Privileged Access Management Architect (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Privileged Access Management Architect (Cybersecurity): Designing and implementing PAM architecture strategy focused on workload access controls, secrets management, and compliance within a financial services enterprise. Focus on applying frameworks like SPIFFE and SPIRE, leveraging PAM tools such as CyberArk and HashiCorp Vault, and ensuring regulatory compliance in a hybrid work environment.
Location: Hybrid with onsite presence every other week at Fidelity offices in the United States
Salary: $140,000–285,000 USD per year
Company
is a leading financial services corporation focused on delivering innovative financial products and cybersecurity solutions.
What you will do
- Develop and lead the PAM architecture strategy aligned with organizational and regulatory requirements.
- Design, develop, and deploy PAM solutions emphasizing workload access controls and secrets management.
- Implement and manage secrets management solutions ensuring secure storage and rotation of privileged credentials.
- Apply SPIFFE and SPIRE frameworks to establish secure and scalable workload identities.
- Leverage PAM tools including CyberArk, Delinea, HashiCorp Vault, and Microsoft Entra ID to enhance security.
- Collaborate across teams to identify and mitigate privileged access risks and ensure compliance.
Requirements
- Must have 10+ years of cybersecurity architecture experience, preferably in financial services or regulated sectors.
- Bachelor's degree in Information Security, Computer Science, or related field; Master’s preferred.
- Strong expertise in PAM tools and frameworks including CyberArk, Delinea, HashiCorp Vault, SPIFFE, and SPIRE.
- Knowledge of regulatory requirements such as PCI DSS, HIPAA, GDPR.
- Leadership and influencing skills to drive initiatives across the organization.
- English proficiency at least B2 level (job posting in English).
Culture & Benefits
- Hybrid work model requiring onsite presence every other week.
- Comprehensive health care and emotional well-being support.
- Market-leading retirement plans and generous paid time off including parental leave.
- Charitable giving match program and educational assistance including student loan repayment and tuition reimbursement.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →