Security Engineer
Founded in 2015 in Ukraine, with a representative office in Estonia, Diya has grown into a global IT solutions provider and a proud part of Euvic Group. We help small and medium-sized businesses optimize operations, enhance security, and establish a strong digital presence. Over the past decade, we have built a reputation as a trusted technology partner, a Microsoft partner, delivering tailored IT solutions that drive efficiency, innovation, and growth.
Diya is supporting a EUVIC group company in delivering a CyberArk Privileged Access Management (PAM) implementation for a customer in EU. The project is moving from strategy and design into the Proof of Concept phase followed by production rollout.
We are looking for an experienced PAM/CyberArk professional who can support technical implementation, architecture decisions, knowledge transfer, and onboarding of privileged accounts and systems into CyberArk SaaS.
Key Responsibilities
- Design & Implement: Deploy, configure, and manage the CyberArk core infrastructure, including Enterprise Password Vault (EPV), Central Policy Manager (CPM), Password Vault Web Access (PVWA), Privileged Session Manager (PSM), and Privileged Threat Analytics (PTA).
- Account Onboarding: Lead the integration and onboarding of privileged accounts across various platforms (Windows, Linux, databases, cloud platforms, and network devices).
- Maintenance & Support: Perform system upgrades, apply patches, and troubleshoot complex technical issues within the CyberArk environment.
- Integration: Integrate CyberArk with internal systems such as Active Directory, SIEM (e.g., Splunk), IT Service Management tools (e.g., ServiceNow), and MFA solutions.
- Policy & Compliance: Develop and enforce PAM policies, ensuring compliance with industry standards (e.g., GDPR, ISO 27001).
- Automation: Utilize scripting (PowerShell, Python, or REST APIs) to automate routine PAM tasks and generate security reports.
Required Qualifications
Experience: 2+ years of hands-on experience in Information Security, with a minimum of 1 year dedicated specifically to CyberArk PAM solutions.
Strong understanding of:
- Privileged Access Management (PAM)
- Privileged Identity Management (PIM)
- Identity & Access Management (IAM)
- Least Privilege and Zero Trust concepts
Experience with:
- CyberArk SaaS
- Privilege Cloud
- Central Policy Manager (CPM)
- Password Vault
- Privileged Session Manager (PSM)
- Identity Security Platform
Experience integrating:
- Active Directory
- Microsoft Entra ID / Azure AD
- Windows Server
- Linux
- Network devices
- Cloud workloads
Nice-to-Have
- Official CyberArk certifications (CyberArk Defender, Sentry, CDE, etc.).
- Experience with Cloud environments (AWS, Azure) and cloud-native PAM concepts.
- Familiarity with DevOps practices and tools (CI/CD pipelines, Ansible, Terraform).
- Degree in Computer Science, Cybersecurity, or a related field.
What we offer
- Remote work. Working hours: 10:00 AM — 6:00 PM
- Professional Certification. We provide full sponsorship and support for relevant industry certifications.
- We provide a corporate English tutor to help you level up your communication skills for international projects.
- Comprehensive healthcare insurance and gym membership compensation.
- Access to professional psychological consultations to support your well-being.
- Paid vacation and sick leave.