About the role The Identity and Access Management (IAM) team at AIG is seeking a highly skilled IAM engineer with expertise in the Idira (CyberArk) vaulting solutions and strong system integration skills. As the IAM Principal Privileged Access Engineer, you will play a critical role in designing, implementing, and maintaining our enterprise IAM infrastructure for Privileged Access Management (PAM) solutions.
- Own the PAM technical architecture, platform standards, and engineering roadmap - defining how the PAM solution and complementary technologies are deployed, integrated, and evolved across the enterprise.
- Architect integrations between the PAM solution stack and adjacent systems: Entra ID / Active Directory, SIEM/ITDR platforms, cloud IAM (AWS, Azure, GCP), ticketing systems (ServiceNow), and CI/CD pipelines.
- Evaluate and recommend emerging PAM, ISPM, and NHI tooling to inform investment decisions and platform strategy.
- Collaborate with cross-functional teams to gather IAM requirements and translate them into technical solutions.
- Responsible for the configuration and deployment of vault, safes, platforms, workflows, connectors, automations, and other components to support account lifecycle protection and compliance with regulations.
- Manage integrations from the PAM solution with various systems and applications, including but not limited to Active Directory, servers, databases, mainframes, and other applications.
- Implement and maintain password policies and platforms and corresponding account password management within the PAM solution.
- Collaborate with infrastructure, application, and development teams to ensure smooth integration of IAM solutions via API protocols.
- Conduct integration testing to verify the functionality, performance, and security of IAM solutions.
- Stay current with industry best practices and emerging trends in IAM and contribute to the continuous improvement of IAM processes and technologies.
What we're looking for - 10+ years of in-depth IT experience with designing, developing, and supporting PAM solutions with several years focused on IAM solutions (specifically Idira, CyberArk).
- 10+ years of experience deploying and configuring common Idira PAM (CyberArk) connectors and plug-ins, including Active Directory (AD), Azure AD, servers, databases, mainframe, and other applications as well as creating custom connectors.
- Familiar with software development lifecycles (SDLC) and Agile development methodologies.
- Intellectual curiosity about the evolving NHI, agentic AI, and cloud identity security landscape - and a bias toward building program capability ahead of the threat
- Candidates must possess excellent verbal communication, decision making and customer service skills.
- Ability to work in a team environment, adapt quickly to change and learn new applications or environments is required.
- Must be highly organized and maintain quality work while meeting deadlines.
- Extreme attention to detail is necessary due to audit and regulatory requirements.
- Proven experience in integration testing, ensuring the seamless integration of IAM solutions with various systems and applications.
- Strong analytical and problem-solving skills with the ability to troubleshoot complex technical issues.
- Excellent communication skills and the ability to collaborate effectively with cross-functional teams.
- Proactive and self-motivated with the ability to work independently and manage multiple tasks simultaneously.
- Valid Guardian certification in Idira (CyberArk) preferred
- Bachelor's degree in a Cybersecurity, Information Technology, or related field, such as Computer Science or Information Technology.
For positions based in Jersey City, NJ, the basesalary range for this position is $156,000-$196,000 and the position is eligible for a bonus in accordance with the terms of the applicable incentive plan. Your actual compensation will be dependent on your skills, experience, and qualifications. If your compensation expectations are above the posted range, we still encourage you to apply-your unique background matters to us. In addition, we're proud to offer a range of competitive benefits, a summary of which can be viewed here: US Benefits Overview.
#LI-CN1
#Cybersecurity #Infosec
At AIG, we value in-person collaboration as a vital part of our culture, which is why we ask our team members to be primarily in the office. This approach helps us work together effectively and create a supportive, connected environment for our team and clients alike.
Enjoy benefits that take care of what mattersAt AIG, our people are our greatest asset. We know how important it is to protect and invest in what's most important to you. That is why we created our Total Rewards Program, a comprehensive benefits package that extends beyond time spent at work to offer benefits focused on your health, wellbeing and financial security-as well as your professional development-to bring peace of mind to you and your family.
Functional Area:
IT - Information Technology
AIG Employee Services, Inc.