We are looking for an IAM Architect – PAM for our client who meets the following criteria:
Language: English.
Security Clearance: Secret.
Location of Work: Remote.
Mandatory requirements:
Must have university degree or college diploma in Computer Science, Information Security, or a related field.
Must have a minimum of ten (10) years of relevant work experience in Identity and Access Management (IAM) with a focus on Privileged Access Management.
Must have a minimum of five (5) years of direct hands-on experience designing, implementing, and operating CyberArk Privileged Access Management solutions (on-premises and/or Privilege Cloud).
Must have demonstrated expertise with CyberArk components, including Vault, PVWA, CPM, PSM, PTA, CCP, and web session management.
Must have demonstrated experience with CyberArk migration projects (on-prem to cloud, or multi-tenant deployments.
Must have demonstrated knowledge of secure authentication methods including SAML. OIDC, FIDO2/WebAuthn, and PKI.
Must have demonstrated understanding of privileged session recording, monitoring, and compliance requirements.
Must have demonstrated ability to design and implement Role-Based Access Control (RBAC) frameworks, particularly for internally developed applications.
Must have demonstrated technical knowledge of containers (Docker/Kubernetes), networking, and web services protocols such as REST and SOAP, as well as API design and integration using JSON/XML.
Must have demonstrated expertise to produce clear, concise, and business-ready documentation tailored to technical and non-technical audiences.
Must have demonstrated strength in analysis and problem-solving, paired with strong negotiation and interpersonal communication skills.
Must have demonstrated experience with Agile and DevOps.
Must have demonstrated knowledge of Cyber Security certifications (CISSP, GIAC, etc.)
Must have demonstrated experience in the banking industry and/or government organizations.
Must have a experience with identity governance and integration with SailPoint or Microsoft Entra ID.