> Markdown version of [/jobs/ext/1067578-privileged-access-management-engineer](https://www.wearedevelopers.com/jobs/ext/1067578-privileged-access-management-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Privileged Access Management Engineer - **Company:** Mizuho Americas LLC - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $81,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Adobe InDesign, Application Programming Interfaces (APIs), Amazon Web Services, Microsoft Azure, Unix, Cloud Computing, Databases, DevOps, Identity and Access Management, Python (Programming Language), Windows PowerShell, Cloud Services, Session Management, Scripting, Google Cloud, Enterprise Software Applications, Cyberark, SailPoint, Restful APIs, Servicenow - **Published:** June 9, 2026 - **Apply:** https://www.dice.com/job-detail/b1a15fe6-7959-4705-bf2c-9d160fc93bae ## About the Role * 7+ years of experience in Identity & Access Management, cybersecurity engineering, or related infrastructure security roles, with a strong focus on Privileged Access Management. * Demonstrated experience with CyberArk. * Experience in enterprise environments (Windows, Unix, databases, service accounts). * Familiarity with security controls and regulatory expectations related to identity, credential, and Privileged Access Management (e.g., SOX, NIST). * Strong collaboration and communication skills, with the ability to work effectively across infrastructure, cloud, security, and DevOps teams. ## Description We are seeking a CyberArk Engineer to support the implementation, operation, and ongoing management of our Privileged Access Management (PAM) platform. The role is responsible for securing privileged and service accounts, ensuring compliance with security standards, and supporting enterprise users and applications. This hands-on engineering role focuses on delivering secure and scalable solutions for managing privileged accounts used by servers, applications, services, APIs, and cloud workloads. The ideal candidate has deep expertise in CyberArk and related technologies. This role is critical to strengthening the firm's identity security posture, enabling secure cloud adoption, and supporting compliance with regulatory and internal control requirements, Core CyberArk / PAM Engineering * Design, implement, and maintain CyberArk Privileged Access Management (PAM) solutions to secure privileged, service, and application accounts across enterprise environments. * Configure and manage CyberArk components including Digital Vault, PVWA, CPM, PSM, and connectors (Windows, Unix, Database, Cloud where applicable). * Create and manage safes, platforms, access policies, and permissions in accordance with least-privilege and security standards. * Build automations to support the core PAM activities. Privileged Account Onboarding & Lifecycle Management * Lead onboarding of privileged and service accounts into CyberArk, including inventory validation, account vaulting, and enabling password rotation. * Work closely with infrastructure and application teams to identify dependencies and ensure password changes do not disrupt services. * Manage account lifecycle activities such as modifications, offboarding, and exception handling. Password & Session Management * Implement and monitor automated password rotation and reconciliation for managed accounts. * Configure and support Privileged Session Management (PSM) for secure access and session recording. * Troubleshoot password rotation failures, access issues, and CPM/PSM errors. Operations, Monitoring & Support * Provide L2/L3 operational support, including root-cause analysis and coordination with vendors or internal teams. * Maintain and update runbooks, SOPs, and operational documentation for CyberArk processes. Compliance, Audit & Governance * Support audit and regulatory requirements by generating CyberArk reports, access certifications, and compliance evidence. * Participate in periodic privileged access recertifications and remediation of findings. * Ensure CyberArk configurations align with IAM standards, internal policies, and regulatory frameworks (e.g., SOX, ISO, internal audits). Integration & Automation * Integrate CyberArk with IAM tools (e.g., SailPoint), Active Directory, ServiceNow and other enterprise applications. * Support use of CyberArk REST APIs and Central Credential Provider (CCP) for application integrations and automation. * Assist with automation and reconciliation processes related to privileged account discovery and onboarding. Stakeholder Collaboration * Act as a subject-matter expert (SME) for CyberArk/PAM, advising application, infrastructure, and security teams. * Coordinate with IAM Governance, Risk, Compliance, and Audit teams on PAM-related initiatives. * Participate in design and architecture discussions to identify gaps and drive scalable, automation-friendly improvements. Nice to Have * Experience with cloud PAM (AWS, Azure, Google Cloud Platform) * Scripting (PowerShell, Python) for automation * CyberArk certifications (CPC, CDE, Defender) ## Related Videos - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [WeAreDevelopers LIVE - Node and Package Security](https://www.wearedevelopers.com/videos/2138-wearedevelopers-live-node-and-package-security) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) - [The Time Paradox: Building Timezone-Safe Python/Django Applications](https://www.wearedevelopers.com/videos/1915-the-time-paradox-building-timezone-safe-python-django-applications) ## Related Articles - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Dev Digest 212: WebMCP or MCP, What is DevRel, AI's 10% Productivity Boost, and a 49MB Web Page…](https://www.wearedevelopers.com/magazine/717-dev-digest-212-webmcp-or-mcp-what-is-devrel-ai-s-10-productivity-boost-and-a-49mb-web-page)