Senior PAM Security Engineer
Indexed description
Job Description
As a Senior Security Engineer specializing in Privileged Access Management (PAM), you will help support Experian's global PAM programs. You will work with CyberArk and other PAM technologies to provide secure, scalable and compliant solutions across both on-premises and cloud environments. Your scope will include system availability, vulnerability management, OS and application support and compliance agreement.
You will implement new PAM capabilities, supporting production systems and maintaining internal documentation. You'll collaborate with Cybersecurity, service desk leaders, systems engineering, network security, audit, application development, and infrastructure teams to align PAM solutions with business and compliance requirements.
Primary Responsibilities
- Conduct detailed analysis of consolidated data from multiple sources, resolve conflicts. Translate high-level information into applicable technical work plans.
- Create IAM transformation through the expansion of PAM capabilities by developing new features and automation based on our requirements and internal efficiency opportunities.
- Diagnose and perform root cause analysis on complex issues across PAM platforms, ensuring minimal disruption and swift resolution.
- Maintain system health, apply patches, and support vulnerability remediation for PAM systems in both cloud and on-prem environments.
- Recommend technical adjustments and improvements to meet evolving business and compliance needs.
- Ensure high availability of IAM/PAM systems through proactive maintenance and incident response.
- Based on growth and support implementation.
- Provide on-call support as part of a rotating team schedule.
- Implement and support compliance activities, ensuring understanding of internal security policies and external regulatory standards.
- 5+ years of hands-on experience in IAM and PAM technologies, including CyberArk (preferred), BeyondTrust, or Delinea.
- Cloud PAM experience with AWS, Azure, or GCP is required.
- Working knowledge of IAM concepts such as Active Directory, Azure AD, LDAP, and authentication/authorization protocols across hybrid environments.
- Proficiency with Windows and Linux OS administration, particularly in securing UNIX systems and integrating with PAM tools.
- Solid understanding of networking protocols (e.g., TCP/IP) and connectivity and integration issues.
- Familiarity with security frameworks and compliance standards such as NIST, ISO 27001, SOX, and modern PAM best practices.
- Knowledge of the Incident Response lifecycle and under Agile methodologies.
- Experience with DevOps and IaC tools, including Terraform, is required.
- Proficiency in scripting languages such as PowerShell, Python, or Ansible, with hands-on automation experience.
- Collaborative mindset, and the in teams.
- Experience with CyberArk EPM and Delinea's Centrify is a bonus
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search