*Fully remote*
*Remote: Monday- Friday; 9-5*
*SCOPE OF SERVICES *
* *The senior Identity & Access Management Engineer* will provide subject matter expertise for comprehensive PAM deployments in a large, distributed environment.
* The candidate will work closely with business, technical and application stakeholders to achieve project objectives, from onboarding new organizations to full production deployment for both work streams.
*TASKS:*
*The Identity & Access Management Engineer will:*
* Deploy the PAM solution to Windows and Linux servers; install session monitoring software.
* Integrate solutions with high assurance level for on-premises, commercial off-the-shelf, and cloud-based applications with multi-factor authentication.
* End-to-end solution installation: work with Infrastructure Management teams to ensure the introduction of the solution does not impact production environments.
* Collaborate with Cybersecurity, Identity Management, Windows and Linux teams to track deployment activities, and mitigate unauthorized activity.
* Update Active Directory roles and Group Policy Objects for privileged accounts.
* Assist architecture teams in performing asset inventory, validating agency assets.
* Develop playbooks to assist agencies ‘self-service’ their security posture; document server installations and processes; document gaps in access management processes and recommend controls to resolve gaps.
* Host standardized training sessions on-site and virtually; develop content for customized training sessions; run workshops to assist agencies in configuring systems; facilitate annual refresher training.
*MANDATORY SKILLS/EXPERIENCE Note: Candidates who do not have the mandatory skills will not be considered*
* *Minimum twelve (12) years* of experience providing specialized knowledge of complex customer processes and requirements; applying technical expertise in defining, analyzing, validating, and documenting complex operation environments, states of technology and current engineering processes; conducting complex technical investigations through advanced research techniques, analysis or development phases of engineering projects.
* Understanding privileged account lifecycle management.
* *Strong Active Directory skills* including multi-factor, multi-domain, and multi-tenant environments; domain trust relationships, organizational units, rights inheritance, DNS and GPOs; group assignments and role delegations.
* Willingness to travel within NYC for key meetings.
Job Type: Contract
Pay: $110,000.
00 - $130,000.
00 per year
Experience level:
* 11+ years
Schedule:
* Monday to Friday
Work Location: Remote