logo[мetahunt]
> DOU

Security Engineer

Diya
format:Remotecompany:Outsource
active directorymicrosoft entra idwindows serverlinuxcybersecurityiampampowershell
awsazureansibleterraformci/cd
experience2+ years
locationZhytomyr, Ukraine
> full description

Founded in 2015 in Ukraine, with a representative office in Estonia, Diya has grown into a global IT solutions provider and a proud part of Euvic Group. We help small and medium-sized businesses optimize operations, enhance security, and establish a strong digital presence. Over the past decade, we have built a reputation as a trusted technology partner, a Microsoft partner, delivering tailored IT solutions that drive efficiency, innovation, and growth.

Diya is supporting a EUVIC group company in delivering a CyberArk Privileged Access Management (PAM) implementation for a customer in EU. The project is moving from strategy and design into the Proof of Concept phase followed by production rollout.

We are looking for an experienced PAM/CyberArk professional who can support technical implementation, architecture decisions, knowledge transfer, and onboarding of privileged accounts and systems into CyberArk SaaS.

Key Responsibilities

  • Design & Implement: Deploy, configure, and manage the CyberArk core infrastructure, including Enterprise Password Vault (EPV), Central Policy Manager (CPM), Password Vault Web Access (PVWA), Privileged Session Manager (PSM), and Privileged Threat Analytics (PTA).
  • Account Onboarding: Lead the integration and onboarding of privileged accounts across various platforms (Windows, Linux, databases, cloud platforms, and network devices).
  • Maintenance & Support: Perform system upgrades, apply patches, and troubleshoot complex technical issues within the CyberArk environment.
  • Integration: Integrate CyberArk with internal systems such as Active Directory, SIEM (e.g., Splunk), IT Service Management tools (e.g., ServiceNow), and MFA solutions.
  • Policy & Compliance: Develop and enforce PAM policies, ensuring compliance with industry standards (e.g., GDPR, ISO 27001).
  • Automation: Utilize scripting (PowerShell, Python, or REST APIs) to automate routine PAM tasks and generate security reports.

Required Qualifications

Experience: 2+ years of hands-on experience in Information Security, with a minimum of 1 year dedicated specifically to CyberArk PAM solutions.

Strong understanding of:

  • Privileged Access Management (PAM)
  • Privileged Identity Management (PIM)
  • Identity & Access Management (IAM)
  • Least Privilege and Zero Trust concepts

Experience with:

  • CyberArk SaaS
  • Privilege Cloud
  • Central Policy Manager (CPM)
  • Password Vault
  • Privileged Session Manager (PSM)
  • Identity Security Platform

Experience integrating:

  • Active Directory
  • Microsoft Entra ID / Azure AD
  • Windows Server
  • Linux
  • Network devices
  • Cloud workloads

Nice-to-Have

  • Official CyberArk certifications (CyberArk Defender, Sentry, CDE, etc.).
  • Experience with Cloud environments (AWS, Azure) and cloud-native PAM concepts.
  • Familiarity with DevOps practices and tools (CI/CD pipelines, Ansible, Terraform).
  • Degree in Computer Science, Cybersecurity, or a related field.

What we offer

  • Remote work. Working hours: 10:00 AM — 6:00 PM
  • Professional Certification. We provide full sponsorship and support for relevant industry certifications.
  • We provide a corporate English tutor to help you level up your communication skills for international projects.
  • Comprehensive healthcare insurance and gym membership compensation.
  • Access to professional psychological consultations to support your well-being.
  • Paid vacation and sick leave.
Відгукнутись на вакансію