Share this job
Notre client dans le secteur Banque et finance recherche un/une CyberArk Engineer – Secret Manager / PAM H/F
Description de la mission :
Job description – CyberArk Engineer – Secret Manager / PAM
Context and mission objective
Within the Chief Information Security Office (CISO) of a global financial market infrastructure provider, the protection of information assets is a core business priority. Security is embedded in the organization’s services, management systems, and operational processes. As part of a strategic initiative to strengthen Privileged Access Management (PAM), the organization is undertaking an enterprise-wide deployment of CyberArk Secret Manager.
The role sits within the Identity and Access Management (IDAM) team, which is responsible for implementing, operating, and managing access across the IT infrastructure. The team covers access management, user lifecycle management, privileged access management, recertification, and related delivery and advisory services.
Role summary
This is a hands-on, project-based role for a mid-level to senior CyberArk Engineer with strong autonomy and deep practical expertise in CyberArk AAM (Application Access Manager), now integral to the CyberArk Secret Manager solution. The consultant will be responsible for the end-to-end deployment, configuration, and integration of the core Secret Manager components: Credential Provider (CP), Central Credential Provider (CCP), and Application Service Credential Provider (ASCP). The role also involves acting as a technical subject matter expert for the Secret Manager implementation.
Main responsibilities
• Install, configure, and integrate the CyberArk Secret Manager suite (CP, CCP, ASCP) across Windows and Linux environments
• Architect and implement solutions for managing Functional/Service Accounts with high availability and disaster recovery considerations
• Configure and optimize CCP and ASCP for seamless application integration
• Perform advanced CyberArk PAM administration tasks, including creation and management of Safes, platforms, and user permissions
• Develop and customize platforms to meet application and database-specific requirements
• Define and implement Safe access control policies in line with the principle of least privilege
• Integrate CyberArk Secret Manager with applications, middleware, and databases for automated credential rotation and retrieval
• Collaborate with application teams to troubleshoot and resolve integration issues related to CCP and ASCP
• Script and automate routine tasks using PowerShell, Linux Bash, REST APIs, and Ansible
• Work independently or as part of the team, providing guidance to application administrators, developers, and application owners
• Create and maintain technical documentation such as design diagrams, operational runbooks, and integration guides
• Participate in project meetings and provide clear progress, challenge, and solution updates
• Communicate and implement technical strategies with the wider technical team
Profile required
Technical skills
• Proven hands-on experience deploying and configuring CyberArk Secret Manager, including CP, CCP, and ASCP
• Expert-level knowledge of CyberArk AAM (Application Access Manager)
• Strong experience as a CyberArk PAM Administrator, including Safe creation, platform design, permission management, and account onboarding
• Practical experience managing Windows and Linux Functional/Service Accounts within CyberArk
• Solid understanding of networking, Windows/Linux server administration, and core security concepts
• Proven automation experience with Ansible
• Ability to script with PowerShell, Linux Bash, and REST APIs
Personal attributes
• Independent and proactive, able to work with minimal supervision and take ownership through to completion
• Fast learner, able to adapt quickly in a dynamic project environment
• Immediately operational thanks to demonstrable prior project experience
• Strong analytical, troubleshooting, and problem-solving skills
• Good interpersonal and collaborative skills
Expected deliverables
• End-to-end deployment and configuration of CyberArk Secret Manager components
• Secure integration patterns for applications, middleware, and databases
• Configured Safes, platforms, permissions, and access control policies
• Automation scripts and operational improvements
• Technical documentation including design diagrams, runbooks, and integration guides
Compétences / Qualités indispensables :
CyberArk Secret Manager, CyberArk AAM / Application Access Manager, CyberArk PAM administration, Windows & Linux environments, PowerShell / Bash / REST API automation, Ansible
Compétences / Qualités qui seraient un + :
/Informations concernant le télétravail :
Oui — 3 jours/semaine
Candidate profile
CyberArk Secret Manager
CyberArk AAM / Application Access Manager
CyberArk PAM administration
Windows & Linux environments
PowerShell / Bash / REST API automation
Ansible
Apply to this job!
Find your next career move from +8,000 jobs!
Manage your visibility
Salary, remote work... Define all the criteria that are important to you.
Get discovered
Recruiters come directly to look for their future hires in our CV library.
Join a community
Connect with like-minded tech and IT professionals on a daily basis through our forum.
CyberArk Engineer – Secret Manager / PAM
LeHibou
