Job Summary
The Cyber Security Specialist IAM will design implement and optimize privileged access controls across hybrid enterprise environments using advanced CyberArk capabilities. The role focuses on safeguarding critical assets through secure identity lifecycle management privileged session protection and endpoint privilege enforcement while collaborating with cross functional teams to meet regulatory and organizational security objectives and support business continuity.
Responsibilities
- Design and implement robust privileged access management solutions that align with enterprise security policies and protect critical infrastructure across hybrid environments using advanced CyberArk capabilities
- Configure manage and optimize CyberArk Privileged Access Management platforms to ensure secure onboarding of privileged accounts continuous monitoring of privileged activities and reduction of unauthorized access risks
- Administer and enhance CyberArk Privileged Cloud to secure identities for cloud and SaaS workloads ensuring consistent enforcement of least privilege and strong authentication for high risk access scenarios
- Deploy and tune CyberArk Endpoint Privilege Manager to reduce local administrator rights enforce application control policies and minimize endpoint attack surfaces without hindering workforce productivity
- Monitor and analyze privileged access events and audit logs to detect suspicious behavior generate detailed compliance reports and support incident investigation and remediation activities for internal and external stakeholders
- Collaborate with application owners infrastructure teams and security operations personnel to define secure workflows integrate IAM controls and ensure privileged access processes support business agility and resilience
- Develop maintain and refine technical playbooks standards and operational procedures for privileged access management ensuring repeatable secure onboarding of new systems and rapid adoption of CyberArk features
- Conduct regular access reviews and risk assessments on privileged accounts and policies proposing prioritized remediation actions that reduce exposure to threats and align with regulatory and internal compliance requirements
- Perform root cause analysis for privilege related incidents or audit findings and implement durable corrective measures in CyberArk platforms to prevent recurrence and strengthen overall IAM posture
- Provide technical guidance and knowledge transfer to peers and partner teams on CyberArk tools IAM concepts and secure privileged access practices enabling broader organizational adoption of mature access controls
- Support integration of CyberArk with identity providers ticketing platforms and monitoring tools to automate provisioning approval workflows and alerting and to improve operational efficiency in day shift hybrid work arrangements
- Contribute to continuous improvement initiatives by evaluating emerging IAM features and privileged access enhancements recommending pragmatic changes that strengthen security while maintaining a positive user experience
- Align daily configuration monitoring and troubleshooting tasks with the company mission of protecting customer trust and societal digital ecosystems by ensuring privileged identities are securely managed and resilient against evolving threats
Qualifications
- Possess five to nine years of hands on experience in identity and access management with a strong focus on privileged access management in complex enterprise or multinational environments
- Demonstrate advanced proficiency in implementing configuring and maintaining CyberArk Privileged Access Management and CyberArk Privileged Cloud solutions to secure high value systems and sensitive data assets
- Exhibit practical expertise with CyberArk Endpoint Privilege Manager including design of least privilege policies application control rules and endpoint hardening strategies for distributed workforce devices
- Show solid understanding of IAM and security fundamentals including authentication authorization least privilege segregation of duties and compliance frameworks relevant to privileged access governance
- Display ability to create technical documentation runbooks and operational guides that describe PAM architectures workflows and recovery steps in clear and actionable language for technical and business audiences
- Apply strong analytical and problem solving skills to diagnose complex CyberArk platform issues performance bottlenecks and configuration gaps and to deliver timely sustainable fixes
- Demonstrate effective communication and collaboration capabilities to work with cross functional teams in a hybrid work model coordinating day shift responsibilities without requiring travel while maintaining high service quality
Certifications Required
Preferred certifications include CyberArk Certified Trustee or CyberArk Guardian and relevant IAM or security certifications such as CompTIA Security Plus or Certified Information Systems Security Pr
About Cognizant:
Cognizant (Nasdaq: CTSH) is an AI Builder and technology services provider, bridging the gap between AI investment and enterprise value by building full-stack AI solutions for our clients. Our deep industry, process and engineering expertise enables us to build an organization’s unique context into technology systems that amplify human potential, drive tangible outcomes and keep global enterprises ahead in a fast-changing world. See how at cognizant.ai or @cognizant.
Additional employment information
Compensation information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.
Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government issued ID during each interview.
Cognizant is an equal opportunity employer. Your application and candidacy will not be considered based on race, color, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.










