Relocantly← All jobs

🇳🇱 Netherlands · 16h ago

CyberArk PAM Engineer

HCLTech

LinkedInseniorEnglish-friendly
Apply on LinkedIn →Get jobs like this daily
We are a $13+ billion global technology company, home to more than 224,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud, and AI, powered by a broad portfolio of technology services and products.HCLTech is a globally recognized leader in the Tech and IT industry, but we’ve never forgotten the startup mindset that got us here. We’ve always approached our work with an idea-first attitude because every one of our accomplishments —no matter how big or small —can be traced back to an idea’s single spark.It’s that spark —that inner drive —that sets our people apart from our competitors. It enables us not just to pull off game-changing feat after game-changing feat but to better our world in the process. We want you to find your spark. Because that’s what drives you to be better, be more and ultimately, be more fulfilled.CyberArk PAM Engineer Location - Remote role in EuropeIf required can travel 1- 2 days from officeJob DescriptionProvide L3 support for CyberArk components (Vault, PVWA, CPM, PSM, PSMP, PTA, CCP).Troubleshoot complex issues and perform root cause analysis.Manage CyberArk upgrades, patching, backup, DR, and platform maintenance.Onboard privileged, service, and application accounts.Configure Safes, Platforms, CPM policies, and PSM connection components.Develop automation and reporting using PowerShell and CyberArk APIs.Develop & troubleshooting of PSM Connecters and CPM Plugins, and custom platforms for CyberArk.Support audits, compliance requirements, and PAM Project governance initiatives.Collaborate with infrastructure, security, and application teams.Own critical incidents through resolution, coordinate technical recovery, and provide clear stakeholder updates.Lead problem management by identifying recurring failures, documenting root causes, and implementing permanent corrective actions.Monitor platform health, service availability, capacity, replication, certificates, scheduled jobs, and infrastructure dependencies.Plan and execute high-availability and disaster-recovery tests, validate failover procedures, and maintain recovery runbooks.Review CyberArk architecture and configuration changes for security, scalability, performance, and operational supportability.Implement and validate security hardening, access controls, authentication integrations, credential-management policies, and session-monitoring controls.Integrate PAM services with Active Directory, LDAP, SIEM, ITSM, MFA, SSO, PKI, cloud platforms, and enterprise monitoring tools.Mandatory to have:CyberArk Certified Delivery Engineer (CDE).Develop & troubleshooting of PSM Connecters and CPM Plugins, and custom platforms for CyberArk.Knowledge to working with CI/CD, Cloud concepts.Required Skills8+ years of experience in privileged access management, including strong hands-on CyberArk PAM administration, engineering, and L3 production support.Advanced expertise in Digital Vault, PVWA, CPM, PSM, PSMP, PTA, Credential Provider/CCP, Safes, Platforms, account onboarding, credential rotation, and session management.Proven ability to diagnose complex component, connectivity, authentication, password-management, and session-launch failures using logs and root cause analysis.Experience installing, upgrading, patching, migrating, hardening, backing up, and recovering CyberArk PAM Self-Hosted environments.Hands-on development and troubleshooting of custom CPM plug-ins, PSM connection components, AutoIt-based connectors, web application connectors, and custom platforms.Strong knowledge of Windows Server, Linux/Unix, Active Directory, LDAP/LDAPS, DNS, load balancing, firewalls, TCP/IP, TLS/SSL certificates, and PKI.Experience integrating PAM with MFA, SSO, SIEM, ITSM, monitoring, ticketing, and directory services.Strong PowerShell scripting and REST API skills for onboarding, administration, health checks, reporting, and operational automation.Working knowledge of high availability, disaster recovery, capacity planning, performance monitoring, security hardening, and privileged access control principles.Experience working within ITIL-based incident, problem, change, release, and service-management processes, with clear technical documentation and stakeholder communication.Preferred SkillsCyberArk Certified Delivery Engineer (CDE).Hands-on experience with CyberArk Secrets Manager, Conjur, Credential Provider/CCP, application identity, non-human identities, and machine identity security.Exposure to Privilege Cloud, CyberArk Identity, Endpoint Privilege Manager, or broader Identity Security platform capabilities.Experience with Microsoft Azure, AWS, Kubernetes, Docker, CI/CD pipelines, Git-based workflows, and DevSecOps tooling.Integration experience with ServiceNow, Splunk or another SIEM platform, enterprise monitoring tools, MFA, SAML/OIDC-based SSO, and certificate services.Knowledge of security and regulatory frameworks such as ISO 27001, NIST Cybersecurity Framework, CIS Controls, PCI DSS, and audit evidence requirements.Experience designing PAM operating models, technical standards, runbooks, control documentation, and architecture or solution design artefacts.Strong mentoring, technical leadership, vendor coordination, and cross-functional collaboration skills.

Sourced from LinkedIn. Relocantly aggregates public job postings; apply on the original site.