Point your AI agent at freehire and let it find you a job.

Get the CLI →

Invicta Solutions Group

NewBe an early applicant

CyberArk Security Consultant

Posted Updated
Discussion

Summary

Senior consultant designing, implementing, and supporting CyberArk Privileged Access Management (PAM) for enterprise clients, leading deployments from planning through production and advising stakeholders. Core stack: CyberArk suite (PVWA, CPM, PSM, PTA, Identity, Conjur), Active Directory/Entra ID, Windows/Linux, Azure/AWS/GCP, PowerShell/Python.

This is a remote position.

Position Summary

We are seeking a Senior CyberArk Identity and Access Management (IAM) Consultant to lead the design, implementation, optimization, and support of CyberArk Privileged Access Management (PAM) solutions for enterprise clients. The ideal candidate will possess deep expertise in CyberArk technologies, privileged identity governance, and enterprise security architecture. This role requires a hands-on consultant capable of leading technical engagements while serving as a trusted advisor to client stakeholders.

Primary Responsibilities

  • Design, implement, configure, and support CyberArk Privileged Access Management (PAM) solutions.
  • Lead CyberArk deployment projects from planning through production implementation.
  • Integrate CyberArk with Active Directory, Azure AD (Microsoft Entra ID), LDAP, cloud platforms, and enterprise applications.
  • Configure and maintain CyberArk components including:
    • Privileged Access Manager (PAM)
    • Password Vault Web Access (PVWA)
    • Central Policy Manager (CPM)
    • Privileged Session Manager (PSM)
    • Privileged Threat Analytics (PTA)
    • CyberArk Identity
    • Secrets Manager / Conjur
  • Develop onboarding strategies for privileged accounts, applications, databases, and service accounts.
  • Create and maintain password rotation policies and privileged access workflows.
  • Design secure privileged session management and monitoring capabilities.
  • Troubleshoot complex CyberArk infrastructure and integration issues.
  • Perform CyberArk upgrades, patching, and system health assessments.
  • Develop operational documentation, runbooks, and standard operating procedures.
  • Mentor junior engineers and provide technical leadership during project execution.
  • Participate in architecture reviews and security strategy discussions.
  • Provide knowledge transfer and client training following project completion.


Required Technical Skills

CyberArk

  • CyberArk PAM
  • Password Vault Web Access (PVWA)
  • Central Policy Manager (CPM)
  • Privileged Session Manager (PSM)
  • Privileged Threat Analytics (PTA)
  • CyberArk Identity
  • CyberArk Conjur
  • Secrets Manager

Identity & Access Management

  • Active Directory
  • Microsoft Entra ID (Azure AD)
  • LDAP
  • SAML
  • OAuth
  • OpenID Connect (OIDC)
  • Kerberos
  • RADIUS
  • Multi-Factor Authentication (MFA)

Infrastructure

  • Windows Server
  • Linux Administration
  • VMware
  • Microsoft SQL Server
  • IIS
  • DNS
  • PKI / Certificates
  • Networking fundamentals

Cloud Platforms

  • Microsoft Azure
  • AWS
  • Google Cloud Platform (GCP)

Automation

  • PowerShell
  • REST APIs
  • Python (preferred)
  • Ansible (preferred)
  • Terraform (preferred)


Cybersecurity Knowledge

  • NIST Cybersecurity Framework (CSF) 2.0
  • MITRE ATT&CK Framework
  • Security Operations (SIEM)
  • Identity & Access Management
  • Endpoint Security
  • Data Security
  • Threat Protection
  • Security strategy and roadmap development

Required Experience

  • 7–10+ years of Identity and Access Management experience.
  • 5+ years of hands-on CyberArk engineering and administration.
  • Experience leading CyberArk implementation or migration projects.
  • Strong understanding of privileged identity lifecycle management.
  • Experience securing service accounts, application credentials, and privileged sessions.
  • Experience integrating CyberArk with enterprise applications and cloud environments.
  • Strong troubleshooting and root cause analysis skills.
  • Experience working in enterprise or highly regulated environments.

Desired Knowledge

  • Zero Trust Architecture
  • NIST Cybersecurity Framework (CSF)
  • NIST SP 800-53
  • CIS Controls
  • Identity Governance and Administration (IGA)
  • Privileged Identity Management (PIM)
  • Role-Based Access Control (RBAC)
  • Least Privilege Principles
  • Regulatory compliance frameworks (PCI DSS, HIPAA, SOX, ISO 27001)

Ideal Candidate Profile

The ideal candidate is a senior-level IAM consultant who combines deep CyberArk expertise with strong consulting, architecture, and client engagement skills. They should be comfortable leading technical implementations, advising executive stakeholders on privileged access strategies, and delivering secure, scalable PAM solutions that align with Zero Trust principles and organizational security objectives.



Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available