Citi-posted 4 months ago
$156,160 - $234,240/Yr
Full-time • Senior
Irving, TX
5,001-10,000 employees

As a Senior Privileged Access Management(PAM) Security Engineer, you will be joining Citi’s Information Security Office, where our Secrets Engineering team holds global responsibilities for designing, architecting, and implementing robust Privileged Access Management (PAM), Identity & Access Management (IAM), and Privileged Identity Management (PIM) solutions. You will be a key contributor to the security posture of the firm, focusing on architectural design, development, and operational excellence. This is a critical and continuously evolving domain within cybersecurity, addressing the core challenges of controlling access and managing the lifecycle of highly privileged accounts and sensitive secrets across the enterprise. As the volume of accounts under management steadily grows, our team is dedicated to meeting these challenges head-on, ensuring a crucial balance between stringent security requirements and the operational needs of the firm. We are looking for a highly skilled and motivated individual with a deep understanding of secrets and privileged access management. The ideal candidate will possess a strong technical background, excellent communication skills, and a proactive approach to problem-solving.

  • 10+ years of relevant work experience in Software Engineering, with a strong focus on Cybersecurity or Secrets Management.
  • Demonstrated Subject Matter Expertise (SME) in Privileged Access Management (PAM) and Credential Vaulting technologies.
  • Exceptional collaboration skills with a proven ability to influence and work alongside cross-functional teams (e.g., engineering, operations, security, compliance) on secure design patterns and best practices.
  • Proven experience with DevOps practices, Continuous Integration/Continuous Delivery (CI/CD) pipelines, and Agile methodologies.
  • Proficient in Java and/or .NET.
  • Solid foundation in Software Testing principles and implementing Test Automation.
  • Strong command of PowerShell, T-SQL, SQL, PL/SQL, Unix Shell Scripting, and Perl.
  • Experience developing secure microservices using RESTful APIs, TLS, and OpenAPI specifications.
  • Hands-on experience with Windows Operating Systems, various Unix/Linux distributions (e.g., Red Hat Enterprise Linux).
  • Proficient with major database systems such as Oracle, MongoDB, and Microsoft SQL Server.
  • Solid understanding of Encryption Algorithms, Public Key Infrastructure (PKI), and Active Directory Domain Services.
  • Direct experience with CyberArk Suite of products, including PAS (Privileged Account Security), PSM (Privileged Session Manager), and AAM (Application Access Manager) is a plus.
  • Familiarity with Security best practices and Identity and Access Management (IAM) concepts within the Secrets Management space is a plus.
  • Experience with public Cloud Technologies such as Amazon Web Services (AWS), Google Cloud Platform (GCP), or Microsoft Azure is a plus.
  • Hands-on experience with RPM or other Software Packaging Mechanisms is a plus.
  • medical, dental & vision coverage
  • 401(k)
  • life, accident, and disability insurance
  • wellness programs
  • paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service