> Markdown version of [/jobs/ext/2637831-privileged-access-management-pam-senior-specialist-cyberark-and-hashicorp-vault-experience-required](https://www.wearedevelopers.com/jobs/ext/2637831-privileged-access-management-pam-senior-specialist-cyberark-and-hashicorp-vault-experience-required). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Privileged Access Management (PAM) Senior Specialist (CyberArk and HashiCorp Vault experience required) - **Company:** Bank of America - **Location:** Jersey City, NJ, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Application Integration Architecture, User Authentication, Cloud Engineering, Continuous Integration, Identity and Access Management, Key Management, Software Engineering, Cyberark, Software Security, Hashicorp, Devsecops, Api Management - **Published:** August 4, 2026 - **Apply:** https://dejobs.org/x/x/E6BFB633DC2841CB8FE45A8885098819/job/ ## About the Role * 10+ years' experience leading security, IAM, PAM, secrets management, or application security initiatives in a large enterprise environment. * Strong understanding of CyberArk, HashiCorp Vault, privileged access management, secrets management, and application security principles. * Ability to work directly with application development teams and understand modern application architectures, APIs, and integration patterns. * Demonstrated ability to drive complex cross-functional initiatives from planning through execution. * Technical depth to review solution designs, implementation approaches, and alignment with enterprise security standards. * Strong organizational, communication, stakeholder management, and influence skills. * Detail-oriented execution mindset with the ability to establish structure, governance, and delivery discipline., * Experience with cloud-native architecture, DevSecOps, CI/CD pipelines, and automation. * Knowledge of secure software development lifecycle practices. * Familiarity with identity security, machine identities, and enterprise-scale authentication and authorization patterns. * Experience operating in highly regulated or large enterprise environments. ## Description This role reports directly to the Technology Executive overseeing Privileged Access Management governance and operations for the bank and will play a key role in advancing enterprise adoption of CyberArk and HashiCorp Vault by establishing scalable operating routines, adoption models, and delivery discipline across the organization. The individual must be highly driven and technically proficient, with the ability to lead strategic and execution-focused initiatives that onboard applications to privileged access and secrets management platforms while ensuring alignment with enterprise security standards. The successful candidate will serve as a key liaison across security, application development, infrastructure, and API management teams, driving seamless integration of security capabilities into business services. This individual must be comfortable operating at both strategic and technical levels, influencing cross-functional teams, shaping adoption strategies, and establishing scalable execution practices that can support future growth of the function., Enterprise Adoption & Execution * Drive adoption of CyberArk and HashiCorp Vault across application portfolios. * Develop onboarding plans, roadmaps, and milestones to accelerate platform adoption. * Coordinate cross-functional delivery across application, infrastructure, security, product, and platform teams. * Track metrics, risks, dependencies, and blockers to ensure execution discipline and measurable progress. Application Integration & Technical Enablement * Partner with application teams to design and implement vault-aware solutions aligned to security standards. * Provide technical guidance on secrets management, privileged access integration, credential modernization, and secure implementation practices. * Review solution designs and integration patterns to ensure alignment with enterprise standards. * Identify opportunities to simplify adoption through automation, scalable integrations, and repeatable practices. Stakeholder Engagement & Influence * Build trusted relationships with technology leaders, architects, developers, and business partners. * Communicate status, risks, dependencies, and recommendations to senior stakeholders. * Influence teams to align around enterprise security objectives, adoption priorities, and delivery timelines., Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates. View your "Know your Rights (https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12.pdf) " poster. View the LA County Fair Chance Ordinance (https://dcba.lacounty.gov/wp-content/uploads/2024/08/FCOE-Official-Notice-Eng-Final-8.30.2024.pdf) . ## Related Videos - [Enterprise-Cloud-Native - Fast-Paced Development & Deployment in a Highly Secure Banking Environment](https://www.wearedevelopers.com/videos/671-enterprise-cloud-native-fast-paced-development-deployment-in-a-highly-secure-banking-environment) - [Bridging AI and Nomad: a Go-based MCP Server for Cluster Control](https://www.wearedevelopers.com/videos/2063-bridging-ai-and-nomad-a-go-based-mcp-server-for-cluster-control) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [Securing Secrets in the GitOps era](https://www.wearedevelopers.com/videos/546-securing-secrets-in-the-gitops-era) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Top 6 Hackathons for Developers in 2023](https://www.wearedevelopers.com/magazine/263-top-6-hackathons-for-developers-in-2023) - [The top 200 passwords of 2024 can be cracked in less than a second](https://www.wearedevelopers.com/magazine/502-the-top-200-passwords-of-2024-can-be-cracked-in-less-than-a-second)