Role Overview
We are seeking an energetic, forward-thinking professional to join our IT Risk Management & Security group in Prague. This technical role serves as an Engineer in the Identity and Access Management (IAM) space with a focus on Privileged Access Management (PAM) and API security.
What will you do in this role:
- Understand divisional and site business system requirements for Privileged Access Management.
- Must have experience in defining Privileged Access Management platform requirements, designing technical solutions and executing on those designs into a highly available, fault tolerant environment.
- Understanding of security best practices, administration and governance of Identity and Access Management the products and services including identify and evaluate security gaps.
- Perform vendor and technology assessments.
- Recommend improvements, corrections, remediation for projects or internal processes.
- Advocate secure computing practices and procedures and communicate Information Security and IAM best practices throughout the company.
- Maintain active and direct interaction with key stakeholders.
- Working with various technical teams to ensure we maintain high availability and uninterrupted outage of our production environment.
- Demonstrate ability to stay current with all industry trends/best practices, as well as new product releases so that we can maintain a proactive 3-year systems management roadmap.
- Ensure all third-party monitoring solutions that are integrated into the Identity & Access Management products are properly documented and function as designed.
What should you have:
- 4+ years of experience with IAM solutions in the area of Privileged Access Management
- In-depth knowledge of Privileged Access Management solutions (e.g. Delinea Secret Server, CyberArk, BeyondTrust) and typical corporate use-cases and security requirements in this area.
- Previous work designing / implementing Privileged Access Management services and processes.
- Strong organizational skills and able to multitask and adjust to changing priorities
- Ability to work efficiently in a matrixed environment with a global team comprised of company staff, contractors, and vendors
- Excellent interpersonal, written, and oral communication skills to effectively communicate technical ideas in business- and user-friendly language
- Strong analytical and problem-solving skills and demonstrable ability to work independently as well as in a team environment
- Well versed in PAM, PAM in a cloud environment (AWS, Azure, GCP) and standard platforms (Windows, UNIX, Databases), Kubernetes, PowerShell and automation, CI/CD Pipelines
- Excellent communication skills and interpersonal skills are required.
- A demonstrated track record of making a difference and adding value.
- Strong organizational skills with the ability to multi-task.
- Ability to work and adjust to changing deadlines.
- Proven analytical, evaluative, and problem-solving abilities
- Excellent interpersonal, written and oral communication skills with the ability to communicate effectively across all levels of an organization. Able to present technical ideas in business-friendly and user-friendly language
Desired Skills & Experience
- Previous work designing / implementing PAM Solutions (e.g. Delinea Secret Server, CyberArk, BeyondTrust)
- Hands-on experience with managing a PAM solution, understanding of PAM authentication patterns and typical challenges
- PAM Enhancements that support company s strategy roadmap
- Experience working in a large healthcare environment
- Demonstrated understanding of Identity-related NIST standards (e.g. 800-63-3)
- Prior experience with the our Company enterprise environment and business applications
- Good working knowledge of the ITIL framework
- Working knowledge and understanding of Remedy for Change, Incident and Knowledge Management
- CISSP, Security+ or similar industry certification