Job Description
Company: Shain Associates
Location: New York, US
Lead the implementation, adoption, and continuous improvement of our enterprise privileged access management program to protect critical systems and sensitive access paths
• Develop and maintain privileged access policies, standards, governance processes, and operating procedures aligned with industry best practices and regulatory expectations
• Partner with infrastructure, security, cloud, application, and engineering teams to onboard applications, privileged accounts, service accounts, and systems into the platform
• Apply least privilege, segregation of duties, and risk-based access principles across privileged access workflows and control remediation efforts
• Lead privileged access certification campaigns and audit responses by validating access rights, producing evidence, and remediating findings
• Monitor operational health, security posture, and program effectiveness through performance indicators, risk indicators, dashboards, trend analysis, and management reporting
• Automate manual processes using scripting, application programming interfaces, workflow automation, and targeted process improvements to reduce risk and improve efficiency
• Use enterprise-approved artificial intelligence (AI) tools to accelerate analysis, streamline documentation, support troubleshooting, and improve decisions while validating generated outputs
• Integrate privileged access controls with identity governance, directory services, cloud security, infrastructure, audit, and risk processes across the enterprise
• Mentor team members and evaluate emerging capabilities to continuously mature the privileged access program
What’s required
• 8-10 years of experience in information security, with a strong focus on identity and access management and privileged access management
• Bachelor’s degree in computer science, information systems, cybersecurity, or a related field, or equivalent practical experience
• Strong knowledge of privileged account lifecycle management, credential vaulting, privileged session management, least privilege, privileged elevation, and secrets management
• Hands-on experience with enterprise privileged access management solutions, such as CyberArk, BeyondTrust, Delinea, Microsoft Entra PIM, or similar technologies
• Experience with identity governance and administration platforms, such as SailPoint Identity Security Cloud, IdentityIQ, Saviynt, or similar technologies
• Strong understanding of Active Directory, Microsoft Entra ID, Windows and Linux administration, enterprise authentication technologies, and authorization protocols, such as LDAP, Kerberos, SAML, OAuth, OpenID Connect, and multifactor authentication
• Knowledge of regulatory and security frameworks, such as SOX, ISO 27001, NIST, PCI DSS, or similar compliance standards
• Experience using data, operational metrics, dashboards, and enterprise-approved artificial intelligence tools to identify trends, improve documentation, enhance analysis, and validate generated outputs
• Strong analytical, troubleshooting, communication, and stakeholder management skills, with demonstrated ability to resolve complex access issues and lead cross-functional technology and process adoption
Source: JobLeads