> Markdown version of [/jobs/ext/2021856-privileged-access-management-architect](https://www.wearedevelopers.com/jobs/ext/2021856-privileged-access-management-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Privileged Access Management Architect - **Company:** Jaguar Land Rover - **Location:** Tadworth, UK - **Salary:** £80,000.0 - £85,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Application Programming Interfaces (APIs), Amazon Web Services, Microsoft Azure, Software as a Service, Cloud Computing, Cloud Engineering, Key Management, Windows PowerShell, Azure Active Directory, Zero Trust Network Access, Cyberark, Sentry, Hardware Infrastructure, Cloud Migration, Terraform - **Published:** August 11, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5836604954 ## About the Role * Enterprise PAM architecture ownership, with direct experience defining a target state rather than only operating a platform * CyberArk architecture and deployment experience, including self-hosted or Privilege Cloud, with implementation oversight * CyberArk Sentry certification or higher, supported by hands-on deployment evidence * Strong Active Directory and Microsoft Entra ID foundations, with practical AWS and Azure exposure * Experience in regulated or high-consequence environments, including risk, audit, and evidence management * Strong senior stakeholder influence and the ability to get designs adopted, not just approved * Financial services background * CyberArk Guardian, CISSP, CCSP, or SC-300 certification desirable * Privilege Cloud migration experience desirable * Experience with secrets management and non-human identity desirable * Experience with endpoint privilege management desirable * Experience with cloud-native just-in-time access desirable * Automation experience using PowerShell, APIs, or Terraform desirable ## Description * Define our privileged access target architecture, including principles, standards, reference designs, and the roadmap to achieve them * Embed privileged access controls consistently across our on-premises infrastructure, AWS, Azure, and SaaS environments * Oversee implementations and provide design assurance without owning day-to-day operations * Align privileged access with Zero Trust and our wider enterprise identity strategy * Balance security and usability so our administrators can work effectively while remaining protected * Influence Security, Cloud, Infrastructure, and Risk stakeholders to adopt our designs without relying on positional authority Technologies: * AWS * Active Directory * Architect * Azure * Cloud * PowerShell * Security * Sentry * Terraform More: We are a growing global financial services business offering an exciting opportunity for a Privileged Access Management Architect or Lead Cyber Engineer to step up and shape our privileged access strategy across a hybrid estate. In this role, we focus on reducing the risk associated with privileged human, administrative, and service identities while working across Security, Cloud, Infrastructure, and Risk to deliver practical, secure, and usable designs. ## Related Videos - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [From Doubt to Confidence: How Sentry Uses Verdaccio to Bulletproof SDK Releases](https://www.wearedevelopers.com/videos/739-from-doubt-to-confidence-how-sentry-uses-verdaccio-to-bulletproof-sdk-releases) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [Building Sovereign AI: Lessons from Deploying Secure RAG Systems using Confidential Computing](https://www.wearedevelopers.com/videos/100108-building-sovereign-ai-lessons-from-deploying-secure-rag-systems-using-confidential-computing) - [Debugging in the Dark](https://www.wearedevelopers.com/videos/1658-debugging-in-the-dark) - [Implementing Feature Environments with AWS and Terraform](https://www.wearedevelopers.com/videos/531-implementing-feature-environments-with-aws-and-terraform) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)