Job Summary
We are seeking an experienced **CyberArk SME/Engineer** to design, implement, administer, and support CyberArk Privileged Access Management (PAM) solutions. The candidate will be responsible for managing privileged accounts, onboarding applications and platforms, improving security controls, and ensuring compliance with organizational security standards.
***
## Key Responsibilities
### CyberArk Administration & Support
* Administer and maintain CyberArk PAM components including:
* Digital Vault
* Privileged Session Manager (PSM)
* Central Policy Manager (CPM)
* Password Vault Web Access (PVWA)
* Privileged Threat Analytics (PTA)
* Application Access Manager (AAM) / Conjur
* Perform CyberArk installation, upgrades, migrations, and patching activities.
* Ensure platform availability, performance, and operational stability.
### Privileged Account Management
* Onboard privileged accounts across Windows, Unix/Linux, Databases, Cloud, Network Devices, and Applications.
* Configure password management policies and password rotation schedules.
* Implement session monitoring and recording for privileged users.
* Manage safes, platforms, access controls, and user entitlements.
### Integration & Automation
* Integrate CyberArk with Active Directory, LDAP, SIEM, ITSM, and MFA solutions.
* Support password vaulting and application credential management using AIM/AAM or Conjur.
* Develop automation scripts using PowerShell, Python, or REST APIs.
* Work with DevOps teams to integrate secrets management into CI/CD pipelines.
### Operations & Governance
* Troubleshoot CyberArk infrastructure and resolve incidents/problems.
* Support audit, compliance, and security assessment activities.
* Generate periodic reports related to privileged access and compliance.
* Participate in change management and security governance initiatives.
***
## Required Technical Skills
### CyberArk
* CyberArk PAM Administration
* Digital Vault
* PVWA
* CPM
* PSM
* PTA
* AIM/AAM
* Conjur (preferred)
### Operating Systems
* Windows Server Administration
* Linux/Unix Administration
### Directory Services
* Active Directory
* LDAP
### Scripting & Automation
* PowerShell
* Python
* REST API Integration
### Security Knowledge
* Privileged Access Management (PAM)
* Identity & Access Management (IAM)
* MFA Integration
* Access Governance
* Security Compliance Frameworks
***
## Preferred Qualifications
* Bachelor's degree in Computer Science, Information Security, or equivalent.
* CyberArk Certifications:
* CyberArk Defender
* CyberArk Sentry
* CyberArk Guardian
* Knowledge of cloud platforms (Azure, AWS, GCP).
* Experience with ServiceNow integration.
* Familiarity with SIEM solutions such as Splunk, Sentinel, or QRadar.
***
## Desired Soft Skills
* Strong troubleshooting and analytical skills.
* Excellent communication and stakeholder management.
* Ability to work independently in a global support environment.
* Experience working in large enterprise environments.
***
## Nice-to-Have Skills
* BeyondTrust, Delinea, HashiCorp Vault exposure.
* DevSecOps and secrets management experience.
* Kubernetes/OpenShift credential management.
* Azure Entra ID and Identity Governance knowledge.
### Keywords
CyberArk, PAM, PVWA, PSM, CPM, Digital Vault, PTA, Conjur, AIM, AAM, Privileged Access Management, Password Vaulting, Secrets Management, IAM, Active Directory, PowerShell, Python, ServiceNow, Splunk, Azure, AWS.
关于高知特 (Cognizant)
高知特(Cognizant)(纳斯达克代码:CTSH)作为一家AI Builder和相关技术服务提供商,致力于通过打造全栈AI解决方案,帮助企业将人工智能投资转化为实际价值。公司凭借深厚的行业经验、流程优化和工程技术专长,将企业独特的业务场景融入科技系统,赋能组织释放人才潜能,推动切实成果,并帮助全球企业在瞬息万变的环境中保持领先。如需了解更多详情,敬请访问 cognizant.ai 或关注@cognizant。
补充雇佣信息
薪酬信息截至本职位发布之日为准。Cognizant 保留在适用法律允许的范围内随时修改该信息的权利。
申请人可能需要通过现场面试或视频会议的方式参加面试。此外,候选人在每次面试时可能需要出示其当前所在州或政府签发的有效身份证件。
Cognizant 是一家提供平等就业机会的雇主。在招聘过程中,您的申请和候选资格不会因种族、肤色、性别、宗教、信仰、性取向、性别认同、国籍、残疾、遗传信息、怀孕、退伍军人身份或任何其他受联邦、州或地方法律保护的特征而受到影响。







