Hybrid (minimum of 2 days a week in Okemos or Farmington Hills office, subject to change in the future) Michigan
Identity & Access Engineer
One contractor position on our Identity Access Engineering team.
Please see the details below and let me know if there are any questions.
When Needed: ASAP
Primary Job Responsibilities
- Design and Implement service offerings from the CyberArk Privileged Access Security suite of products. Focusing on expanding the capabilities across the enterprise to integrate with multiple ranges of platforms, operating systems and applications
- Work alongside Security Architect and Project Managers to develop roadmap and product strategy based on a risk-based approach to information security
- Integrating various platforms with CyberArk, such as different LDAP providers, Windows and UNIX servers, Databases and Networking devices
- Provide escalated support for technical problems and participate in annual DR exercises
- Maintain, configure, troubleshoot CyberArk EPM platform and policies
- Perform health check monitoring on all CyberArk components to ensure consistent availability of system to end user and meet the SLAs
- Identify opportunities and develop scripts to automate engineering tasks leveraging PACLI and REST API
- Develop and customize connectors/plugins to various target applications
Minimum Qualifications
Position requires a bachelor's degree in information technology and five years' related system administrator experience with Identity and Access Management systems. A CISSP, CASP, CISA, or GSE certification is preferred but will accept any suitable combination of education, training, or experience
Position requires intermediate knowledge in information security principles and practices, windows and Linux server administration with emphasis on authentication methods, expertise in Active Directory, LDAP, and E-Directory, Multi-factor, Single Sign On, and Certificate based authentication methods, PAM and credential management, understanding of incident and request management workflows as well as experience with the implementation of back / restore and disaster and recovery strategies
Experience with one or more programing languages such as Java, Python, or PowerShell is preferred
Experience or knowledge with industry standard tools such as Vault, Secure Auth, NetIQ IDM, NetIQ eDirectory, Oracle and SQL Database Account management, SharePoint, and Ivanti is preferred
In-depth knowledge with at least 3+ years of engineering experience working in CyberArk suite of privileged identity management solutions is preferred