Description Position Description: The IAM Senior Engineer will be responsible for supporting the development and delivery of Privileged Account Management (PAM) solutions for our on-prem and cloud infrastructure. This is a multifaceted role that involves engineering, hands-on support, and advanced troubleshooting responsibilities as well support of project-based work for two leading PAM platforms (Hashicorp and CyberArk). Position Responsibilities:
Assist in the buildout of Hashicorp Vault enterprise in a highly available environment
Streamline application onboarding and migration as it relates to secrets management within Hashicorp Vault and CyberArk
Work with IT teams across the company to ensure Hashicorp Vault and CyberArk are adopted consistently and effectively
Build upon the Hashicorp Vault foundation by adding support for ephemeral identities and adoption of zero-trust concepts
Architect and deliver PAM solutions which enhance security and compliance
Provide advanced troubleshooting, participate in on-call rotation, disaster recovery tests, and develop solutions and processes to eliminate off hours support calls
Develop processes, guidelines, and documentation for consumption by internal teams
Assist teams in identifying, properly storing, and retrieving their credentials
Provide training, guidance and mentorship for junior staff
Qualifications:
Hands-on PAM solution experience, SaaS/Cloud based vendors preferred
Proven experience with automation, CI/CD, orchestration, and configuration management
Experience with CI/CD tools such as Jenkins
Experience with image lifecycle management using tools such as Packer
Experience with Infrastructure as Code (IaC) using tools such as Terraform, CloudFormation, and Chef
Strong analytical, problem-solving, and troubleshooting skills
Proficiency in explaining concepts, use cases, and technologies in DevOps, operations, security, cloud, microservices, containers, and scheduling platforms
Experience in cloud platforms (GCP preferred, but AWS or Azure accepted)
Knowledge of applicable audit controls and applicability to IAM services architecture, design, and processes
Proficiency in Python, Bash, Go, Perl, PowerShell, and Ruby are a plus
Hands on experience with CyberArk and personal password managers are a plus
Experience in working within an a Scaled Agile Framework
Personal Attributes:
Highly self-motivated and self-directed, with keen attention to detail
Ability to interface and work with highly technical counterparts in other departments within the company to provide solutions to technical problems
Ability to succinctly articulate complex technical issues to business sponsors
Effective time management skills
Ability to work both independently and in a team-oriented, collaborative environment
Ability to articulate difficult concepts or materials to gain consensus
Experience in a large, international enterprise is preferred
Formal Education & Certification
A Bachelor's degree in Computer Science or Information Systems or equivalent combination of education and related work experience
Certification or equivalent experience in PAM enterprise platforms
Ongoing Employee Development Training/Certification
Hybrid Working
# LI-RK2 #LI-Hybrid #nijobs.com
CME Group: Where Futures Are Made
CME Group (www.cmegroup.com) is the world's leading derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career shaping tomorrow. We invest in your success and you own it, all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And we're looking for more.
At CME Group, we embrace our employees' diverse experiences, cultures and skills, and work to ensure that everyone's perspectives are acknowledged and valued. As an equal opportunity employer, we recognize the importance of a diverse and inclusive workplace and consider all potential employees without regard to any protected characteristic. The Candidate Privacy Policy can be found here.