Job Summary
We are seeking an experienced **CyberArk SME/Engineer** to design, implement, administer, and support CyberArk Privileged Access Management (PAM) solutions. The candidate will be responsible for managing privileged accounts, onboarding applications and platforms, improving security controls, and ensuring compliance with organizational security standards.
***
## Key Responsibilities
### CyberArk Administration & Support
* Administer and maintain CyberArk PAM components including:
* Digital Vault
* Privileged Session Manager (PSM)
* Central Policy Manager (CPM)
* Password Vault Web Access (PVWA)
* Privileged Threat Analytics (PTA)
* Application Access Manager (AAM) / Conjur
* Perform CyberArk installation, upgrades, migrations, and patching activities.
* Ensure platform availability, performance, and operational stability.
### Privileged Account Management
* Onboard privileged accounts across Windows, Unix/Linux, Databases, Cloud, Network Devices, and Applications.
* Configure password management policies and password rotation schedules.
* Implement session monitoring and recording for privileged users.
* Manage safes, platforms, access controls, and user entitlements.
### Integration & Automation
* Integrate CyberArk with Active Directory, LDAP, SIEM, ITSM, and MFA solutions.
* Support password vaulting and application credential management using AIM/AAM or Conjur.
* Develop automation scripts using PowerShell, Python, or REST APIs.
* Work with DevOps teams to integrate secrets management into CI/CD pipelines.
### Operations & Governance
* Troubleshoot CyberArk infrastructure and resolve incidents/problems.
* Support audit, compliance, and security assessment activities.
* Generate periodic reports related to privileged access and compliance.
* Participate in change management and security governance initiatives.
***
## Required Technical Skills
### CyberArk
* CyberArk PAM Administration
* Digital Vault
* PVWA
* CPM
* PSM
* PTA
* AIM/AAM
* Conjur (preferred)
### Operating Systems
* Windows Server Administration
* Linux/Unix Administration
### Directory Services
* Active Directory
* LDAP
### Scripting & Automation
* PowerShell
* Python
* REST API Integration
### Security Knowledge
* Privileged Access Management (PAM)
* Identity & Access Management (IAM)
* MFA Integration
* Access Governance
* Security Compliance Frameworks
***
## Preferred Qualifications
* Bachelor's degree in Computer Science, Information Security, or equivalent.
* CyberArk Certifications:
* CyberArk Defender
* CyberArk Sentry
* CyberArk Guardian
* Knowledge of cloud platforms (Azure, AWS, GCP).
* Experience with ServiceNow integration.
* Familiarity with SIEM solutions such as Splunk, Sentinel, or QRadar.
***
## Desired Soft Skills
* Strong troubleshooting and analytical skills.
* Excellent communication and stakeholder management.
* Ability to work independently in a global support environment.
* Experience working in large enterprise environments.
***
## Nice-to-Have Skills
* BeyondTrust, Delinea, HashiCorp Vault exposure.
* DevSecOps and secrets management experience.
* Kubernetes/OpenShift credential management.
* Azure Entra ID and Identity Governance knowledge.
### Keywords
CyberArk, PAM, PVWA, PSM, CPM, Digital Vault, PTA, Conjur, AIM, AAM, Privileged Access Management, Password Vaulting, Secrets Management, IAM, Active Directory, PowerShell, Python, ServiceNow, Splunk, Azure, AWS.
Over Cognizant
Cognizant (NASDAQ: CTSH) is een bouwer van AI-oplossingen en een leverancier van technologiediensten. Wij slaan de brug tussen AI-investeringen en ondernemingswaarde door het bouwen van full-stack AI-oplossingen voor onze klanten. Onze diepgaande kennis van sectoren, processen en engineering stelt ons in staat om de unieke context van een organisatie te verankeren in technologische systemen. Deze systemen versterken het menselijk potentieel, realiseren tastbare resultaten en geven wereldwijde ondernemingen een voorsprong in een snel veranderende wereld. Ontdek hoe op cognizant.ai of @cognizant.
Aanvullende arbeidsinformatie
De informatie over de beloning is correct op de datum van deze vacature. Cognizant behoudt zich het recht voor om deze informatie op elk moment te wijzigen, met inachtneming van de toepasselijke wetgeving.
Van sollicitanten kan worden verwacht dat zij gesprekken bijwonen, persoonlijk of via een videogesprek. Daarnaast kan van kandidaten worden gevraagd om tijdens elk gesprek een geldig, door de overheid uitgegeven identiteitsbewijs (zoals een identiteitskaart of paspoort) te tonen.
Cognizant is een werkgever die gelijke kansen biedt. Je sollicitatie en kandidatuur worden niet beoordeeld op basis van ras, huidskleur, geslacht, religie, levensovertuiging, seksuele geaardheid, genderidentiteit, nationale afkomst, handicap, genetische informatie, zwangerschap, veteranenstatus of enige andere eigenschap die wordt beschermd door federale, regionale of lokale wetgeving.







