Quick Overview
Job Description
Job Summary
Experienced CyberArk Endpoint Privilege Manager (EPM) Architect with deep technical expertise in designing, deploying, and migrating enterprise EPM environments. The ideal candidate will lead large-scale implementations, architect scalable privilege management solutions, and drive seamless migrations between CyberArk EPM tenants while minimizing business impact.
Key Responsibilities
Architect, deploy, and configure CyberArk EPM across enterprise Windows and macOS environments.
• Lead end-to-end migration of CyberArk EPM policies, configurations, application groups, and rule sets from one environment/tenant to another.
• Design and implement application control, privilege elevation, and least privilege strategies.
• Develop, optimize, and troubleshoot EPM policies, trusted applications, and elevation rules.
• Integrate CyberArk EPM with enterprise identity, security, and endpoint management platforms (Microsoft Intune, MECM/SCCM, SentinelOne, SIEM, etc.).
• Automate deployment, policy management, and migration activities using PowerShell and REST APIs.
• Perform architecture reviews, health assessments, and recommend best practices for performance, scalability, and security.
• Collaborate with security, infrastructure, desktop engineering, and application teams throughout implementation and migration projects.
• Create technical documentation, migration runbooks, and operational procedures.
• Provide Level 3/4 technical support and mentor engineering teams.
Skill Requirements
7+ years of endpoint security experience with 4+ years of hands-on CyberArk EPM architecture and implementation.
• Proven experience deploying CyberArk EPM in large enterprise environments.
• Strong experience migrating CyberArk EPM from one tenant/environment to another, including policy and configuration migration.
• Deep understanding of application control, privilege management, allow/block rules, elevation policies, and sub-process elevation.
• Strong PowerShell scripting and API automation experience.
• Experience with Microsoft Intune, MECM/SCCM, Active Directory, Entra ID, Windows security, and endpoint management.
• Strong troubleshooting, communication, documentation, and stakeholder management skills.
Must have:
CyberArk PAM
Okta
Other requirements:
CyberArk certifications (EPM, Defender, Sentry, or Guardian).
• Experience with enterprise transformation, Zero Trust, and Privileged Access Management (PAM) initiatives.
• Experience integrating EPM with SIEM, EDR/XDR, and ITSM platforms.
Similar jobs
- GR
Cyber Security Project Engineer with Security Clearance
NewGRVTY
McLean, VA🇺🇸$150k - $250k/yrHybrid18 hours agoSQLOWASPTableau+2Technology - DO
IT CYBERSECURITY SPECIALIST (INFOSEC) with Security Clearance
NewDepartment of the Navy
naval submarine base kings bay, GA🇺🇸Hybrid18 hours agoPKITechnology - TT
Vulnerability Management & Security Analyst with Security Clearance
NewTorch Technologies Inc.
Huntsville, AL🇺🇸$105k - $128k/yrOn-site18 hours agoPowerShellBashAWS+1Technology - AS
Security Analyst - Entry Level Role
NewAbacus Service Corporation
Blythewood, SC🇺🇸Hybrid18 hours agoPowerShellTechnology - IR
Entry-Level Security Analyst- Must be a current SC resident-W2 Only
NewInformation Resource Group, Inc.
West Columbia, SC🇺🇸On-site18 hours agoPowerShellTechnology - EE
Security Analyst (Entry Level) in Blythewood, SC (W2 Only)
NewElegant Enterprise Wide Solutions
Cayce, SC🇺🇸Hybrid18 hours agoPowerShellTechnology