Required Skills: CyberArk security administration, PAM implementation, HashiCorp Vault, PowerShell, Python, Bash, cloud security, Zero Trust Security models, IAM, Splunk, QRadar, ELK, security compliance frameworks
Job Description
Job Description: CyberArk Engineer with HashiCorp Expertise
Location: Boston, MA (Onsite)
We are seeking a CyberArk Cybersecurity Engineer with HashiCorp expertise to strengthen our Privileged Access Management (PAM) and secrets management capabilities. The ideal candidate will have deep expertise in CyberArk security implementations, privileged account protection, and HashiCorp Vault for secrets management in cloud and hybrid environments.
Key Responsibilities:
Design, implement, and manage CyberArk PAM solutions, including EPV, PSM, CPM, PVWA, PTA.
Configure and integrate CyberArk with HashiCorp Vault for secrets management and credential rotation.
Implement privileged access security controls, enforcing least privilege and Zero Trust Architecture principles.
Automate credential lifecycle management, vault policies, and access workflows using scripting (PowerShell, Python, Bash).
Perform security hardening, monitoring, and threat detection for privileged accounts and sensitive secrets.
Implement role-based access controls (RBAC) and policy-driven security enforcement using CyberArk and HashiCorp.
Secure cloud and hybrid infrastructure (AWS, Azure, GCP) with CyberArk and HashiCorp integrations.
Conduct regular security audits, vulnerability assessments, and compliance checks (NIST, ISO 27001, PCI-DSS, SOX, etc.).
Collaborate with SOC, IAM, and DevSecOps teams to improve privileged access and secrets security across CI/CD pipelines.
Develop and maintain technical documentation, SOPs, and training materials for PAM and secrets management.
Required Skills & Experience:
5+ years of experience in CyberArk security administration and PAM implementation.
2+ years of experience with HashiCorp Vault for secrets management.
Strong knowledge of CyberArk architecture, policies, and secure authentication mechanisms (LDAP, SAML, OAuth).
Proficiency in automation and scripting (PowerShell, Python, Bash) for PAM and secrets management.
Experience in cloud security best practices and integrating CyberArk & HashiCorp in AWS, Azure, or GCP.
Strong understanding of Zero Trust Security models and Identity & Access Management (IAM).
Knowledge of threat modeling, SIEM tools (Splunk, QRadar, ELK), and incident response related to privileged accounts.
Hands-on experience with security compliance frameworks (NIST, CIS, PCI-DSS, ISO 27001, SOX).
Preferred Qualifications:
CyberArk Defender, Sentry, or Guardian Certification.
HashiCorp Vault Associate or Expert Certification.
Experience in DevSecOps, Infrastructure-as-Code (Terraform, Ansible, Kubernetes).
Knowledge of endpoint security, behavioral analytics, and cloud-native security tools.
Why Join Us?
Work with cutting-edge CyberArk & HashiCorp security technologies in a fast-growing cybersecurity team.
Collaborate with leading security professionals to build next-generation privileged access and secrets security solutions.
Competitive compensation, training opportunities, and career growth in cybersecurity.