Fisher Investments

PAM Engineer, Identity and Access Management

Fisher Investments

full-time

Posted on:

Origin:  • 🇺🇸 United States

Visit company website
AI Apply
Manual Apply

Job Level

Mid-LevelSenior

Tech Stack

AWSAzureCloudCyber SecurityGoogle Cloud PlatformJavaScriptPython

About the role

  • Onboard and provision users, store service accounts and password rotations, manage credentials including interactive, non-interactive, and API-based
  • Implement privileged access management programs to improve broader security posture and demonstrate by metrics
  • Manage configuration, administration, and maintenance of CyberArk solution, including both infrastructure and application
  • Oversee documentation and training required for privileged access management solutions and processes, and help define policies and control standards
  • Report progress and system health through metrics and KPIs that are risk-driven and operational in nature
  • Address ticket queue and follow appropriate change management procedures
  • Understand risk and make recommendations for enhancing systems security and processes
  • Keep up on current security technologies, industry trends and threats, and provide IAM/PAM subject matter expertise where relevant
  • Maintain and operate complex information systems and security tools as part of the broader Information Security organization, reporting to the Vice President, Infrastructure Security

Requirements

  • 5+ years of hands-on experience with CyberArk (CyberArk Cloud Platform, EPM, LCD, and CyberArk SaaS Cloud Base)
  • 3+ years of experience implementing enterprise-wide privileged access management technology solution adoption across medium- to large-scale companies
  • 3+ years of experience as a systems engineer at a medium- to large-scale company in Financial Services
  • 1+ years of hands-on experience with IGA systems such as SailPoint
  • Experience with password repository technologies and remote session governance, specifically with the policies that govern target system platforms
  • Excellent knowledge in IAM & PAM ecosystem (technology, standards, implementations, migration, and operational)
  • Strong experience installing, upgrading, configuring, operating, and troubleshooting CyberArk AAM (CCP, CP, ASCP), EPV, PVWA, CPM, PSM, HTML5 Gateway, PSMP, PTA (with various versions)
  • Strong experience in DNA, Discovery scan and automating account onboarding processes
  • Knowledge of application integration with CyberArk through CPM custom plugin
  • Integration experience with SailPoint, Database, SCIM, AWS, GCP, Azure, or Palo Alto
  • Scripting knowledge: PACLI, PowerShell, Python, JavaScript, AutoIt, REST API
  • Bachelor's degree in information assurance, Computer Science, Cybersecurity, Information Systems, or related field
  • CyberArk Certification (Defender and Sentry) preferred
  • Security industry certification preferred (CISSP, SSCP, CISM, SANS GSEC, ECSA, ECSP, Security+)