Lead PAM Engineer
Providence Global Center leading organization dedicated to delivering innovative solutions in the [Healthcare]. We are seeking highly skilled and experienced IAM Engineers to join our dynamic team. This role is essential in maintaining and enhancing our security posture through effective management of identity and access controls.
Key Responsibilities
Support deployment, configuration and management of EPM solutions to end-point devices in hybrid environments (on-premises and cloud).
- Manage endpoint policies to enforce least privilege and reduce the number of attack surfaces using principles of least privilege and role-based access control (RBAC)
- Work on configuration, development, and maintenance of automation scripts/tools to maintain EPM policies.
- Gather requirements, create implementation plans and implement new policies or versions for EPM to roll out to new devices/users.
- Conduct regular health checks, review/enhance existing implementation, and monitor EPM activities for privileged sessions and enforcement of access policies.
- Perform ongoing activities like testing, upgrading, and patching EPM agents.
- Managing privileged accounts/secrets in Privileged Access Management (PAM) solution.
- Support operational processes for access rotation, auditing, and logging of privileged sessions.
- Conduct access reviews, audit and compliance reporting for privileged accounts/secrets and access policies.
- Implement onboarding of accounts, servers and applications to Privilege Cloud utilizing CyberArk connectors and plugins.
- Resolve incidents related to, and fulfil service requests for access, configurations and artifacts for Privilege Access Management and Endpoint Privilege Management.
- Create and maintain documentation and conduct training sessions for use cases, best practices, and standard operating procedures for Privileged Access Management and Endpoint Privilege Management.
What We’re looking for:
- 7+ years of experience with PAM and EPM solutions, Design, Engineering and Operations.
- Experience with world class Privileged Identity and Access Management and Endpoint Privilege Management solutions (CyberArk, Beyond Trust or any other tools that add value)
- Scripting / Automation tools to manage endpoint and privilege policies using scripting like PowerShell, Python, etc. and deployment tools like SCCM and JAMF.
- Experience working in an enterprise environment with Incident Management, Change Management, and SOX/PCI controls.
- Experience with setting up logging, monitoring, and troubleshooting tools like Crowdstrike, any other SIEM solution.
- Strong interpersonal and consultative skills.
- Ability to effectively prioritize and execute tasks in a high-pressure environment.
- Excellent written & verbal communication skills
- Experience working in a team-oriented, collaborative environment.
- Perform their duties under minimal supervision, exercising autonomy to review and fulfil their duties within the scope of their position.