Title: CyberArk Cloud Admin
Location: 100% Remote- EST Candidates
Duration: 6 Month Contract
Interview: Phone then Video
Top Skills' Details
Required:
Hands-on experience administering CyberArk Privileged Access Management solutions, with strong focus on Privilege Cloud.
Proven expertise in large-scale account onboarding (hundreds/thousands of accounts) using CyberArk discovery and automatic onboarding rules.
Extensive automation experience across CyberArk components (e.g., CPM, PVWA, PSM, REST APIs).
Experience with CyberArk Conjur/Secrets Manager for secrets management in DevOps/CI/CD pipelines
Deep knowledge of Windows/Linux administration, Active Directory, and service account management.
Experience evaluating and converting accounts to gMSAs for non-vaulted privileged services.
Strong understanding of privileged access security concepts, including least privilege, zero trust, and credential lifecycle management.
Proficiency in scripting/automation (PowerShell, or similar) for CyberArk operations.
Familiarity with cloud environments (AWS, Azure) and hybrid infrastructure.
Secondary Skills - Nice to Haves
Job Description
We are seeking an experienced CyberArk Privileged Cloud Administrator to join our team. In this hands-on role, you will be responsible for administering, optimizing, and scaling our CyberArk Privilege Cloud environment. You will focus on large-scale privileged account onboarding, automation of management processes, and integration with hybrid/cloud infrastructures. This position plays a critical role in reducing privileged access risks, ensuring compliance, and supporting secure DevOps practices.
Key Responsibilities
Administer and maintain the CyberArk Privilege Cloud environment, including configuration, monitoring, troubleshooting, and performance optimization.
Knowledge of CyberArk Conjur/Secrets Management and how to integrate it into a DevOps/CICD environment in conjunction with Privilege Cloud
Lead large-scale onboarding of privileged accounts, secrets, and credentials using CyberArk's discovery tools (e.g., Accounts Discovery service, CPM Scanner, and remediation rules).
Design and implement automated workflows for account provisioning, password rotation, reconciliation, and policy enforcement across on-premises, cloud, and hybrid environments.
Automate all aspects of the CyberArk product suite, including custom integrations/Platforms, API-driven operations, scripting (e.g., PowerShell), Ansible, and policy management.
Evaluate and convert suitable service accounts to group Managed Service Accounts (gMSAs) where CyberArk management is not required or optimal, ensuring seamless integration with Active Directory and compliance with least-privilege principles.
Perform regular system health checks, audits, vulnerability assessments, and compliance reporting.
Collaborate with IT, DevOps, and security teams to integrate CyberArk with cloud platforms (Azure), applications, databases, and endpoints.
Troubleshoot complex issues related to password changes, session recording, integrations, and platform performance.
Stay current with CyberArk product updates, best practices, and emerging threats in privileged access management.
Additional Skills & Qualifications
Preferred:
CyberArk certifications (e.g., CyberArk Certified Privilege Cloud Administrator, CPC Delivery Engineer, or Sentry).
Knowledge of additional IAM tools (e.g., Okta, Azure AD, etc).