Identity Access Management (IAM) Engineer – CyberArk & PKI
Core
Design, implement, and operate enterprise Privileged Access Management (PAM) and Public Key Infrastructure (PKI) solutions to secure privileged user access, service accounts, and machine identities globally.
Role type
Senior IC IAM Engineer (CyberArk & PKI)
Builds
Enterprise-grade privileged access controls and certificate-based trust infrastructure for infrastructure, applications, and public-facing websites.
Domain
Cybersecurity / Identity & Access Management / Cryptography
Required skills
CyberArk PAM administration, PKI lifecycle management, Microsoft ADCS, certificate management, PowerShell scripting, Python scripting, cloud integration (Azure/AWS), Active Directory integration, credential vaulting, session management, troubleshooting complex security issues.
Preferred skills
CyberArk certifications, Keyfactor/Venafi experience, CI/CD pipeline integration, security compliance frameworks (SOX, ISO 27001, NIST), large enterprise IAM operations.
Technologies
CyberArk (Vault, CPM, PVWA, PSM), 1Password, HashiCorp Vault, Microsoft AD Certificate Services, DigiCert, Keyfactor, PowerShell, Python, Azure, AWS, Active Directory.
Responsibilities
Design and deploy PAM solutions using CyberArk and other tools; administer CyberArk components and PKI platforms; manage certificate issuance, renewal, and revocation; develop automation for PAM and PKI workflows; integrate solutions with cloud and on-prem environments; troubleshoot credential and certificate outages; support audit and compliance activities.
Seniority
Senior, hands-on IC