05 Aug
|
HCL Technologies
|
Pune
05 Aug
HCL Technologies
Pune
Solution Architect - Privileged Access Management (PAM)
Experience: Not Available to Not Available years
Location: Pune, India
Skills: PAM, IAM, cybersecurity, BeyondTrust, Delinea, CyberArk, Saviynt CPAM, StrongDM, Zero Trust framework, NIST SP 800-207, Active Directory, Entra ID, Azure AD, Wintel operations, OS-level security policies, Windows, Linux, PRA, NHI, JITP, ZSP, RBAC, Azure DSC, configuration management, cybersecurity principles, CyberArk PAS, EPV, CPM, PVWA, PSM, PSMP, CyberArk Privilege Cloud solution, AWS, Azure, scripting, PowerShell, PACLI, RestAPI, LDAP, Windows servers, UNIX servers, Databases, networking Devices
Job Summary
Role Overview
The Core Identity Platforms & Solutions team is seeking a PAM Solution Architect to support the assessment, deployment and operationalisation of a Privileged Access Management (PAM) product, to deliver capabilities addressing security risks associated with Privileged Remote Access (PRA) and Non-Human Identity (NHI). This role combines technical solution design with exceptional stakeholder engagement and communication skills to ensure secure, compliant, and scalable solution across a variety of enterprise platforms.
Key Responsibilities
1. Solution Architecture Design
• Collaborate with stakeholders from the infrastructure and platform support teams to elicit, validate and document functional and non-functional requirements for the enterprise PAM solution.
• Collaborate with other service support teams to design operational processes for the BAU and technical support of the enterprise PAM solution.
• Collaborate with IAM architects to document the technical implementation design of PAM solution.
• Support security operations, audit,
and compliance activities by identifying gaps and proposing remediation plans.
2. Stakeholder Management & Engagement
• Function as a trusted advisor to business and technical stakeholders, ensuring alignment with organisational objectives.
• Support engagement campaigns to drive adoption of PAM controls and best practices across diverse teams.
• Build robust relationships with engineering, cybersecurity, audit, and operational teams to ensure smooth delivery.
• Facilitate workshops, steering committees, and stakeholder forums to gather feedback and communicate progress.
3. Communications & Change Management
• Develop and execute communication strategies for PAM initiatives, including targeted messaging for technical and business audiences.
• Create impactful presentations, newsletters, and FAQs to support awareness and training.
• Manage change activities such as impact assessments, readiness planning, and stakeholder onboarding.
• Serve as the primary point of contact for PAM-related communications, ensuring clarity and transparency.
4. Technical & Operational Support
• Provide subject matter expertise on integration patterns, directory structures, implementation of JITP, ZSP and other Zero Trust principles.
• Support implementation of secure remote access workflows and emergency access processes.
• Apply operational knowledge to assess and document privileged access across Windows and Linux environments.
• Conduct analysis of privileged access data, orphan accounts, and role assignments using scripting and query tools.
5. Documentation & Enablement
• Create and maintain process documentation, user guides, and FAQs for access workflows.
• Support UAT, backlog grooming, and sprint planning activities.
• Contribute to operational readiness by documenting support models and escalation paths.
Required Skills and Experience
• 10 years + working experience in PAM, IAM, or cybersecurity domains.
• Expert experience with deployment, configuration, and operation of PAM products (e.g. BeyondTrust, Delinea, CyberArk, Saviynt CPAM, StrongDM).
• Expert knowledge on the Zero Trust framework and the NIST SP 800-207 standard.
• Expert knowledge of Active Directory and Entra ID (Azure AD).
• Strong understanding of Wintel operations and OS-level security policies for Windows and Linux.
• Familiarity with PRA and NHI concepts and workflows.
• Experience implementing and managing JITP, ZSP, and RBAC.
• Experience with Azure DSC and configuration management.
• Knowledge of cybersecurity principles and IAM best practices.
• CyberArk PAS, EPV, CPM, PVWA, PSM, PSMP.
• CyberArk Privilege Cloud solution.
• Cloud (AWS, Azure) or CPC solution.
• Scripting experience / PowerShell / PACLI / RestAPI.
• LDAP, Windows servers, UNIX servers, Databases and networking Devices with CyberArk.
• CPM and PSM connector customization.
📌 Solution Architect Privileged Access Management (PAM) (Pune)
🏢 HCL Technologies
📍 Pune