Senior Specialist - PAM Operations & Governance
Job Description & How to Apply Below
Operate and govern Privileged Access Management services, with Delinea Secret Server as the primary platform, for R100 and other assigned CPX or client environments. The role provides hands‑on PAM administration, privileged identity lifecycle governance, access reviews, policy enforcement, monitoring, audit evidence, incident support, and continuous control improvement. The position also supports vulnerability remediation governance, security risk tracking, operational reporting, and broader Information Security Operations activities, ensuring that privileged access and security findings are controlled, accountable, measurable, and driven to closure.
KeyFocus Areas :
-
- Administer and support Delinea Secret Server, including secrets, folders, templates, policies, launchers, lists, discovery sources, remote password changing, heartbeats, proxy access, session recording, reporting, and platform configuration within approved change controls.
- Monitor platform health, web nodes, database connectivity, directory integrations, password rotation, discovery, recording, backup jobs, alerts, capacity, availability, and scheduled tasks; troubleshoot failures and coordinate restoration with infrastructure, database, network, cloud, and vendor teams.
- Maintain secure integration with Active Directory, FreeIPA or LDAP, load balancers, databases, target systems, ticketing platforms, SIEM, storage, and approved administrative access paths.
- Plan and support upgrades, patches, license or subscription activities, resilience testing, backup validation, recovery exercises, and controlled platform changes.
- Own privileged account, service account, administrative account, emergency account, vendor account, and non-human identity onboarding, modification, suspension, recertification, and offboarding workflows.
- Validate business justification, ownership, approvals, target scope, access duration, role assignment, folder permissions, secret sharing, checkout rules, and session‑control requirements before provisioning.
- Enforce least privilege, role‑based access, segregation of duties, time‑bound access, credential rotation, controlled break‑glass access, and removal of dormant, orphaned, duplicate, excessive, or unauthorized privileges.
- Maintain authoritative inventories of privileged identities, managed systems, secret owners, custodians, exceptions, integrations, dependencies, and lifecycle status.
- Plan and execute periodic privileged access and entitlement reviews with application, infrastructure, cloud, database, network, security, and business owners; track responses, evidence, revocations, overdue actions, and management escalations.
- Review privileged sessions, access events, failed checkouts, policy violations, unusual activity, stale secrets, missed rotations, disabled controls, bypasses, and exceptions; initiate investigation and corrective action where required.
- Produce audit‑ready evidence for access certifications, privileged account governance, password rotation, approvals, session monitoring, control operation, issue closure, exceptions, and management oversight.
- Support internal and external audits, client reviews, compliance assessments, risk assessments, and control testing aligned to applicable contractual, regulatory, and CPX IMS requirements.
- Respond to PAM service incidents and security events, including failed privileged access, password rotation failures, vault or node issues, suspicious sessions, credential exposure, unauthorized access, and control bypass attempts.
- Provide 8x5 operational support and controlled best‑effort on‑call support for critical PAM‑related incidents outside business hours, when assigned under the service model.
- Perform triage, evidence preservation, containment support, root‑cause analysis, recovery coordination, problem management, and post‑incident corrective action tracking.
- Assess PAM deviations and exceptions, document risk and compensating controls, obtain approvals, define expiry dates, and ensure timely review, renewal, or closure.
- Review and validate vulnerability findings from vulnerability scans, penetration tests, red and purple team exercises, configuration reviews, cloud…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×