обновлено 1 день назад
Cybersecurity Architect (CyberArk)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Cybersecurity Architect (CyberArk) (PAM/IAM): Designing and operating enterprise CyberArk vault and privileged-access solutions across APAC banking operations with an accent on Conjur, high availability, secret lifecycle automation, and cloud integration. Focus on building resilient identity platforms, automating credential management, embedding privileged-access controls into CI/CD pipelines, and improving monitoring and disaster recovery.
Location: Singapore; hybrid working mode
Company
is a listed European technology company providing consulting, digital services, software, and infrastructure, cloud, and cybersecurity services.
What you will do
- Own the enterprise-wide CyberArk architecture across Vault, CPM, PSM, PVWA, and Conjur for technical-account inventories.
- Design and enforce least-privilege, separation-of-duties, and time-bound privileged-access policies across Windows, Linux, UNIX, databases, AWS, Azure, and GCP.
- Build high-availability CyberArk services with monitoring, incident response, automated remediation, and documented disaster-recovery procedures.
- Manage password rotation, SSH keys, API credentials, on-demand secret retrieval, and other privileged-secret lifecycle processes.
- Automate PAM workflows using PowerShell, Python, and CyberArk REST APIs, including onboarding, offboarding, and credential rotation.
- Work with engineering, application, cloud, and DevSecOps teams to integrate privileged-access controls into new services, migrations, platform upgrades, and CI/CD pipelines.
Requirements
- 8+ years of experience as a security professional.
- Bachelor’s degree in Computer Science, Information Security, or a related field; a Master’s degree is also mentioned.
- Hands-on enterprise-scale experience architecting, deploying, and operating CyberArk PAS, including Vault, CPM, PSM, and PVWA.
- L3-level Conjur expertise covering policy-as-code, secret rotation, dynamic secrets, Kubernetes sidecar injection, and API/CLI integrations.
- Strong knowledge of CyberArk Privileged Threat Analytics, Windows and UNIX/Linux authentication, Kerberos, LDAP/AD, SSH, database authentication, and SSO/IdP integrations.
- Proficiency in PowerShell, Python, CyberArk REST API, cloud secret-management services, hybrid IAM, and Zero-Trust privileged access.
Nice to have
- CyberArk Certified Defender certification.
- Secrets Manager (Conjur) certification.
Culture & Benefits
- Hybrid working mode and 18 days of annual leave.
- Comprehensive medical and insurance coverage, including general practitioner, hospitalization, dental, and optical care.
- Annual performance-based bonus.
- Training programs, certification opportunities, and learning incentives.
- Regular team-building activities and social events.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
7 часов назад
Principal Solutions Engineer (Cybersecurity)
6 дней назад
Senior Security Engineer II (Cloud Security)
149 000 - 235 000$
13 часов назад
Sr. Security Engineer (Cybersecurity)
155 000 - 187 000$
6 дней назад
Security Engineer (AI Security)
5 дней назад
Professional Services Consultant (Cybersecurity)
1 день назад