CyberArk Endpoint Privilege Manager (EPM) SaaS Architect
Role details
Job location
Tech stack
Job description
- Own the enterprise architecture and target operating model for CyberArk EPM SaaS across Windows, macOS and server estates (and other platforms as required).
- Define policy frameworks, patterns and baselines for least-privilege, application control and just-in-time elevation using CyberArk EPM SaaS.
- Design EPM integrations with device management platforms (e.g. Intune, SCCM) identity providers, SIEM (Splunk) and ticketing/ITSM solutions and one MFA tool
- Work with security and end-user computing teams to develop a risk-based rollout strategy, including pilot phases, user impact assessments and success metrics.
- Ensure EPM design aligns with regulatory and security requirements, minimising endpoint privilege risk and supporting audit and compliance needs.
- Provide architectural guidance on policy design, exception handling and break-glass approaches, balancing security with usability and operational efficiency.
- Collaborate with infrastructure and operations teams to design resilient and scalable EPM SaaS configurations, including tenant management and role-based access control.
- Act as the primary architectural contact with CyberArk and other vendors, influencing product usage and roadmap where appropriate.
- Present architectural options and recommendations to senior stakeholders, translating technical EPM concepts into business outcomes.
- Govern and review detailed designs, implementation plans and changes produced by SMEs and delivery partners.
Requirements
Do you have experience in macOS?, * Extensive experience in endpoint security architecture, with specific focus on Endpoint Privilege Management and least-privilege strategies.
- Demonstrable experience architecting and/or implementing CyberArk Endpoint Privilege Manager (EPM) SaaS in medium to large organisations.
- Deep understanding of Windows and macOS endpoint architectures, local privilege models and application control.
- Strong knowledge of device and endpoint management tools such as Intune, SCCM, Group Policy and other software distribution
- Experience integrating security tools with SIEM (Splunk), identity providers (SAML/OIDC), and enterprise logging/monitoring platforms.
- Proven ability to operate in highly regulated environments, interpreting security and compliance requirements into practical EPM controls.
- Strong stakeholder engagement and communication skills, including interaction with CISO, heads of infrastructure, audit, risk and business leaders.
- Ability to produce clear architectural artefacts (LLDs/HLDs, roadmaps, standards, decision records) and drive agreement across technical and business stakeholders.
- Fluency in Dutch is a strong plus.
Benefits & conditions
- An attractive salary package.
- Comprehensive social benefits.
- Flexible working hours in a hybrid work environment
- Facilitating workplace at home.
- Training and mentoring to support the implementation projects.
- Lived values that make us one of the most attractive employers worldwide.
- In addition, DXC Technology stands for equal opportunities and offers employees the compatibility of family and work as well as continuous development opportunities.
DXC Technology stands for equal opportunities, namely we do not discriminate on the basis of race, religion, colour, sex, age, disability or sexual orientation. All recruitment decisions are based solely on qualifications, skills, knowledge and experience and relevant business requirements
At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We're committed to fostering an inclusive environment where everyone can thrive.