CyberArk PAM Engineer
ComTec
Elizabeth, United States of America
3 days ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
SeniorJob location
Elizabeth, United States of America
Tech stack
Authentication Protocols
Automation of Tests
Information Systems
Databases
Python
Network Security
Lightweight Directory Access Protocols (LDAP)
Powershell
Security Assertion Markup Language (SAML)
Session Manager SubSystems
Systems Integration
Windows Desktop
Scripting (Bash/Python/Go/Ruby)
Cyberark
Network Server
Job description
We are seeking a Senior CyberArk PAM Engineer with hands-on experience in onboarding applications and accounts into CyberArk solutions. The ideal candidate will have deep expertise in Privileged Access Management (PAM) technologies, including PSM, CPM, ZSP, and SIA, along with strong experience managing service accounts in enterprise environments., * Design, implement, and maintain CyberArk PAM solutions across the enterprise.
- Onboard applications, servers, databases, and privileged accounts into CyberArk Vault.
- Configure and manage Privileged Session Manager (PSM) for secure session monitoring and recording.
- Administer Central Policy Manager (CPM) for automated password rotations and policy enforcement.
- Implement and support Zero Standing Privileges (ZSP) strategies to minimize persistent access risks.
- Work with Secure Infrastructure Access (SIA) to enable secure, seamless privileged access.
- Manage and secure service accounts, including password rotations, dependency mapping, and access controls.
- Develop and maintain onboarding workflows, automation scripts, and documentation.
- Troubleshoot CyberArk platform issues and perform root cause analysis.
- Collaborate with application owners, infrastructure teams, and security stakeholders to ensure smooth integrations.
Requirements
- 5+ years of experience in CyberArk Privileged Access Management (PAM).
- Hands-on experience with CyberArk components including Vault, PSM, CPM, ZSP, and SIA.
- Proven experience onboarding applications and privileged accounts into CyberArk.
- Strong experience managing and securing service accounts in enterprise environments.
- Knowledge of authentication mechanisms (LDAP, RADIUS, SAML, etc.).
- Familiarity with Windows, Linux/Unix systems, and network security concepts.
- Experience with scripting (PowerShell, Python, or similar) for automation.
- Strong troubleshooting and analytical skills.
- Strong communication and collaboration skills.
- Detail-oriented with a focus on security best practices.