The consultant will lead the design, implementation, and support of CyberArk Privileged Access Management solutions for enterprise clients. They are responsible for integrating CyberArk with various cloud and enterprise platforms while mentoring junior engineers and providing technical leadership.
This is a remote position.
Position Summary
We are seeking a Senior CyberArk Identity and Access Management (IAM) Consultant to lead the design, implementation, optimization, and support of CyberArk Privileged Access Management (PAM) solutions for enterprise clients. The ideal candidate will possess deep expertise in CyberArk technologies, privileged identity governance, and enterprise security architecture. This role requires a hands-on consultant capable of leading technical engagements while serving as a trusted advisor to client stakeholders.
Primary Responsibilities
Design, implement, configure, and support CyberArk Privileged Access Management (PAM) solutions.
Lead CyberArk deployment projects from planning through production implementation.
Integrate CyberArk with Active Directory, Azure AD (Microsoft Entra ID), LDAP, cloud platforms, and enterprise applications.
Configure and maintain CyberArk components including:
Privileged Access Manager (PAM)
Password Vault Web Access (PVWA)
Central Policy Manager (CPM)
Privileged Session Manager (PSM)
Privileged Threat Analytics (PTA)
CyberArk Identity
Secrets Manager / Conjur
Develop onboarding strategies for privileged accounts, applications, databases, and service accounts.
Create and maintain password rotation policies and privileged access workflows.
Design secure privileged session management and monitoring capabilities.
Troubleshoot complex CyberArk infrastructure and integration issues.
Perform CyberArk upgrades, patching, and system health assessments.
Develop operational documentation, runbooks, and standard operating procedures.
Mentor junior engineers and provide technical leadership during project execution.
Participate in architecture reviews and security strategy discussions.
Provide knowledge transfer and client training following project completion.
Required Technical Skills
CyberArk
CyberArk PAM
Password Vault Web Access (PVWA)
Central Policy Manager (CPM)
Privileged Session Manager (PSM)
Privileged Threat Analytics (PTA)
CyberArk Identity
CyberArk Conjur
Secrets Manager
Identity & Access Management
Active Directory
Microsoft Entra ID (Azure AD)
LDAP
SAML
OAuth
OpenID Connect (OIDC)
Kerberos
RADIUS
Multi-Factor Authentication (MFA)
Infrastructure
Windows Server
Linux Administration
VMware
Microsoft SQL Server
IIS
DNS
PKI / Certificates
Networking fundamentals
Cloud Platforms
Microsoft Azure
AWS
Google Cloud Platform (GCP)
Automation
PowerShell
REST APIs
Python (preferred)
Ansible (preferred)
Terraform (preferred)
Cybersecurity Knowledge
NIST Cybersecurity Framework (CSF) 2.0
MITRE ATT&CK Framework
Security Operations (SIEM)
Identity & Access Management
Endpoint Security
Data Security
Threat Protection
Security strategy and roadmap development
Required Experience
7–10+ years of Identity and Access Management experience.
5+ years of hands-on CyberArk engineering and administration.
Experience leading CyberArk implementation or migration projects.
Strong understanding of privileged identity lifecycle management.
Experience securing service accounts, application credentials, and privileged sessions.
Experience integrating CyberArk with enterprise applications and cloud environments.
Strong troubleshooting and root cause analysis skills.
Experience working in enterprise or highly regulated environments.
Desired Knowledge
Zero Trust Architecture
NIST Cybersecurity Framework (CSF)
NIST SP 800-53
CIS Controls
Identity Governance and Administration (IGA)
Privileged Identity Management (PIM)
Role-Based Access Control (RBAC)
Least Privilege Principles
Regulatory compliance frameworks (PCI DSS, HIPAA, SOX, ISO 27001)
Ideal Candidate Profile
The ideal candidate is a senior-level IAM consultant who combines deep CyberArk expertise with strong consulting, architecture, and client engagement skills. They should be comfortable leading technical implementations, advising executive stakeholders on privileged access strategies, and delivering secure, scalable PAM solutions that align with Zero Trust principles and organizational security objectives.
“I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”