Cyber SDC - Privileged Access Management - Senior - Location OPEN jobs in United States
cer-icon
Apply on Employer Site
company-logo

EY · 22 hours ago

Cyber SDC - Privileged Access Management - Senior - Location OPEN

EY is a globally connected powerhouse of diverse teams dedicated to building a better working world. The Senior Consultant will support the design, engineering, maintenance, and troubleshooting of privileged access management solutions, playing a central role in helping clients navigate their complex Identity and Access Management needs.

AccountingAdviceBusiness IntelligenceConsultingFinancial ServicesProfessional Services
check
Growth Opportunities
check
H1B Sponsor Likelynote

Responsibilities

Support the development of privilege and secret access management controls (CyberArk, BeyondTrust, HashiCorp, and Delinea solutions)
Assist in the design and implementation of privileged access and secret management solutions
Participate in requirement gathering and definition of use cases at the enterprise level for privilege and secret management
Configure and optimize discovery tools for privilege accounts, services, SSH keys, and tasks (CyberArk, HashiCorp, Delinea, BeyondTrust), including auto-detection and auto-onboarding
Support onboarding target systems such as Windows, Linux, and Unix accounts, databases (Oracle, MS SQL, Redis cache), and integration of DevOps solutions (Ansible, Puppet, Jenkins, Kubernetes, OpenShift, GitHub, GitLab, Docker)
Demonstrate knowledge of modern cloud vaults such as AWS Secret Manager and Azure Key Vault
Assist in defining and implementing vaulting, rotation, and heartbeat policies for human and non-human identities; enable SSH key and password rotation, check-out/check-in, dual control, and break-glass
Participate in the self-service design and implementation of privilege or secrets life cycle management using enterprise identity governance solutions (creation, management, certification, deletion)
Contributes to the development and establishment of governance processes for non-human identity management
Support the development of policies for endpoint management solutions including Windows workstations, Mac OS, Linux, and Unix servers

Qualification

CyberArkPrivileged Access ManagementHashiCorp VaultActive DirectoryAzure ADMFASSOCloud IAM SolutionsAnalytical skillsProblem-solving skillsDocumentation skillsInterpersonal skillsCommunication skills

Required

A bachelor's degree in a related field and approximately 4–6 years of related work experience; or a graduate degree and approximately 2–4 years of related work experience
Experience with PAM architecture and development within CyberArk, HashiCorp, or other PAM solutions
Hands-on experience with CyberArk Conjur and HashiCorp Vault usage and functionality
A valid driver's license in the US and/or a valid passport; willingness and ability to travel
Proven experience in integrating, deploying, and configuring PAM and Secret Management technologies, with a strong focus on CyberArk (vault, privilege cloud, secure, infrastructure, Endpoint Access Management, and Conjur) and familiarity with other IAM solutions like Saviynt, SailPoint, Entra
In-depth knowledge of privilege access management frameworks, and the ability to offer guidance on their integration into existing applications
Practical expertise in developing CyberArk technology tech stack, HashiCorp Vault, BeyondTrust, and Delinea experience
Proficiency in implementing, managing, and maintaining enterprise-level privilege access management and secret management tools
Solid understanding of enterprise directory services such as Active Directory, Azure AD, and LDAP, as well as experience in implementing MFA and SSO solutions
Strong problem-solving and analytical skills, with the ability to translate business requirements into technical specifications and execute technical deliveries effectively
A track record of delivering high-quality client services and work products within expected timeframes
Excellent documentation skills, including the creation of procedures, process documentation, and user documentation related to IAM applications

Preferred

Professional certifications in Identity & Access Management, such as CISSP, CISM, or specific vendor certifications like CyberArk CDE, Hashi Vault Certified Implementation Engineer
Familiarity with additional IAM technologies and tools, including SailPoint, ForgeRock, Ping Identity, RSA, etc
Knowledge of cloud-based IAM solutions and experience working with cloud platforms like AWS, Azure, or Google Cloud
Understanding of regulatory compliance frameworks and industry standards related to IAM, such as GDPR, HIPAA, NIST, or ISO 27001
Prior experience in providing PAM services to clients from various industries, demonstrating versatility and adaptability in addressing diverse IAM challenges
Strong interpersonal and communication skills, with the ability to collaborate effectively with clients and cross-functional teams to present solution designs, options, and innovations

Benefits

Medical and dental coverage
Pension and 401(k) plans
Wide range of paid time off options
Flexible vacation policy
Designated EY Paid Holidays
Winter/Summer breaks
Personal/Family Care
Other leaves of absence when needed to support your physical, financial, and emotional well-being

Company

EY is building a better working world by creating new value for clients, people, society, the planet, while building trust in the capital markets.

H1B Sponsorship

EY has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (10242)
2024 (9877)
2023 (10966)
2022 (9394)
2021 (5652)
2020 (8849)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Jonathan Williamson
Chief Operating Officer
linkedin
leader-logo
Abhishek Sen
Partner
linkedin
Company data provided by crunchbase