Responsibilities:- Lead the architecture, deployment, and management of CyberArk Privileged Access Management (PAM) solutions to support DoD application integration into ZT environment
- Drive alignment between PAM strategies and overarching initiatives, ensuring seamless integration with Identify Governance and Administration (IGA, Single Sign-On (SSO, Multi-Factor Authentication (AFA), and directory services
- Oversee workflows for onboarding privileged accounts, conduct comprehensive risk assessments, and maintain strict compliance with DoD and client security standards
- Identify and build automations to accelerate integration of applications into PAM platform
- Partner with cross-functional teams to enable ZT capability deployment, successfully optimizing CyberArk best practices
- Develop and maintain automation scripts, policies, and custom connectors required for enterprise scalability
- Troubleshoot and resolve technical issues, ensuring highly stable PAM operations and remediation of incidents
- Provide strategic leadership in the design and implementation of privileged access auditing, reporting, and alerting mechanisms
- Mentor and review work of junior PAM engineers, and analysts
- Support documentation and reporting efforts for project management, roadmap tracking and overall ZT maturation
Qualifications:- A minimum of five years of experience engineering and managing privileged access management (PAM) solutions including two years in a leadership capacity; U.S. Federal government consulting experience preferred
- Bachelor's degree from an accredited college/university
- Foundational knowledge of comprehensive ICAM principals, architectures, and federal frameworks e.g. FICAM), extending beyond PAM to include end-to-end identify lifecycle management
- Understanding of privileged access management (PAM) concepts and DoD cybersecurity frameworks; CyberArk preferred
- Experience with large-scale PAM implementation, lifecycle management, and integration with enterprise systems (e.g. Active Directory, SIEM, ITSM, and IGA Platforms like SailPoint or Okta)
- Experience leading cross-functional teams in highly regulated environments
- Preferred certifications: CyberArk Defender, Sentry or Guardian; DoD 8570 IAM/IAT Level II or higher a plus
- Ability to travel as required to support firm engagements
- Applicant must possess or be eligible for a U.S. Government clearance
KPMG LLP and its affiliates and subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work .
Follow this link to obtain salary ranges by city outside of CA:
https://kpmg.com/us/en/how-we-work/pay-transparency.html/?id=M105ADV_3_26