Mid Systems Engineer, PAM (CyberArk)
| Verified Pay check_circle | Provided by the employer$100.00 to $125.00 per hour |
|---|---|
| Hours | Full-time, Part-time |
| Location | Washington, DC Washington, District of Columbia open_in_new |
About this job
Job Description
On-site in Washington, DC
Step into the role of a Senior-Level CyberArk Engineer supporting our client at the Department of Transportation. You will contribute to deploying and maintaining a Privileged Access Management solution across development, testing, and production environments. You will collaborate with stakeholders, including DHS CISA integrators, to ensure reliable operations. You will assist with role and safe management, software updates, reporting on PAM performance and security, and vulnerability mitigation. You will support on-call troubleshooting and remediation, annual disaster recovery testing, documentation of recovery and contingency plans, and operating system patching on vault appliances. You will follow change management processes and help enhance reporting capabilities aligned to DHS CISA requirements.
Due to federal security clearance requirements, applicant must be a United States Citizen or Permanent Resident with an active Public Trust clearance. This is a contract to hire opportunity. Applicants must be willing and able to work on a w2 basis and convert to FTE following contract duration. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.
Rate: $100.00 to $125.00/hr. w2
Responsibilities:- Assist in deployment, configuration, and maintenance of CyberArk PAM across environments.
- Manage roles, safes, access policies, and periodic software updates.
- Prepare reports on PAM performance, compliance, and security posture.
- Identify and mitigate security vulnerabilities within PAM scope.
- Provide on-call troubleshooting and remediation support.
- Support annual disaster recovery testing and update contingency documentation.
- Perform OS patching and maintenance on vault appliances.
- Follow change management processes and contribute to reporting enhancements aligned to DHS CISA requirements.
- Collaborate with integrators and stakeholders to ensure solution reliability and alignment with enterprise requirements.
- Minimum 10 years of related experience delivering business solutions engineering, including architecture, engineering design, proof of concept, pilots, analysis, and documentation.
- Ability to translate functional requirements into technical solutions and perform evaluations with quantitative analysis of alternatives.
- CyberArk Sentry certification required.
- At least one year designing and implementing CyberArk lifecycle processes in a large enterprise environment.
- Three years of server administration with Windows Server 2019 and RHEL 8.
- Preferred: Integration experience with SailPoint, advanced Active Directory expertise including GPO, schema, PKI, and PowerShell automation.
- Preferred: SQL Server 2019 competencies including backups, indexing, integrity checks, configuration, maintenance plans, troubleshooting, and understanding of data models and ERDs.
- Preferred: Configuring CyberArk with networks, iDRAC, applications, cloud, storage, servers, and appliances.
Must have a Bachelor’s degree or equivalent and fifteen (15) years of related experience; or a Master’s degree and thirteen (13) years of related experience; or a Ph.D. and ten (10) years of related experience; or eighteen (18) years of related experience with no degree.
Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:
· When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.
· Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group.
If you have any indication of fraudulent activity, please contact fraud@eliassen.com.