Senior CyberSecurity Engineer
Role details
Job location
Tech stack
Job description
The Senior Security Engineer, Privileged Access Management (PAM) will serve as an individual contributor responsible for driving the execution of initiatives supporting the enterprise PAM program. Reporting to the Associate Director, CyberSecurity Engineering, this role will implement and operationalize privileged access capabilities across cloud, on-premises, and subsidiary environments. The Senior Engineer will lead complex PAM initiatives, reduce high-risk privileged access, support platform migrations, and act as a technical authority within the PAM domain. This position requires deep technical expertise, strong execution skills, and the ability to work independently while collaborating closely with program, engineering, and business stakeholders., + Design, implement, and maintain PAM solutions, including vaulting, credential rotation, session management, and privileged access workflows.
-
Drive hands-on remediation of high-risk privileged access to ensure principle of least privilege is adhered to and comprehensive controls safeguard existing privileged entitlements.
-
Implement and enhance privileged access controls across Windows, Linux/AIX, MacOS, Active Directory/Azure AD, cloud platforms, and databases.
-
Partner with application, infrastructure, and cloud engineering teams to ensure privileged access is correctly inventoried, vaulted, rotated, and governed.
-
Support onboarding of applications and services into PAM solutions, including privilege mapping, configuration, and testing.
-
Collaborate with the Associate Director on roadmap execution, technical design decisions, and delivery of program initiatives.
-
Provide technical input into PAM posture reporting, risk remediation efforts, and audit/compliance responses.
-
Develop and maintain technical documentation, standards, runbooks, and operational procedures for PAM services.
-
Participate in incident response, troubleshooting, and root-cause analysis for PAM-related issues.
-
Support on-call responsibilities and escalation handling for privileged access services as required.
-
Stay current on emerging PAM technologies, threats, and best practices to continuously improve PAM capabilities., Travel: While this is a remote position, occasional travel to Humana's offices for training or meetings may be required.
Scheduled Weekly Hours
40
Requirements
-
3 - 5 years of experience in cybersecurity, IAM, or infrastructure engineering with strong hands-on focus on Privileged Access Management.
-
Deep technical experience with PAM platforms (e.g., CyberArk, BeyondTrust, Delinea), including vaulting, credential rotation, and session management.
-
Strong understanding of privileged access models across Windows, Linux/AIX, Active Directory/Azure AD, and cloud environments.
-
Hands-on experience remediating high-risk privileged access, including service accounts, nested groups, SUDO policies, and elevated admin roles.
-
Working knowledge of cloud platforms (Azure preferred; AWS/GCP a plus) and cloud privileged access patterns.
-
Experience automating PAM workflows using scripting or code (PowerShell, Python, APIs).
-
Ability to execute complex technical initiatives with minimal oversight while aligning to broader program objectives.
-
Strong troubleshooting, analytical, and problem-solving skills.
-
Ability to communicate clearly with technical and non-technical stakeholders.
-
Experience working in SAFE or similar agile work management methodologies is preferred.
-
Ability to participate in on-call support and escalation rotations for PAM services.
Preferred Requirements:
-
Bachelor's degree in Computer Science, IT or other related field.
-
Industry certifications including but not limited to Security+, CISSP, CISM
Remote/WAH requirements:
-
WAH requirements: Must have the ability to provide a high speed DSL or cable modem for a home office. Associates or contractors who live and work from home in the state of California will be provided payment for their internet expense.
-
A minimum standard speed for optimal performance of 25x10 (25mpbs download x 10mpbs upload) is required.
Benefits & conditions
The compensation range below reflects a good faith estimate of starting base pay for full time (40 hours per week) employment at the time of posting. The pay range may be higher or lower based on geographic location and individual pay will vary based on demonstrated job related skills, knowledge, experience, education, certifications, etc.
$117,600 - $161,700 per year
This job is eligible for a bonus incentive plan. This incentive opportunity is based upon company and/or individual performance.
Description of Benefits
Humana, Inc. and its affiliated subsidiaries (collectively, "Humana") offers competitive benefits that support whole-person well-being. Associate benefits are designed to encourage personal wellness and smart healthcare decisions for you and your family while also knowing your life extends outside of work. Among our benefits, Humana provides medical, dental and vision benefits, 401(k) retirement savings plan, time off (including paid time off, company and personal holidays, volunteer time off, paid parental and caregiver leave), short-term and long-term disability, life insurance and many other opportunities.