Business Title Application Engineering Technical Lead - II jobs in United States
cer-icon
Apply on Employer Site
company-logo

Vanguard · 2 days ago

Business Title Application Engineering Technical Lead - II

Vanguard is a leading investment management company committed to the long-term financial wellbeing of its clients. They are seeking a hands-on Technical Lead to own and evolve their CyberArk-based Privileged Access Management platform, providing technical leadership, driving automation, and ensuring security compliance.

FinanceFinancial Services
badNo H1Bnote

Responsibilities

Serve as the technical owner for the CyberArk PAM platform (e.g., PVWA, PSM, CPM, CCP, REST APIs), setting technical direction, prioritizing work, and guiding a small squad of PAM engineers
Translate risk, compliance, and audit requirements into secure, reliable designs, standards, and runbooks; review and approve platform changes
Design, implement, and optimize platform policies, platforms, safes, rotations, and reconciliation; automate repeatable tasks using PowerShell (preferred) and Python (nice to have)
Build and maintain GitHub‑based CI/CD (Actions/workflows) to version, test, and deploy CyberArk configuration-as‑code and custom utilities; enforce branching and code‑review standards
Integrate PAM with AWS (with emphasis on EC2, Windows and Linux hosts): onboard privileged accounts and secrets, and harden session flows (PSM/PSMP)
Champion JIT privileged access patterns for cloud and on‑prem, minimizing standing privilege while preserving operational velocity
Own incident response and problem management for PAM: lead major incident bridges, perform root cause analysis, and implement corrective/preventive actions
Define and track SLAs(e.g., vault availability, checkout/rotation success, PSM session health, onboarding cycle time); build dashboards and actionable alerts
Ensure adherence to internal SOPs and user procedures for PAM operation and access hygiene
Partner with Audit, Risk, and Security Engineering to evidence controls, complete assessments, and pass audits without exceptions
Collaborate with platform, app, and infrastructure owners to onboard use cases, plan releases, and communicate changes
Coach and upskill engineers in PAM concepts, secure automation, and operational excellence

Qualification

CyberArkPowerShellAWSGitHubWindowsLinuxIncident ManagementAPI IntegrationTroubleshootingTechnical LeadershipMentoringCollaboration

Required

7+ years TL experience, including 3+ years leading technical delivery or a platform engineering squad
Expert troubleshooting across Windows and Linux, including credential flows, session brokering, networking, DNS/Kerberos/LDAP, and endpoint agents
PowerShell development: modules, robust error handling, logging/telemetry, parallelization, and secure secret handling
GitHub: Actions/workflows, environment protection rules, reusable workflows, code reviews, and artifact/version management
AWS: Practical experience with EC2 and OS‑level onboarding (Windows & Linux), SSM/Run Command/Session Manager, tagging/auto‑onboarding patterns, VPC/security group fundamentals
Strong understanding of CyberArk components (PVWA, CPM, PSM, EPM/Endpoint Privilege Management), policy design, platform plug‑ins, and API usage
Proven ability to write clear runbooks/SOPs, influence architecture decisions, and lead incident bridges

Preferred

Python for REST/API integrations, data shaping, and service utilities
Experience with secrets management for apps/automation (e.g., Secrets Manager/API‑based retrieval)
IaC exposure (CloudFormation or Terraform) for PAM‑adjacent infrastructure
Familiarity with logging/observability stacks (CloudWatch, Splunk) and SIEM integrations for PAM events

Benefits

Comprehensive health and wellness care
Work-life balance
An investment in your future

Company

Vanguard

company-logo
Check is a client-owned investment company that offers low-cost mutual funds, ETFs, advice, and related services.

Funding

Current Stage
Late Stage
Total Funding
unknown
Key Investors
ic@3401
2017-03-31Non Equity Assistance

Leadership Team

leader-logo
Salim Ramji
Chief Executive Officer
linkedin
leader-logo
Andrew Maack
Principal, Head of US Equity Index Portfolio Management
linkedin
Company data provided by crunchbase