NO SPONSORSHIP
As a member of the Secrets and Privileged Access Management team you are responsible for applying skills and knowledge to perform functions for Privileged Access and Secrets Management solutions, Hardware security modules (HSMs), and encryption practices. You must ensure to take a security first approach when deploying or integrating Secrets Management, PKI, Sessions Management, or authentication integrations under the team’s purview using agile methodology. You will need CyberArk Engineer experiencer
- Design, document, deploy, and support PAM solutions supporting vaulting, session management, hardcoded credential removal, and support integrations with PAM solution for secure secrets management supporting app-to-app communication.
- Design, document, develop, and support PAM integrations to support automated password rotations and establishing secure sessions through jump host solution.
- Design, document, implement, and maintain our Certificate Authority PKI infrastructure.
- Ensure certificates are correctly issued, renewed, and revoked as necessary.
- Implement and manage certificate templates and revocation configurations.
- Implement, configure, and maintain HSMs to support PKI operations.
- Work with vendors to ensure systems are patched and up to date.
- Address and troubleshoot issues related to PAM, PKI, and HSM solutions.
- Implement and manage encryption tools and software.
Qualifications:
- Experience with enterprise PAM tools and technologies.
- CyberArk Administration and Engineering
- Experience with various integration techniques for Secrets Management and Privileged Management to target systems such as databases, directories, and applications.
- Experience with Microsoft certificate authority PKI infrastructure.
- Experience with hardware security modules (HSMs).
- Experience with Python, Ansible, Terraform, and YAML packages.
- Requires in-depth knowledge of PAM and Secrets Management best practices.
- Requires in-depth knowledge of encryption algorithms, protocols, and best practices.
- Working knowledge of system monitoring techniques and tooling.
- Working knowledge CI/CD deployments
- 7+ years of experience with PAM tools and technologies.
- 3+ years of experience in PKI infrastructure including Microsoft Certificate Authority.
- Bachelor’s degree
Technical Skills:
- Hands on deployment, management, and troubleshooting experience with HSMs, MS PKI, CyberArk components (AIM, PSM/P, PVWA, CPM, VAULT).
- Hands on experience leveraging APIs.
- Knowledge key lifecycle management with HSM and encryption tools.
- Ability to interpret logs and events related to PKI, HSMs, encryption, and PAM activities.
Education and/or Experience:
- 7+ years of experience with security engineering activities and testing.
- 7+ years of experience with privileged access management platforms.
- 3+ years of experience with HSM, PKI, Microsoft Certificate Authority.
- 2+ years of experience with DevOps/DevSecOps (e.g., GitOps, Version Control, RESTful APIs)
- 2+ years of experience with cloud architecture and deployments.
Certificates or Licenses:
- CyberArk Defender, Sentry, or Guardian