Full-Time Senior IAM Engineer – PAM
Job Description
Thomson Reuters is looking for a skilled Information Senior Identity & Access Management Engineer for Privileged Access Management (PAM).
Be part of an exciting, fast-paced environment that will help Thomson Reuters to continue to be a leader delivering trusted content and technology that professionals and institutions need to make the right decisions. In this role, you will be responsible for assisting with engineering, operations, and monitoring of various PAM security solutions and infrastructure.
PAM is a strategic focus for Thomson Reuters and a cornerstone of the holistic IAM information security program. The successful candidate for this role will deliver PAM/CyberArk subject matter expertise and lead specific projects supporting the company’s overall PAM strategy.
About the role:
In the role of Senior Identity & Access Management Engineer – PAM, you will:
- Integrate various platforms with CyberArk, such as different LDAP providers, Windows servers, UNIX servers, Databases and networking Devices, middleware, etc.
- Be hands-on with the automation & DevOps infrastructure of CyberArk multi-component products in a complex multi-platform environment
- Develop and maintain solutions responsible for Workstation PAM, Server PAM (covering On-Prem and Cloud infrastructure) and Secrets Management
- Build user-friendly processes for business consumption with an automated first approach
- Work across internal and external teams to document and share IAM best practices for employees and contractors.
- Provide support and guidance to the internal IAM Team.
- Develop, maintain, monitor, and publish appropriate performance statistics and impact metrics.
- Develop and maintain documentation, with a focus on self-service.
- Ability to provide complex information security IAM risks and technical requirements into business digestible language.
- Credential vaulting processes for various platforms and environments.
- Assist with the architecture and design of identity solutions for the enterprise in a large and distributed environment.
- Lead architecture, planning, and hands-on delivery of the enterprise-level IAM program, particularly privileged access management.
- Work across internal and external teams to document and share IAM best practices for employees and contractors.
- Ensure overall IT strategy and architecture plans and standards are translated into IAM service programs, methods, and technologies and alignment with industry-leading IAM practices.
- Advise Senior Management on PAM and IAM-related risks and security posture.
- Provide leadership and hands-on guidance to the internal IAM PAM Team.
- Participate and gather information for periodic compliance exercises for SOX and SOC security standards.
- Troubleshoot and resolve complex technical problems impacting other teams using the PAM solution.
- Ability to provide complex information security IAM risks and technical requirements into business digestible language.
About you:
You are a fit for the Senior Identity & Access Management Engineer – PAM role if you have…
- A deep fluency with Identity & Directory platforms and authentication technologies such as CyberArk, BeyondTrust, Delinea, SAML, LDAP, LAPS, SCIM, OAuth, SailPoint, and Microsoft Active Directory.
- Experience with solutions covering Workstation PAM, Server PAM (On-Prem and Cloud infrastructure) and Secrets Management
- Experience with the scripting technologies and tools that drive automation and enable product teams and end-users to move towards self-service
- Experience in the using/automating CyberArk Web Service APIs / SDK
- Experience installing, configuring and customizing the CyberArk PAS platform and its components (PVWS, CPM, PSM, PTA, AAM, etc.)
- Experience onboarding applications for password integration with a password manager
- Experience operating within a 24×7 operational service.
- Experienced in day-to-day operational support in adding and deleting accounts, applying policies, assigning safes, synchronizing failed accounts, and Password rotations.
- A passion for solving problems and delivering high-quality solutions.
- 5+ years of experience in Identity & Access Management
- Authentication capability for cloud-based applications and infrastructure.
- Ability to think strategically, balancing long and short-term priorities.
- Experience working in Azure, GCP and AWS.
- Sense for automation.
5 total views, 2 today