Lead Business Analyst (Cyberark)

Simeio

$125K — $150K *
Finance & Insurance
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of Identity and Access Management (IAM) experience with a focus on Privileged Access Management (PAM).
  • Proven track record leading enterprise PAM initiatives in large, regulated environments.
  • Extensive hands-on experience with CyberArk, including management and onboarding of privileged accounts.
  • In-depth understanding of Active Directory structures and Windows access controls.
  • Working knowledge of Linux privileged access management and sudo administration.
  • Familiarity with SailPoint for entitlement governance and application onboarding processes.
  • Strong communication skills for engaging stakeholders and providing executive reporting.

Responsibilities

  • Lead PAM governance and remediation initiatives across the enterprise.
  • Collaborate with multiple teams to enhance privileged access controls and resolve audit findings.
  • Review privileged access requests and recommend risk mitigations.
  • Efficiently reduce standing administrative privileges by implementing secondary administrative accounts.
  • Monitor PAM Key Risk Indicators and coordinate remediation efforts based on findings.
  • Support Internal Audit processes by collecting evidence and validating controls.
  • Deliver clear status reporting to executives on progress and risks of remediation activities.

Benefits

  • Opportunities for professional growth within a collaborative team environment.
  • Access to ongoing training and certifications in IAM and PAM technologies.
  • Work in a strategic role that influences enterprise security posture.
  • Collaborate with senior stakeholders across various departments.
Full Job Description
We are seeking a highly experienced Senior Privileged Access Management (PAM) Lead to drive key PAM governance, risk reduction, and remediation initiatives across the enterprise. This is a hands-on, delivery-focused role responsible for improving privileged access controls, reducing security risk, and partnering with stakeholders across Technology, Risk, Compliance, and Internal Audit.

The ideal candidate will quickly assess the current environment, independently lead remediation efforts, and deliver measurable outcomes across multiple workstreams. This role requires strong expertise in CyberArk, and privileged access governance. This is not a CyberArk administration-only position; it is a strategic and execution-focused leadership role.Key Responsibilities
  • Lead and execute enterprise-wide PAM governance, risk reduction, and remediation initiatives.
  • Partner with Governance, Risk, Compliance, Infrastructure, and Application teams to improve privileged access controls and address audit findings.
  • Review privileged access requests, policy exceptions, service account access, and Active Directory group structures to identify risks and recommend appropriate controls.
  • Drive efforts to reduce standing administrative privileges and migrate users to secondary administrative accounts across Windows, Linux, and endpoint environments.
  • Monitor PAM Key Risk Indicators (KRIs), investigate trends, determine root causes, and coordinate remediation activities.
  • Support Internal Audit engagements, including evidence collection, issue remediation, and control validation.
  • Provide clear executive-level status reporting, highlighting progress, risks, dependencies, and remediation plans.
  • Coordinate cross-functional teams to ensure remediation initiatives are completed on schedule.
Priority Focus Areas
  • CyberArk privileged and service account onboarding.
  • Reduction of global and standing administrator access.
  • Remediation of clear-text credential exposure through CyberArk and approved secrets management solutions.
  • Active Directory nested group and file share permission cleanup.
  • SailPoint entitlement governance, ownership validation, and application onboarding improvements.
  • Delivery of audit and risk-driven remediation activities.
Required
  • Identity and Access Management (IAM) experience, including focus on Privileged Access Management.
  • Proven success leading enterprise PAM initiatives within large, complex, and regulated environments.
  • Strong hands-on experience with CyberArk, including privileged account management, service account onboarding, vaulting, and remediation activities.
  • Deep knowledge of Active Directory, privileged groups, secondary administrator accounts, nested groups, and Windows access controls.
  • Working knowledge of Linux privileged access management, sudo administration, service accounts, and SSH controls.
  • Experience with SailPoint IdentityIQ and/or IdentityNow, including entitlement governance, ownership management, certifications, and application onboarding.
  • Experience collaborating with Internal Audit, Risk, Compliance, Infrastructure, and Application teams.
  • Demonstrated ability to drive remediation efforts across multiple stakeholders without direct authority.
  • Strong communication and executive reporting skills.
Preferred
  • Experience in financial services or other highly regulated environments.
  • Background supporting audit, compliance, and risk management initiatives.
  • Familiarity with enterprise secrets management and privileged account governance best practices.

Similar Jobs

More Jobs at Simeio

More Finance & Insurance Jobs

Find similar Lead Business Analyst (Cyberark) jobs: