20 ago
|
Optiwisers
|
Comunidad Valenciana
20 ago
Optiwisers
Comunidad Valenciana
? Privileged Access Management (PAM) Engineer | Valencia Location: Valencia, Spain Work model: on-site Valencia office Experience: 4 to 8+ years in PAM, IAM, or IT Security Engineering⏱️ Position: Full-time? Contract: B2B / Freelance Languages: English & SpanishSummary:We’re looking for a PAM Engineer to deploy, administer, and manage enterprise Privileged Access Management (PAM) solutions across on-premises and cloud environments. You’ll focus on CyberArk, privileged account onboarding, secrets management, Just-in-Time (JIT) access, automation, and governance, ensuring secure management of privileged identities and compliance with security standards.Key Responsibilities:Install, configure, and maintain CyberArk components including Vault, PVWA, CPM, PSM, PTA, and ConjurPerform privileged account onboarding across Windows, Linux, Oracle, SQL, cloud, and application environments, ensuring secure vaulting and proper classificationManage the end-to-end privileged account lifecycle, including inventory, validation, ownership mapping, approvals, and onboardingImplement and manage Just-in-Time (JIT) privileged access and session management controlsEnforce password and credential management policies, including automated password rotation, complexity enforcement, and secure credential storageManage application secrets using CyberArk Conjur or equivalent secrets management solutionsIdentify and manage service accounts, shared accounts, and non-rotating accounts,
applying appropriate security controls and risk mitigationMonitor password compliance and remediate accounts that do not meet defined rotation and policy standardsProvide Level 2/3 support for PAM-related incidents and service requestsTroubleshoot CyberArk integrations with Active Directory, Entra ID (Azure AD), IAM, SIEM, and ServiceNowPerform regular health checks, system monitoring, patching, and upgrades of CyberArk infrastructureAutomate PAM processes using PowerShell, Python, REST APIs, and psPAS to reduce manual effortSupport bulk onboarding and large-scale privileged account management through automation and standardized methodsDesign and support integrations between PAM and enterprise IAM systems such as SailPoint, Saviynt, and Entra IDMaintain SOPs, onboarding procedures, runbooks, and automation scriptsCollaborate with application, infrastructure, and cloud teams to enforce least privilege and secure credential usageParticipate in audit and compliance activities, providing evidence, reporting, and demonstrating control effectivenessSupport PAM governance activities, including account recertification, ownership validation, and compliance monitoringRequired Skills:Bachelor’s degree in Computer Science, Information Security, or related field4–8 years of experience in IT Security, IAM, or PAM EngineeringStrong hands-on experience with CyberArk PAM Suite (Vault, CPM, PSM,
PVWA)Experience with CyberArk Conjur or other enterprise secrets management solutionsStrong understanding of Just-in-Time (JIT) access and Privileged Session ManagementExperience integrating PAM with IAM platforms (e.g., SailPoint, Saviynt, Entra ID / Azure AD)Experience managing privileged access in cloud environments (Azure, AWS)Strong understanding of Windows, Linux, Active Directory, and database systems (Oracle, SQL)Strong scripting and automation experience (PowerShell, Python, REST APIs)Experience with ITSM tools such as ServiceNow and incident/change management processesKnowledge of security controls, audit frameworks, and compliance standardsStrong analytical and troubleshooting abilitiesAbility to work independently and within cross-functional teamsExcellent communication skills with both technical and non-technical stakeholdersAttention to detail and commitment to security best practicesNice to Have:CyberArk Defender / Sentry certificationExperience implementing Conjur in DevOps / CI-CD environmentsExperience with Privileged Threat Analytics (PTA) or advanced monitoring toolsExposure to container platforms (Kubernetes, OpenShift) and secrets managementFamiliarity with Zero Trust security architectureIf you're passionate about CyberArk, Privileged Access Management, automation, and enterprise security, we'd love to hear from you. Send your CV in English to with reference “MA/PAM” or just apply to this opportunity.#CyberArk #PAM #IAM #PrivilegedAccessManagement #CyberSecurity #InformationSecurity #CloudSecurity #EntraID #ZeroTrust #Hiring
📌 Privileged Access Management (PAM) Engineer (Comunidad Valenciana)
🏢 Optiwisers
📍 Comunidad Valenciana