Senior Privileged Access Management Engineer
OneTrustAbout the role
Strength in Trust
OneTrust is the trust intelligence cloud platform organizations use to transform trust from an abstract concept into a measurable competitive advantage. Organizations globally use OneTrust to enable the responsible use of data while protecting the privacy rights of individuals, implement and report on their cyber security program, make their social impact goals a reality, and create a speak up culture of trust. Over 14,000 customers use OneTrust's technology, including half of the Global 2,000. OneTrust currently ranks #24 on the Forbes Cloud 100 list of top private cloud companies in the world and employs over 2,000 people in regions across North America, South America, Asia, Europe, and Australia.
The Challenge
You will serve as a subject matter expert that contributes directly to the development of OneTrust’s IAM strategy, policy, standards, and procedures.
You will collaborate with various business areas and teams to evaluate IAM management strategies to improve security posture and enhance protection of sensitive data, evaluate potential compliance areas to identify gaps, and ensure full compliance with data protection laws and regulations.
You will participate in the implementation of IAM strategies, solutions, and program.
You will facilitate discussions with internal customers to educate them about applicable IAM requirements.
Your Mission
- Plan, develop, implement, and maintain a digital identity program to support the protection of OneTrust while satisfying compliance and contractual requirements
- Assist in the design, configuration, and implementation of robust identity and access solutions including tools to support onboarding, offboarding, user provisioning, deprovisioning, single sign on, federated identities, multi-factor authentication, and privileged account management solutions.
- Define or augment access control protocols and establish role-based access control mechanisms to maintain a strategy of least privilege
- Support security audits and customer assessments as needed
- Manage and mature processes for recertification of user access
- Develop and maintain key vendor and other partner relationships to support the identity program
- Define metrics and develop reporting on the efficacy of access controls
- Partner with other HR, IT, Security, and Privacy leaders to:
- Adhere activities to controls necessary for security, privacy, and internal policies
- Create, maintain, and enforce well documented standards and procedures for the implementation of technical identity and access solutions.
- Build a growing team of identity professionals to provide a high level of support to the organization and employees
- You will strategize with business partners in a global fast-growing organization around onboarding/off-boarding
- Directly support user provisioning/deprovisioning, and modern access management solutions, such as single sign-on, multi-factor authentication, and privileged account management.
- Liaise with the internal and external IT teams to integrate security requirements into core infrastructure practices
- In this role, you will own the overall IAM technology stack, processes and documentation
You Are
- Background in all aspects of Identity & Access Management
- Knowledge of best practices in protecting information
- Ability to communicate clearly, both verbally and in writing
- Ability to collaborate and coordinate with multiple teams and vendors.
- Ability to work independently and as part of a team.
- Ability to multitask and prioritize effectively.
- Keen attention to details, while keeping the big picture in mind
- Ability to work with no direct supervision.
- Ability to mentor, train, and educate other personnel
- BA/BS in Computer Science, Engineering, Math or related subject
- 5+ years of IAM experience
- 3+ years PAM and/or Secrets Management experience
- 3+ years cloud experience (e.g., Azure, AWS, G-Suite)
- Understanding of information security best practices around confidentiality, integrity, and availability
- Experience with Cloud Identity Management platforms (e.g., SailPoint, Saviynt, Okta)
- Experience with Cloud Privileged Access Management platforms (e.g., CyberArk Privilege Cloud, Delinea Secrets Server, Saviynt CPAM, Hashicorp Boundary)
- Experience with third-party Credential/Secrets Management solutions (e.g., CyberArk Conjur, Hashicorp Vault, AKeyless)
- Experience with Cloud native Secrets Management solutions (e.g., AWS Secrets Manager, Azure Key Vault, Google Secrets Manager)
- Experience with Access Federation and Multi-Factor Authentication
- Experience developing automation scripts using scripti
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s