- 
        Senior CyberArk Engineer - Remote
- EPAM Systems (Conshohocken, PA)
- 
             We are seeking an experienced **Senior IAM Engineer** to play a key role in architecting, deploying, and maintaining secure application infrastructures with a primary focus on Endpoint Privileged Management. Expertise in Endpoint Privileged Management tools is essential for this role. In this advanced position, you will work to elevate the organization’s security posture within a cloud-based environment, driving innovation in operational processes and implementing solutions that seamlessly balance business goals and security standards. This role requires strong hands-on engineering and administrative skills, alongside an ability to design policies and scalable solutions to meet organizational needs. The Senior IAM Engineer will provide support, direction, and mentorship to the team while delivering resilient, enterprise-wide solutions. Adaptability and the ability to respond to an evolving threat landscape are vital, as is the capacity to integrate and align technologies with the overarching business objectives. Req.#845689716 Responsibilities + Design and deploy security architectures and strategies to protect information systems and assets + Develop, implement, and maintain Endpoint Privileged Management solutions + Ensure all security technologies and architectures align with organizational Information Security policies, standards, and business objectives + Support critical IAM infrastructure to ensure system availability and minimize downtime risks + Deploy and manage Single Sign-On (SSO) and federated authentication systems, ensuring seamless internal and external (vendor) integration + Diagnose, troubleshoot, and resolve security-related technical issues swiftly using tools for tracing, logging, and real-time debugging + Create and maintain scripts and programs to enhance operational efficiencies, resolve issues, and integrate systems (e.g., using Python, JavaScript, Bash, and PowerShell) + Continuously assess and identify opportunities to improve IAM processes and security controls Requirements + 5+ years of experience + Endpoint Privileged Management: Hands-on experience implementing and managing tools in this domain is mandatory + Single Sign-On (SSO): Proficiency in deploying and supporting SSO for enterprise applications, including tracing, logging, and real-time troubleshooting + Federated Authentication: Experience with SAML and/or OIDC for both internal and external authentication workflows + Scripting and Programming: Ability to write, troubleshoot, and optimize scripts/programs using Python, JavaScript, Bash, and PowerShell (prioritized in order of importance). Additional programming or scripting skills are a bonus + HTTP Debugging: Expertise using debugging tools such as Fiddler, SAML-Tracer, or equivalent for analyzing authentication issues + Active Directory / LDAP Services: Familiarity with querying and updating Active Directory (AD) or other LDAP Directory Services through scripts/programs + Experience with SecureAuth IdP + Knowledge of Multi-Factor Authentication (MFA) systems, particularly in deploying and supporting MFA for internal and external applications + Understanding of Virtual Directory Services, Public Key Infrastructure (PKI)/Certificates, Identity Management concepts, Cloud Technologies, and device authentication We offer + Medical, Dental and Vision Insurance (Subsidized) + Health Savings Account + Flexible Spending Accounts (Healthcare, Dependent Care, Commuter) + Short-Term and Long-Term Disability (Company Provided) + Life and AD&D Insurance (Company Provided) + Employee Assistance Program + Unlimited access to LinkedIn learning solutions + Matched 401(k) Retirement Savings Plan + Paid Time Off – the employee will be eligible to accrue 15-25 paid days, depending on specific level and tenure with EPAM (accrual eligibility may change over time) + Paid Holidays - nine (9) total per year + Legal Plan and Identity Theft Protection + Accident Insurance + Employee Discounts + Pet Insurance + Employee Stock Purchase Program + If otherwise eligible, participation in the discretionary annual bonus program + If otherwise eligible and hired into a qualifying level, participation in the discretionary Long-Term Incentive (LTI) Program EPAM is a leading global provider of digital platform engineering and development services. We are committed to having a positive impact on our clients, our employees, and our communities. We embrace a dynamic and inclusive culture. Here you will collaborate with multi-national teams, contribute to a myriad of innovative projects that deliver the most creative and cutting-edge solutions, and have an opportunity to continuously learn and grow. No matter where you are located, you will join a dedicated, creative, and diverse community that will help you discover your fullest potential.Engineer the Future with a Career at EPAM (https://www.youtube.com/embed/NU\_mnNITn2o?si=IiCxyQ4sr1YJWxDG) This Remote Position Cannot be Performed in New York City. This posting includes a good faith range of the salary EPAM would reasonably expect to pay the selected candidate. The range provided reflects base salary only. Individual compensation offers within the range are based on a variety of factors, including, but not limited to: geographic location, experience, credentials, education, training; the demand for the role; and overall business and labor market considerations. Most candidates are hired at a salary within the range disclosed. Salary range: $90,000 - $165,000. In addition, the details highlighted in this job posting above are a general description of all other expected benefits and compensation for the position. Applications will be accepted on a rolling basis. In accordance with the LA County Fair Chance Ordinance, you may find a copy of the Notice containing a summary of the Ordinance’s key provisions here: Concept FCO Posting 8 27 24 (lacounty.gov) H1B visa sponsorship is not available for this position. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. EPAM Systems, Inc. is an equal opportunity employer. We recognize the value of diversity and inclusion in creating success for our customers, business partners, shareholders, employees and communities. We are committed to recruiting, hiring, developing and promoting employees without discrimination. As a global employer, this commitment includes complying with all laws in the countries in which we operate. Nevertheless, we believe equal employment practices should not be limited to what the law requires. Equal opportunity and inclusion are essential to motivate, empower and recognize the best in everyone. At EPAM, employment actions are based on individual qualifications, without regard to race, color, religion, creed, gender, pregnancy status, sexual orientation, gender identity, gender expression, marital or familial status, national origin, ancestry, genetics, age, disability status, veteran status, citizenship status when otherwise legally able to work, or any other characteristic protected by law. 
 
 
-