Jobs and Careers
AV

Sr. Engineer, IT Engineering (CyberArk)

Avantor
USA-MO Remote, United States, United StatesRemotefull_timeVerifiedPosted 25 Aug 2025
💰 $170,300/yr($102,200/yr$170,300/yr)

About the role

The Opportunity:

The Senior CyberArk Engineer will lead the implementation, administration, and optimization of CyberArk Privileged Access Management (PAM) solutions and IAM systems across enterprise environments.  This role is essential for maintaining security, compliance, and operational efficiency in unregulated, government-regulated, and cloud-based environments.  The Engineer will collaborate with cross-functional teams, provide expert guidance on IAM and PAM practices, and ensure secure management of identities, accounts, and privileged access.

The Senior IAM Engineer will provide global 3rd level support and troubleshooting for Saviynt, CyberArk, Active Directory services, EntraID services, related AD management tools and cloud single sign-on integrations.

What we’re looking for  

  • Education: Bachelor's degree in Computer Science, Information Systems, or related field (or equivalent experience).

  • Experience: 10+ years of IT experience with a focus on IAM and security solutions.

  • 5+ years of experience with CyberArk PAM implementations and management.

  • Proven expertise in Active Directory, Azure AD, LDAP, PKI, SSO, and 2FA systems.

  • Hands-on experience with scripting (PowerShell, Python, Java or other) for automation and system integration.

  • Familiarity with ITAR/GOV-controlled environments and compliance frameworks (e.g., NIST, SOX, GDPR).

  • Active CyberArk Defender and Sentry certifications required are a plus.

  • Additional certifications (e.g., Microsoft, AWS, Azure, CISSP) are a plus.

  • Deep understanding of privileged access management principles, including least privilege enforcement and session monitoring.

  • Strong knowledge of Active Directory services, group policies, DNS, and certificate services.

  • Proficiency in integrating IAM tools with cloud environments (e.g., AWS, Azure).

  • Excellent troubleshooting, analytical thinking, and communication skills.

  • Ability to define and drive projects from concept to completion, ensuring alignment with deadlines.

How you will thrive and create an impact  

CyberArk Privileged Access Management

  • Design, deploy, and maintain CyberArk solutions, including Enterprise Password Vault (EPV), Privileged Session Manager (PSM), and Central Policy Manager (CPM).

  • Develop privileged access policies, procedures, and standards aligned with industry best practices and regulatory compliance (e.g., CMMC, PCI-DSS, HIPAA).

  • Monitor, audit, and optimize CyberArk configurations and policies to mitigate security risks.

  • Integrate CyberArk with identity providers (e.g., Active Directory, Azure AD, LDAP) and other IT infrastructure.

  • Automate PAM processes using scripting languages like PowerShell or Python.

  • Lead incident response activities for privileged access abuse or unauthorized access attempts.

Identity and Access Management

  • Support and enhance IAM tools and services, focusing on secure user privileges, credential management, and access control.

  • Configure and optimize identity systems, including Active Directory, Azure AD, LDAP, PKI, and SSO/2FA solutions.

  • Lead IAM-related projects, including domain consolidations, decommissioning, and cloud migrations.

  • Develop processes for IAM governance, compliance, and reporting.

  • Define and implement workflows for user provisioning, deprovisioning, and role management.

  • Troubleshoot and resolve IAM and PAM-related issues.

Collaboration and Leadership

  • Collaborate with IT, security, and compliance teams to design and implement IAM and PAM strategies.

  • Act as a subject matter expert on CyberArk and IAM technologies, providing training and mentorship to team members.

  • Ensure alignment of IAM solutions with organizational security and compliance requirements.

  • Represent the IAM function during audits, assessments, and stakeholder discussions.

Disclaimer:

The above statements are intended to describe the general nature and level of work being performed by employees assigned to this classification. They are not intended to be construed as an exhaustive list of all responsibilities, duties and skills required of employees assigned to this position. Avantor is proud to be an equal opportunity employer.

Why Avantor?

Dare to go further in your career.

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Avantor

View company profile →