant certifications such as CISSP or vendor-specific IAM credentials, and a valid Canadian passport. CBP officers make the final determination at the port of entry, so the support letter must explicitly connect your role to the USMCA professional category.
See which Identity Access Management employers are hiring and sponsoring visas right now.
Search Identity Access Management Jobs