Cyber Proactive Security - Associate
Listed on 2026-09-26
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Systems Engineer, Network Security
Select how often (in days) to receive an alert:
Responsible for supporting the Proactive Security function, with an approximately equal focus on Privileged Access Management and broader security engineering. The role supports the Cyber Ark PAM service while helping Proactive Security design, implement, integrate and improve preventative security controls across the Bank. Working with infrastructure, application, architecture, risk and security teams, the role contributes to secure technology delivery, automation, security tool engineering, control improvement and cyber resilience.
Proactive Security identifies and reduces security risk before it becomes an incident by strengthening privileged access, engineering preventative controls and improving the security technology environment.
1. Privileged Access Management:
- Manage and support the multi-region Cyber Ark PAM platform, including Digital Vault, CPM, PSM, PSMP, CCP, AIM/AAM, PTA and supporting components.
- Onboard, maintain and decommission privileged accounts, service accounts, SSH keys, certificates and application credentials.
- Design and maintain Cyber Ark Safes, role-based access controls, platforms and policies aligned with least privilege, Zero Trust and applicable security standards.
- Support Cyber Ark upgrades, maintenance, disaster recovery testing, service improvements and future migration initiatives.
- Develop automation scripts and repeatable processes for onboarding, reconciliation, reporting, recertification and operational efficiency.
- Configure and support third-party integrations, connection components and non-standard connectors for business applications.
- Support application and Dev Ops teams with secrets management, credential rotation and secure application authentication.
- Support the Proactive Security function in designing, implementing and improving preventative security controls across infrastructure, applications, identity and cloud environments.
- Support evaluations, proof-of-concept exercises and pilot deployments for new security technologies.
- Assist with the onboarding, configuration, integration, tuning, testing and operational handover of cybersecurity tools.
- Work with engineering, infrastructure, application, architecture and third-party teams to deliver Proactive Security projects and control improvements.
- Contribute practical technical input to security designs, requirements, solution assessments, implementation plans and technical testing.
- Develop scripts, integrations and repeatable engineering processes that reduce manual effort and improve the reliability of security controls.
- Support certificate lifecycle management, secrets management, identity security, endpoint security, network security and cloud security initiatives where assigned.
- Identify control gaps and recommend practical engineering improvements that reduce risk before security incidents occur.
- Support security tooling upgrades, platform maintenance, service transition, resilience testing and technical lifecycle management.
- Produce clear operational reports, dashboards, metrics and management information for Proactive Security and PAM activities.
- Maintain Proactive Security and PAM SOPs, runbooks, onboarding guides, platform diagrams, support procedures and control evidence.
- Ensure monitoring and review activities are documented with appropriate timestamps, screenshots and supporting records where required.
- Support Proactive Security standards, procedures, risk actions, control assessments and audit remediation plans.
- Deliver Proactive Security knowledge-sharing sessions and provide practical guidance to internal stakeholders.
- Experience supporting enterprise cybersecurity, security engineering, infrastructure or identity security technologies.
- Good understanding of Privileged Access Management concepts and practical knowledge of Cyber Ark solutions.
- Understanding of identity security, least privilege, credential lifecycle management and Zero Trust principles.
- Working knowledge of Windows Server, Active Directory, Linux and enterprise networking concepts.
- Understanding of firewalls, proxies, VPNs, network segmentation and remote access technologies.
- Familiarity with security frameworks and standards such as NIST CSF, NIST 800-53, CIS Controls or ISO 27001.
- Ability to use Power Shell, Python or similar scripting technologies for automation and data handling.
- Strong…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).