- Design end-to-end CyberArk PAM architecture for on-premises, hybrid, and cloud environments.
- Define CyberArk reference architecture, HA/DR strategy, and security standards.
- Lead CyberArk Privilege Cloud and Self-Hosted deployments.
- Develop PAM roadmaps aligned with Zero Trust and enterprise security strategies.
CyberArk Implementation
- Architect and implement:
- Enterprise Password Vault (EPV)
- Password Vault Web Access (PVWA)
- Central Policy Manager (CPM)
- Privileged Session Manager (PSM/PSMP)
- Application Access Manager (AAM/Secrets Manager)
- Privilege Cloud
- Endpoint Privilege Manager (EPM)
- Lead migration, upgrade, and transformation initiatives
Integration & Automation
- Integrate CyberArk with:
- Microsoft Entra ID / Active Directory
- SailPoint, Saviynt, Okta, ForgeRock
- MFA Solutions
- ServiceNow
- Microsoft Sentinel / SIEM platforms
- SSO and PKI solutions
- Develop automation using REST APIs, PowerShell, Python, and scripting frameworks.
- Eliminate hard-coded credentials through secrets management.
Security & Governance
- Design Just-In-Time (JIT) access controls.
- Implement Least Privilege and Zero Trust security models.
- Define protected structures, RBAC models, approval workflows, and access governance.
- Support audits, compliance reporting, and regulatory requirements
Operations & Leadership
- Provide L3/L4 escalation support.
- Troubleshoot complex CyberArk platform issues.
- Mentor engineering teams and guide stakeholders on PAM best practices.
- Lead solution reviews, technical governance, and architecture approvals.