> Markdown version of [/jobs/ext/2068337-information-security-engineer](https://www.wearedevelopers.com/jobs/ext/2068337-information-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Engineer - **Company:** NCR Voyix Corporation - **Location:** Atlanta, GA, United States - **Experience:** Starter - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Application Programming Interfaces (APIs), Artificial Intelligence, Authentication Protocols, Cyber Security, Continuous Integration, Daemon Tools, Information Leak Prevention, Identity and Access Management, Python (Programming Language), Kerberos (Protocol), Lightweight Directory Access Protocols (LDAP), Linux System Administration, Networking Basics, Windows PowerShell, Role-Based Access Control, Systems Integration, Data Logging, Data Processing, Scripting, Cyberark, Information Technology - **Published:** August 15, 2026 - **Apply:** https://www.juju.com/job/00000000gn4k7q ## About the Role + Education: Bachelor's degree in Computer Science , Information Security, or a related field (or equivalent practical experience). + Experience: + 1 - 3 + years of experience in Information Security, IAM, or security engineering with a strong focus on PAM . + Hands-on experience implementing and operating CyberArk in enterprise environments (onboarding at scale, rotation, integrations, monitoring, and troubleshooting). + Demonstrated experience supporting audits and operating with strong change control and documentation discipline. + Technical Skills: + Strong knowledge of privileged access concepts (least privilege, break-glass access, service accounts, just-in-time patterns, session monitoring/recording). + Windows and Linux administration fundamentals (credential usage, services/daemons, scheduling, permissions) and authentication protocols basics (e.g., LDAP/Kerberos/SSO concepts). + Scripting/automation skills in PowerShell and/or Python , with the ability to develop maintainable scripts and perform peer reviews. + Ability to troubleshoot complex issues across applications, infrastructure, and integrations (logs, networking basics, and dependency mapping). + Working knowledge of GenAI and common enterprise AI adoption risks (data leakage, prompt injection, insecure plugins/tools, model/API access control), and the ability to translate these risks into practical identity and secrets-management controls. + Familiarity with using AI-assisted tools responsibly for operational efficiency (triage, documentation, reporting) while ensuring sensitive data handling, logging, and policy compliance. + Certifications (Preferred): + CyberArk certifications (e.g., Defender/Trustee) or equivalent hands-on mastery. + AI security training/certification (e.g., vendor AI security fundamentals) or demonstrated experience supporting secure enterprise AI adoption. + Security+ and/or higher-level certification such as SSCP, CISSP, or CISM (based on experience level). Soft Skills + Strong analytical and problem-solving skills. + Excellent communication and collaboration abilities. + Ability to work under pressure during critical incidents. ## Description We are looking for an Information Security Engineer with strong experience in Privileged Access Management (PAM) to strengthen identity and access security controls across the enterprise. In this role, you will own key PAM capabilities end-to-end (design, implementation, and operational excellence), partner closely with IAM, infrastructure, and application teams, and drive improvements to CyberArk onboarding, credential rotation, and privileged session controls for both human and non-human identities. You will also help the organization adopt AI-enabled operational practices safely by applying secure-by-design principles to automation and AI-assisted workflows (e.g., protecting secrets/API keys used by automation, and ensuring appropriate access controls and auditability)., + PAM Platform Ownership + Own day-to-day reliability, security, and lifecycle management of CyberArk components and integrations (configuration, upgrades, health monitoring, and break-fix). + Define and maintain operational standards (onboarding patterns, safe design, naming/metadata, rotation policies, and access workflows) to ensure consistency and auditability. + Privileged Identity & Credential Lifecycle + Lead onboarding and lifecycle management for privileged accounts (human and non-human), including service accounts, application secrets, and automation identities. + Design and implement password/secret rotation strategies and work with application owners to ensure credential consumers are compatible with rotation and failover. + Privileged Session Controls + Configure and maintain privileged session access controls, including approvals, just-in-time access patterns (where applicable), session monitoring/recording, and least-privilege enforcement. + Perform PAM discovery activities and prioritize remediation of unmanaged privileged access. + Integration & Automation + Implement and troubleshoot integrations between CyberArk and enterprise platforms (e.g., directory services, endpoints/servers, CI/CD, and key application stacks). + Develop and maintain automation (PowerShell/Python) for onboarding, rotation validation, reporting, and operational tasks; contribute to reusable templates and standards. + Risk Reduction, Audit & Compliance + Produce and maintain audit-ready evidence for privileged access controls (e.g., onboarding approvals, rotation success, access reviews, session logs) and support internal/external audits. + Identify gaps in privileged access controls, drive remediation plans, and track improvements through measurable operational metrics. + AI & Automation Security Enablement + Partner with engineering teams to apply least-privilege and credential management patterns for AI/automation identities (e.g., API keys, service principals, tokens) used by scripts, bots, and AI-assisted workflows. + Define and implement controls to reduce AI-related identity risk (secret sprawl, over-privileged tokens, unmanaged credentials), including logging, rotation, and break-glass procedures. + Incident Response & Engineering Support + Provide Tier-3 support and technical leadership during PAM-related incidents; perform root cause analysis and implement corrective/preventive actions. + Mentor junior engineers and contribute to knowledge transfer through runbooks, training, and peer reviews. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Fun with PaaS – How to use Cloud Foundry and its uniqueness in creative ways](https://www.wearedevelopers.com/videos/673-fun-with-paas-how-to-use-cloud-foundry-and-its-uniqueness-in-creative-ways) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)