- Company Name
- Refactor Talent
- Job Title
- Cyber Security Engineer
- Job Description
-
**Job Title:** Cyber Security Engineer – Identity & Access
**Role Summary:**
Design, implement, and harden identity, privileged access, and cloud security controls. Transform security strategy into scalable architecture, automate operations, and validate protections through testing while collaborating across IT and business units.
**Expectations:**
- Build and maintain PAM (CyberArk or BeyondTrust) and IAM solutions (Okta, Azure AD/Entra ID, AWS IAM).
- Automate security workflows using scripting, APIs, and SOAR.
- Conduct vulnerability assessments and penetration testing.
- Secure Azure and AWS workloads with native and third‑party tools.
- Align implementations with regulatory and internal compliance standards.
- Mentor peers and embed security practices into development processes.
**Key Responsibilities:**
- Design, configure, and deploy network, system, and application security technologies.
- Implement and tune Privileged Access Management platforms.
- Manage identity and access controls across cloud and on‑prem environments.
- Develop Python, PowerShell, Bash, SQL scripts and API integrations for automation and SOAR.
- Perform regular security assessments, threat modeling, and remediation validation.
- Collaborate with cross‑functional teams to integrate security into projects and applications.
- Provide guidance, training, and best‑practice recommendations to engineering teams.
**Required Skills:**
- Hands‑on experience deploying and managing CyberArk or BeyondTrust PAM solutions.
- Strong expertise in IAM platforms (Okta, Azure AD/Entra ID, AWS IAM).
- Proficiency in scripting/automation languages (Python, PowerShell, Bash, SQL) and API development.
- Experience securing Azure and AWS environments, including native security services and SIEM integration.
- Knowledge of vulnerability assessment tools, penetration testing methodologies, and remediation processes.
- Understanding of compliance frameworks (e.g., ISO 27001, NIST, GDPR, PCI‑DSS).
- Ability to work collaboratively and mentor technical staff.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, Engineering, or related field (or equivalent practical experience).
- Relevant certifications preferred: CISSP, CISM, CCSP, GSEC, AWS Certified Security – Specialty, Azure Security Engineer Associate, or vendor‑specific PAM/ IAM certifications (e.g., CyberArk Certified Sentry).