Overview
Skills
Job Details
Visa Eligibility: GC-EAD, TN
Location: Hybrid Vienna, VA
Experience Level: 10+ Years Description:
The IT Operator Network Administrator will support, operate, and enhance Privileged Access Management (PAM) technologies and related infrastructure. This role involves leading projects, integrating with enterprise platforms, automating administrative processes, and ensuring compliance with internal security standards. The ideal candidate will have extensive experience with PAM solutions, strong scripting capabilities, and the ability to work effectively across teams.
Responsibilities: Operate PAM technologies, including privileged account management, secrets management, and system/software patching.
Lead projects to deliver new security features, enhancements, and software updates.
Collaborate with peers and stakeholders to implement and automate administrative processes and integrations.
Contribute to PAM security strategy, including discovery, gap analysis, onboarding, and long-term service improvements.
Design, configure, and maintain PAM solutions across AIX, RHEL, Windows, and mainframe systems.
Integrate PAM solutions with enterprise platforms such as ServiceNow, compute hosting, IGA, SIEM, and others.
Provide security consultation for internal initiatives, focusing on identity security, data transmission, and business requirements.
Develop and maintain documentation, including procedures, inventories, and architectural diagrams for PAM systems.
Monitor capacity and performance of the PAM environment and respond to operational needs.
Produce regular reporting for leadership on security posture, capacity, usage, and licensing.
Provide rotational on-call support for production PAM infrastructure.
Bachelor's Degree in Information Technology, Computer Science, or a related field.
Relevant cybersecurity or identity security certifications demonstrating broad knowledge of best practices.
5 7+ years administering Privileged Access Management (PAM) tools such as CyberArk, BeyondTrust, or Delinea.
Experience with large-scale PAM upgrades and projects using SAFe, Scrum, or Kanban methodologies.
Significant experience supporting PAM technologies and controls within a large IT organization, ideally in financial services.
Strong background with identity and access management platforms (Microsoft, CyberArk, Saviynt, ServiceNow, RSA, etc.).
Experience administering Tier-0 identity infrastructures: Active Directory, Azure AD, PKI, Federation Services, and RSA.
Advanced written and verbal communication skills.
Advanced analytical, research, and problem-solving skills.
Demonstrated ability to deliver results and achieve objectives.
Skilled in presenting findings, recommendations, and alternatives clearly.
Experience with automation using PowerShell (Windows) and Bash (UNIX/Linux).
Understanding of PAM integrations with Windows, Linux/UNIX, VMware, Azure, SQL/Oracle/DB2, network appliances, and Mainframe.
Familiarity with change control processes that ensure business continuity and production stability.
CyberArk Certifications: Defender, Sentry, and Guardian (in increasing order).
Strong experience building and deploying PSM and CPM connectors.
Scripting background for automation and Ansible (without dependence on AI-generated solutions).
Experience with Credential Providers (AAM and CCP) setup, deployment, support, and use.
PTA experience (nice to have).
Experience with physical servers and OS platforms (nice to have).