- Company Name
- Sky
- Job Title
- CyberArk PAM Technical Specialist
- Job Description
-
**Job Title**
CyberArk PAM Technical Specialist
**Role Summary**
Design, implement, and maintain privileged access management (PAM) solutions using CyberArk and supporting technologies. Develop policies, monitor activities, conduct audits, and collaborate with auditors and cross‑regional teams to enhance security posture across the organization. Provide expert guidance on authentication protocols, identity governance, and threat modeling, and deliver recommendations to senior leadership.
**Expectations**
- Deliver complex PAM projects autonomously, gathering requirements, proposing solutions, and ensuring compliance with regulatory and industry standards.
- Mentor and support team members, fostering a culture of continuous improvement in privileged security practices.
- Communicate findings, risks, and remediation strategies clearly to technical and non‑technical stakeholders.
**Key Responsibilities**
- Develop and enforce PAM policies, procedures, and guidelines in line with NIST, NCSC, CIS, and ISO 27001 standards.
- Monitor PAM alerts and detect potential security breaches or policy violations; initiate appropriate remediation actions.
- Perform regular PAM audits and assessments to identify vulnerabilities and recommend corrective measures.
- Coordinate with auditors, providing evidence and facilitating audit activities.
- Collaborate with cross‑regional teams to strengthen privileged security baselines and implement closed‑loop credential workflows.
- Stay current on security trends, emerging threats, and best practices, advising senior management accordingly.
- Design, deploy, and manage the end‑to‑end PAM system, ensuring confidentiality, integrity, and availability of privileged accounts.
**Required Skills**
- CyberArk administration and configuration (Defender level certification required).
- Azure AD experience and general identity governance & administration (preferably One Identity).
- Advanced scripting (PowerShell, Bash, etc.).
- Knowledge of legacy and modern authentication protocols (Kerberos, SAML, OAuth, OpenID Connect).
- Security standards familiarity (ISO 27001, NIST, CIS).
- Web API understanding (SOAP, REST, GraphQL).
- Threat modeling expertise (e.g., STRIDE).
- Access control and identity lifecycle management proficiency.
- Strong communication and organizational skills.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security, or related field (minimum).
- CyberArk Certified Defender (or higher); additional certifications in IAM, cloud security, or threat modeling are advantageous.
Milngavie, United kingdom
On site
22-10-2025