Fidelity TalentSource is your destination for discovering your next temporary role at Fidelity Investments. We are currently sourcing for a Principal Systems Analyst to work in Merrimack, NH or Smithfield, RI!
The Role
The Principal Systems Analyst is responsible for designing, governing, and maintaining secure, compliant access to enterprise platforms. This role builds and enforces an enterprise entitlement strategy, aligns policies with governance frameworks, supports systems integration (database, SSO, IAM), and ensures audit readiness through rigorous documentation, evidence, and data health practices. The IAG Analyst partners cross functionally with business, data, cybersecurity, and product teams to deliver risk aware access models that scale.
Key Responsibilities
Entitlement Strategy & Role DefinitionCollaborate with business, data, architecture, product, and cybersecurity teams to:
- Define user roles, entitlement groups, and access levels based on business functions and security requirements.
- Establish naming conventions and taxonomy for entitlements to ensure clarity and scalability.
- Document and maintain user flows for all personas requiring functional authorization across environments.
Governance & Policy Alignment
- Ensure entitlement structures follow security policies, regulatory requirements, and governance frameworks
- Identify and remediate outdated or excessive entitlements; drive cleanup of unused data/applications.
- Document policies, standards, and approval workflows; maintain accountability with governance bodies.
- Partner with Cybersecurity and Risk teams to identify and document access risks or policy violations.
- Support remediation planning with ongoing or future audits.
- Maintain audit-ready documentation and partner with Cybersecurity and Risk teams to address access risks and support compliance remediation.
Cross-Functional Enablement
- Validate technical artifacts for secure identity federation (metadata, certificates, endpoints, stored procedures) and ensure entitlements integrate correctly with IAM and platform systems.
- Maintain traceability between business roles and system access while understanding authorization enforcement models.
- Provide business and technical requirements for current and future use cases.
- Coordinate with Digital Security teams for policy enforcement and technical controls.
- Facilitate communication across business units, technical teams, governance, and partners to ensure alignment and support product area priorities.
Core IAG Operations
- Maintain accurate records of user accounts, roles, and entitlements; enforce RBAC and least privilege principles.
- Lead access request workflows, approvals, and exceptions.
- Ensure identity activities are logged and auditable; prepare compliance reports and conduct periodic access reviews.
- Document and maintain policies for provisioning, de-provisioning, and role management, support segregation of duties analysis.
- Use IAG tools for reporting; develop and maintain dashboards and metrics.
- Deliver training and mentorship on identity governance policies and collaborate with IT, Security, and Audit teams.
The Expertise You Have
- Bachelor’s degree in Information Systems, Computer Science, Cybersecurity, or equivalent experience.
- 10+ years Systems Analysis experience with 3–5 years in Identity & Access Management/Governance, or related security/IT roles.
- Experience with Entitlement Hierarchy, RBAC, or audit evidence creation.
- Familiarity with compliance frameworks
- Proficiency with data analysis and documentation; ability to interpret and maintain entitlement organization and classification.
- Strong stakeholder management and communication skills across business and technical audiences.
The Skills You Bring
- Experience with Database structures, Salesforce, certificate management, and federation metadata.
- Scripting or query skills (e.g., SQL) for reporting.
Placement in the range will vary based on job responsibilities and scope, geographic location, candidate’s relevant experience, and other factors.
Most roles at Fidelity are Hybrid, requiring associates to work onsite every other week (all business days, M-F) in a Fidelity office. This does not apply to Remote or fully Onsite roles.
Please be advised that Fidelity’s business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirement-related financial activities and the rules and regulations of numerous self-regulatory organizations, including FINRA, among others. Those laws and regulations may restrict Fidelity from hiring and/or associating with individuals with certain Criminal Histories.
Company Overview
At Fidelity, we are passionate about making our financial expertise broadly accessible and effective in helping people live the lives they want! We are a privately held company that places a high degree of value in creating and nurturing a work environment that attracts the best talent and reflects our commitment to our associates. We are proud of our diverse and inclusive workplace where we respect and value our associates for their unique perspectives and experiences. For information about working at Fidelity, visit FidelityCareers.com. Fidelity Investments is an equal opportunity employer. Fidelity will reasonably accommodate applicants with disabilities who need adjustments to complete the application or interview process.Fidelity TalentSource, is the in-house temporary staffing provider for Fidelity Investments. Unlike traditional staffing agencies, we are an internal business unit within Fidelity’s Talent Acquisition team, dedicated to recruiting talent from various backgrounds for roles in Fidelity’s regional and investor center locations. Our mission is to help you experience Fidelity’s diverse and inclusive workplace while expanding your skill set and professional network, with the ultimate goal of conversion to full-time employment as part of Fidelity’s long-term strategy.
For information about working at Fidelity TalentSource, visit FTSJobs.com.
Fidelity TalentSource will reasonably accommodate applicants with disabilities who need adjustments in order to complete the application or interview process. Please email us at HR@ftsjobs.com if you would like to request an accommodation.

