Job Requirements
Irvine
Secret Polygraph Unspecified
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries
Job Description
A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You'll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Hat, you'll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You'll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences.
Your role and responsibilities
The CyberArk Privileged Access Management (PAM) Architect serves as a core contributor to the CyberArk PAM team, leveraging extensive expertise in the design, implementation, upgrade, and administration of enterprise-grade CyberArk security solutions across complex hybrid environments. This role is responsible for securing privileged identities, mitigating insider threats, and ensuring compliance with industry standards and regulatory requirements.
The ideal candidate demonstrates a proven track record of delivering robust privileged access management solutions, optimizing security controls, and supporting the organization's cybersecurity and governance objectives.
What you'll do:
Key Responsibilities
Compliance & Security Frameworks
*This position can be performed from anywhere in the USA*
Required education
Bachelor's Degree
Preferred education
Master's Degree
Required technical and professional expertise
What you'll bring
Your role and responsibilities
The CyberArk Privileged Access Management (PAM) Architect serves as a core contributor to the CyberArk PAM team, leveraging extensive expertise in the design, implementation, upgrade, and administration of enterprise-grade CyberArk security solutions across complex hybrid environments. This role is responsible for securing privileged identities, mitigating insider threats, and ensuring compliance with industry standards and regulatory requirements.
The ideal candidate demonstrates a proven track record of delivering robust privileged access management solutions, optimizing security controls, and supporting the organization's cybersecurity and governance objectives.
What you'll do:
- CyberArk PAM Suite Architecture and Design
- Privileged Access Security & Identity Governance
- CyberArk PAS Components:
- Digital Vault
- Privileged Vault Web Access (PVWA)
- Central Policy Manager (CPM)
- Privileged Session Manager (PSM)
- Privileged Threat Analytics (PTA)
- Enterprise Secret Manager (Conjur)
- Credential Providers (CP)
- CyberArk SaaS and Self-Hosted Deployments
- Discovery and Onboarding of Privileged Accounts
- Session Monitoring, Recording, and Auditing
- Password Management and Rotation
- Secrets Management & DevSecOps Integration
- Zero Trust and Least Privilege Implementation
- Access Certification and Compliance Management
- High Availability, Disaster Recovery, and Migration Strategies
- Secrets Manager (Conjur)
Key Responsibilities
- Design and implement CyberArk PAM architectures aligned with business and security requirements.
- Lead CyberArk deployments, upgrades, migrations, and platform hardening activities.
- Configure safes, platforms, account onboarding, password rotation, and session management policies.
- Integrate CyberArk with Active Directory, SIEM, MFA, ServiceNow, and cloud services.
- Develop security standards, operational procedures, and PAM governance models.
- Conduct risk assessments and recommend privileged access controls based on Zero Trust principles.
- Provide L3 support, troubleshooting, performance tuning, and capacity planning.
- Collaborate with security, infrastructure, cloud, and application teams to secure privileged accounts and secrets.
Compliance & Security Frameworks
- NIST Cybersecurity Framework
- CIS Controls
- ISO 27001
- SOX
- PCI-DSS
- HIPAA
- GDPR
- Zero Trust Security Architecture
*This position can be performed from anywhere in the USA*
Required education
Bachelor's Degree
Preferred education
Master's Degree
Required technical and professional expertise
What you'll bring
- 10+ years of Information Security experience and 5+ years specializing in CyberArk Privileged Access Management solutions
- Experience with operating Systems such as: Windows Server, Linux, Unix
- Cloud Platforms: Azure, AWS, Google Cloud Platform
- Directory Services: Active Directory, LDAP, Entra ID (Azure AD)
- SIEM Integration: Splunk, QRadar, ArcSight, Sentinel
- Ticketing & ITSM: ServiceNow, Remedy
- Automation/Scripting: PowerShell, Python, REST APIs
- DevOps Tools: Jenkins, Kubernetes, Docker, OpenShift
- Databases: SQL Server, Oracle, PostgreSQL
group id: 90615168
There is no other company like IBM and there is no business professional like the IBMer. We are experts in nearly every technical scientific and business field. We are citizens of, and apply our expertise in, more than 170 countries. Yet we are united by a single purpose: to be essential. IBMers change how the world works. Join us at IBM Consulting and embrace your passion to make a difference.