About The Position

Be part of a team that unleashes the power of leading-edge technologies to help improve the health and well-being of those most vulnerable in our country and communities. Working at Gainwell carries its rewards. You’ll have an incredible opportunity to grow your career in a company that values work flexibility, learning, and career development. You’ll add to your technical credentials and certifications while enjoying a generous, flexible vacation policy and educational assistance. We also have comprehensive leadership and technical development academies to help build your skills and capabilities.  Summary  We’re looking for a hands-on PAM leader to own Gainwell’s enterprise Privileged Access Management strategy and execution. This role will lead the end-to-end implementation and ongoing evolution of CyberArk across on‑prem, cloud (AWS/Azure), and hybrid environments, establish PAM governance and controls, and partner across Infrastructure, Cloud, Identity, and Compliance teams to measurably reduce privileged risk while enabling the business.Your role in our mission

Requirements

  • 10+ years of experience in Information Security or Identity, including 5+ years leading enterprise PAM initiatives
  • Proven, hands-on experience designing, deploying, and operating CyberArk (Privilege Cloud or PAS on-prem), including Vault/EPV, PVWA, CPM, PSM, session recording, and platform/safe configuration
  • Deep expertise in Active Directory/Azure AD, Windows and Linux systems, AWS and Azure environments, and SIEM integrations
  • Strong understanding of least privilege, privileged elevation and delegation (PEDM), just-in-time (JIT) access, secrets management, and privileged session isolation
  • Demonstrated ability to build and scale security programs, policies, governance models, and KPIs in complex, cross-functional environments
  • Excellent communication, leadership, and change-management skills

Nice To Haves

  • CyberArk certifications (Defender, Sentry, Guardian, CDE) or equivalent credentials
  • Experience transitioning PAM programs from large-scale rollout to steady-state operations
  • Familiarity with regulated environments and audit evidence generation (e.g., HIPAA, SOC 2, NIST)
  • Automation or scripting experience (PowerShell, Python) to support onboarding and integrations

Responsibilities

  • Define and lead Gainwell’s enterprise Privileged Access Management (PAM) vision, roadmap, and operating model, including policies, standards, processes, and measurable KPIs.
  • Establish strong PAM governance through steering committees, risk reviews, and exception handling, and communicate outcomes and risk reduction to executive stakeholders.
  • Architect, deploy, and evolve CyberArk across on-prem, cloud (AWS/Azure), and hybrid environments, including Vault/EPV, PVWA, CPM, and PSM.
  • Drive phased onboarding of privileged identities, starting with Tier 0 and high-risk accounts and expanding to server, endpoint, and cloud workloads, ensuring stable transition to steady-state operations.
  • Implement least-privilege and just-in-time (JIT) access models, privileged elevation and delegation (PEDM), session isolation and auditing, and enterprise secrets management aligned to industry best practices.
  • Define and enforce privileged access standards, including safe structures, credential rotation, break-glass procedures, and emergency access controls.
  • Build and operate scalable PAM processes for onboarding/offboarding, approvals, periodic access reviews, credential lifecycle management, and incident response for privileged misuse.
  • Strengthen regulatory readiness by ensuring auditability and evidence generation aligned to frameworks such as HIPAA, SOC 2, and NIST.
  • Partner with Identity, Infrastructure, Cloud, and DevOps teams to integrate PAM into CIEM, ITSM, and automation workflows, reducing standing privileges and hard-coded secrets.
  • Enable adoption and long-term success through training programs, stakeholder engagement, and hands-on leadership as the enterprise PAM subject matter expert.
  • Manage strategic relationships with CyberArk and delivery partners, ensuring platform alignment, continuous improvement, and measurable value realization.

Benefits

  • generous, flexible vacation policy
  • educational assistance
  • leadership and technical development academies

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service