Privileged Access Management – Platform Engineering Lead
hace 10 horas
New York
Job Description: Owning and executing the PAM product roadmap, balancing current operational needs with longer-term strategic goals for privileged access and secrets management across the enterprise Proactively identifying and prioritizing use cases for human and non-human privileged access—including service accounts, non-human identities (NHI), agentic/automated workflows, and secure secrets management for cloud and DevOps environments Anticipating evolving business, security, and technology trends—including AI-driven and agentic access scenarios—and translating them into actionable product features, policies, and program initiatives Overseeing the design, optimization, and engineering of workflows for privileged account vaulting, lifecycle management, just-in-time (JIT) access, session monitoring, and automated credential rotation across hybrid environments Driving integration of PAM with related platforms such as IAM, IGA, SIEM, cloud providers (AWS, Azure, GCP), and CI/CD pipelines to support secure automation and enterprise agility Leading, mentoring, and developing a high-performing PAM engineering team, fostering a culture of innovation and continuous improvement in a rapidly evolving threat landscape Monitoring PAM platform maturity, industry trends, and emerging standards to continuously sharpen the program's strategic direction Serving as the internal subject matter expert (SME) for privileged access—advising security, architecture, compliance, and business teams on PAM capabilities, gaps, and best practices Responding to and remediating audit findings related to privileged access controls and secrets management Managing budget planning, resource allocation, and vendor relationships for all PAM technologies and solutions Developing and maintaining documentation, standards, and operating procedures that make PAM understandable and adoptable across the organization Requirements: Bachelor's degree with 7 years of experience, OR Masters Degree and 6 years of experience OR PhD and 2 years of experience Hands-on experience implementing and operating enterprise Privileged Access Management solutions Proven product ownership or program management experience with enterprise PAM platforms (e.g., BeyondTrust) Deep technical knowledge of privileged account governance, credential vaulting, session management, and secrets management across hybrid on-premises and cloud environments Strong engineering experience integrating PAM with IAM/IGA, directory services, SIEM, cloud platforms, and DevOps ecosystems Demonstrated expertise in non-human identity (NHI) controls, agentic access, just-in-time (JIT) access, and privileged access automation Ability to translate complex business, security, and regulatory requirements—including emerging AI-driven scenarios—into actionable platform features and roadmap priorities Effective stakeholder management and communication skills across both technical and executive audiences Proven ability to lead teams, drive continuous improvement, and manage strategic transformation in a fast-moving threat environment Beneficial: Familiarity with cloud-native IAM and secrets management services (e.g., AWS Secrets Manager, Azure Key Vault, HashiCorp Vault) Experience with scripting and automation (e.g., PowerShell, Python) to support PAM workflow engineering Knowledge of compliance frameworks and audit requirements related to privileged access (SOX, PCI-DSS, HIPAA, NIST) Industry certifications such as CISSP, CyberArk Defender/Sentry, BeyondTrust certified professional, or equivalent Experience in the pharmaceutical or life sciences industry Benefits: paid time off (vacation, holidays, sick) medical/dental/vision insurance 401(k) to eligible employees eligible to participate in long-term incentive programs