The Opportunity:
The Identity & Access Management Engineer implements, coordinates, and onboards all aspects and phases of the CyberArk's Privileged Access Management (PAM) on-prem and privilege cloud solution rollout, and CyberArk operational tasks. As part of the broader Information Security organization, you will apply fundamental systems security understanding, skills, and experience to maintain and operate complex information systems and security tools that satisfy organizational mission and our requirements, including partner protection needs and security requirements. You will report to the Vice President, Infrastructure Security.
The Day-to-Day:
Onboard and provision users, store service accounts and password rotations, manage credentials, including those that are interactive, non-interactive, and API-basedImplement privileged access management programs to improve our broader security posture, demonstrated by metricsManage configuration, administration, and maintenance of CyberArk solution, including both the infrastructure and the application itselfOversee the relevant documentation and training required for privileged access management solutions and processes, including define and help develop policies and control standardsReport progress and system health through metrics and KPIs that are risk-driven and operational in natureAddress ticket queue and follow appropriate change management proceduresUnderstand risk and make recommendations for enhancing systems security and processesKeep up on current security technologies and maintain awareness of industry trends and threats, and industry best practices, providing input focusing on IAM/PAM technologies, offer subject matter expertise where relevantYour Qualifications:
5+ years of hands-on experience with CyberArk (CyberArk Cloud Platform, EPM, LCD, and CyberArk SaaS Cloud Base)3+ years of experience implementing enterprise-wide privileged access management technology solution adoption across medium- to large-scale companies3+ years of experience as a systems engineer at a medium- to large-scale company in Financial Services1+ years of hands-on experience with IGA systems such as SailPointExperience with password repository technologies and remote session governance, specifically with the policies that govern target system platformsExcellent knowledge in IAM & PAM ecosystem (technology, standards, implementations, migration, and operational)Strong experience installing, upgrading, configuring, operating, and troubleshooting experience with CyberArk AAM (CCP, CP, ASCP), EPV, PVWA, CPM, PSM, HTML5 Gateway, PSMP, PTA (with various versions)Strong experience in DNA, Discovery scan and automate account onboarding processKnowledge in various application integration with CyberArk through CPM custom pluginIntegration experience with SailPoint, Database, SCIM, AWS, GCP, Azure, or Palo altoScripting knowledge, PACLI, PowerShell, Python, JavaScript, AutoIt, REST APIBachelor's degree in information assurance, Computer Science, Cybersecurity, Information Systems, or related fieldCyberArk Certification (Defender and Sentry) is preferredSecurity industry certification (CISSP, SSCP, CISM, SANS GSEC, ECSA, ECSP, and Security+) is preferredCompensation:
$115,000 - $140,000 base salary per year in the state of WA. New hires should expect to start at the lower end of the range depending on experienceEligible for a discretionary bonus based on firm and individual performanceWhy Fisher Investments:
We work for a bigger purpose: bettering the investment universe. We take great pride in our inclusive culture, our learning and development framework customized for every employee, and our Great Place to Work Certification. It's the people that make the Fisher purpose possible, and we invest in them by offering exceptional benefits like:
100% paid medical, dental and vision premiums for you and your qualifying dependentsA 50% 401(k) match, up to the IRS maximum20 days of PTO, plus 10 paid holidaysFamily Support programs including 8 week Paid Primary Caregiver Leave, $10,000 fertility, family forming, and hormonal health assistance, and back-up child, adult, and elder careThis is an in-office role. Based on your role, tenure, and performance eligibility you may have the opportunity to participate in our hybrid work from home program. This program is subject to change.FISHER INVESTMENTS IS AN EQUAL OPPORTUNITY EMPLOYER
Options Apply for this job onlineApply Sorry the Share function is not working properly at this moment. Please refresh the page and try again later. Share on your newsfeed Interested in this opportunity? Application FAQsSoftware Powered by iCIMS
www.icims.com