Site Reliability Engineer III
Role details
Job location
Tech stack
Job description
This position is for a Senior Site Reliability Engineer specializing in Identity Management. The role is responsible for the reliability, security, and operational excellence of privileged identity and secrets management platforms, including CyberArk PAM, CyberArk Secrets Vault, and cloud-native technologies. This role combines hands-on engineering, operational leadership, and cybersecurity expertise, with a focus on incident prevention and vulnerability remediation., * Serve as the senior technical subject matter expert for CyberArk PAM, CyberArk Secrets Vault, and enterprise secrets management platforms.
- Apply Site Reliability Engineering (SRE) principles to identity platforms, focusing on availability, scalability, resilience, and performance.
- Lead vulnerability remediation efforts for identity and PAM platforms, including configuration hardening and architectural improvements.
- Identify, assess, and drive the remediation or removal of non-standard identity technologies.
- Design and maintain high-availability and disaster recovery architectures for PAM and vault services.
- Develop and maintain automation for provisioning, secrets rotation, access workflows, and operational tasks.
- Implement and enhance monitoring, logging, alerting, and observability for identity services.
- Lead or support incident response, root cause analysis, and post-incident improvements.
- Partner with Engineering, Cyber Security, and Cloud teams to embed reliability and security controls into solutions.
- Contribute to standards, runbooks, and operational documentation for identity services.
- Support audits, risk assessments, and compliance initiatives related to privileged access and secrets management.
Requirements
Experience: Proven experience as a Site Reliability Engineer (SRE) or senior production operations engineer. Extensive hands-on experience with CyberArk PAM (EPM, PSM, PSMSession, CPM, PVWA) and strong expertise in CyberArk and HASHI Secrets Vault or similar enterprise secrets management solutions. Experience operating identity platforms across on-premises and public cloud environments (AWS, Azure, Google Cloud Platform).
Technical Skills: Deep understanding of identity and access management (IAM), privileged access, and Tier-0 security concepts. Strong background in Linux/Unix systems, networking, and security fundamentals. Expertise in automation and scripting (e.g., Python, PowerShell, Bash). Experience with monitoring and observability tools., * Experience with cloud-native secrets services such as AWS Secrets Manager, Azure Key Vault, or Google Cloud Platform Secret Manager.
- Infrastructure-as-Code experience (Terraform, ARM, CloudFormation).
- Familiarity with Zero Trust and Identity Threat Detection Response (ITDR) concepts.
- Experience supporting regulatory, audit, and compliance requirements related to IAM and PAM.
- Knowledge of container and platform integrations (Kubernetes secrets, CI/CD pipelines).
- Prior experience in large-scale enterprise or regulated environments.