Tech Stack
AWSAzureCloudCyber SecurityGoogle Cloud PlatformJavaScriptPython
About the role
- Onboard and provision users, store service accounts and password rotations, manage credentials including interactive, non-interactive, and API-based
- Implement privileged access management programs to improve broader security posture and demonstrate by metrics
- Manage configuration, administration, and maintenance of CyberArk solution, including both infrastructure and application
- Oversee documentation and training required for privileged access management solutions and processes, and help define policies and control standards
- Report progress and system health through metrics and KPIs that are risk-driven and operational in nature
- Address ticket queue and follow appropriate change management procedures
- Understand risk and make recommendations for enhancing systems security and processes
- Keep up on current security technologies, industry trends and threats, and provide IAM/PAM subject matter expertise where relevant
- Maintain and operate complex information systems and security tools as part of the broader Information Security organization, reporting to the Vice President, Infrastructure Security
Requirements
- 5+ years of hands-on experience with CyberArk (CyberArk Cloud Platform, EPM, LCD, and CyberArk SaaS Cloud Base)
- 3+ years of experience implementing enterprise-wide privileged access management technology solution adoption across medium- to large-scale companies
- 3+ years of experience as a systems engineer at a medium- to large-scale company in Financial Services
- 1+ years of hands-on experience with IGA systems such as SailPoint
- Experience with password repository technologies and remote session governance, specifically with the policies that govern target system platforms
- Excellent knowledge in IAM & PAM ecosystem (technology, standards, implementations, migration, and operational)
- Strong experience installing, upgrading, configuring, operating, and troubleshooting CyberArk AAM (CCP, CP, ASCP), EPV, PVWA, CPM, PSM, HTML5 Gateway, PSMP, PTA (with various versions)
- Strong experience in DNA, Discovery scan and automating account onboarding processes
- Knowledge of application integration with CyberArk through CPM custom plugin
- Integration experience with SailPoint, Database, SCIM, AWS, GCP, Azure, or Palo Alto
- Scripting knowledge: PACLI, PowerShell, Python, JavaScript, AutoIt, REST API
- Bachelor's degree in information assurance, Computer Science, Cybersecurity, Information Systems, or related field
- CyberArk Certification (Defender and Sentry) preferred
- Security industry certification preferred (CISSP, SSCP, CISM, SANS GSEC, ECSA, ECSP, Security+)