Roles & Responsibilities:
Required CyberArk L3-L4 Administration engineer/Techno- lead with hands-on skills on CyberArk Technology
Responsible for the user identity administration and maintenance of user access roles.
Review changes in the production environments and coordinating with the key stakeholders from IT, business delivery teams and/or third-party Vendors.
Provide analytical and technical guidance to the team and recommend and/or takes action to direct the analysis and solutions.
Design IAM processes and implement IAM solutions.
Perform system integration with Active Directory and other identity systems.
Develop and maintain user onboarding and user access change workflows.
Ensure all customer and functional requirements are met through system analysis across all levels to include hardware, software, concept, design, fabrication, test, installation, operation, maintenance and disposal.
Provides administration and operational support of Identity Management services and support for project-based activities for on-premises and cloud environments.
Designs and implements user management workflows by defining a process for user management including multiple levels of delegation, review, and approval.
Work closely and escalate when needed with product vendors to support the technical environment.
Qualifications & Work experience:
- BE in Computer science/ Information Technology or equivalent, relevant (IAM) work experience 7-10 years.
- Experience with expert in technical knowledge of IAM products/solutions viz. CyberArk (PAM), Azure Cloud (PAM), Azure AD, CrowdStrike IDP etc.
- Experience with experts in technical project consultation, solution automation, customer SLA management, operational change development, and incident management.
- Advanced understanding of privileged access management (PAM), SSO/MFA processes and practices.
- Experience with experts in Ping Federated software and its components including Ping Federated console, PingOne console, PingID, and Ping Directory.
- Experience collaborating in a team setting with the organizations executives, decision-makers, stakeholders, department heads, Service Desk, and end users regarding pertinent activities.
- Knowledge of SAML 2.0, SSO, OAUTH, OpenID, 2FA/MFA, Kerberos and LDAP
- Expert with Configure Ping Identity with Azure Active Directory B2C for secure hybrid access
Hands-on experience: CyberArk Component Installation and application version upgrades
In depth understanding of CyberArk CPM compliance management
Drive CyberArk DR management and DR failover
Understand the dependencies and work collaboratively with aligned services to provide a consistent and reliable service / approach
- Deep expertise in platform security, administration, and management, such as Microsoft Windows Server administration and/or Linux/UNIX system administration.
- Experience with Active Directory and/or other LDAP directory services.
- Strong understanding and experience with the implementation and functionality of privileged access and account management systems and controls.
Lead and manage a team of CyberArk L1s and L2s
Understanding of various authentication methods and key integration modes
Single POC for escalations and concerns
- Strong written and verbal communication skills.
Experience on Cloud PAM deployment preferred
CyberArk- Defender/Sentry Certification must
- Preferred Azure Cloud (PAM) certifications