Associate Director, Cybersecurity Engineering

CamWebDir

Rahway (NJ)

Hybrid

GBP 108,000 - 169,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical
Dental
Vision insurance
401(k) Retirement

Job summary

Merck & Co., Inc. seeks a Privileged Access Management Team Lead to own strategy, engineering delivery, and governance of PAM and secrets management.

The role leads a global PAM engineering team in partnership with IAM Product, architecture, cybersecurity, and business stakeholders to advance Zero Trust and meet regulatory requirements. The candidate will define and modernize PAM standards, drive risk reduction, and collaborate across teams to deliver secure privileged access across

Qualifications

  • 10+ years in cybersecurity or IAM with 7+ years in PAM.
  • Experience leading security engineering teams in a large, global org.
  • Strong understanding of enterprise PAM and secrets management platforms.
  • Hands-on PAM knowledge across Windows, UNIX/Linux and databases.
  • Experience delivering Agile projects with Product Owners using Jira.
  • Excellent communication translating complex concepts to varied audiences.

Responsibilities

  • Own and execute the PAM roadmap aligned with cybersecurity strategy and Zero Trust.
  • Define PAM standards and governance with security, risk, and architecture teams.
  • Present PAM posture and metrics to leadership and audit stakeholders.
  • Lead design and delivery of enterprise PAM and secrets management capabilities.

Skills

Application Security
Cloud Security
Cybersecurity Operations
Data Protection
Delivery of Security Applications
Design Applications
DevOps Coaching
Information Security
SLA Management
System Designs
Technical Advice
Zero Trust Identity

Education

Bachelor’s degree

Tools

Delinea
CyberArk
BeyondTrust
HashiCorp Vault

Job description

Privileged Access Management (PAM) Team Lead (R4 - Associate Director)

Role SummaryThe Privileged Access Management (PAM) Team Lead owns the strategy, engineering execution, service health, and continuous improvement of our company's privileged access and secrets management capabilities. The role leads a global PAM engineering team and partners with the IAM Product team, architecture, cybersecurity, and business stakeholders to advance Zero Trust and meet business, regulatory, and operational needs. This role combines people leadership, engineering delivery, technical strategy, and governance to reduce cyber risk and strengthen enterprise identity security.

Key Responsibilities:
Strategy & Governance:
  • Own and execute the enterprise PAM roadmap aligned with our company's cybersecurity strategy, Zero Trust objectives, and identity security initiatives.
  • Define and maintain PAM standards and governance practices in partnership with security, risk, and architecture teams.
  • Develop and present PAM posture, risk metrics, and remediation plans to leadership, governance, and audit stakeholders.
  • Partner across teams to prioritize PAM adoption, expand privileged access controls and remediate risk.
Engineering:
  • Lead the design and delivery of enterprise PAM and secrets management capabilities.
  • Modernize privileged access through risk-based, least-privilege, and just-in-time access models.
  • Translate PAM strategy into scalable designs, standards, and patterns across all environments.
  • Lead evaluations of new PAM technologies based on need, risk, architectural fit, and cost.
  • Oversee remediation of PAM vulnerabilities, control gaps, audit findings, and technical debt.
People Leadership & Collaboration:
  • Lead daily PAM engineering activities, drive execution, remove delivery barriers, and develop team capabilities.
  • Promote Agile ways of working and continuous improvement.
  • Mentor and influence the team’s personal and professional development.
Product & Delivery Management:
  • Partner with the IAM Product Owner to manage the backlog aligned with OKRs and team capacity.
  • Be accountable for the health, stability, and continuous improvement of PAM services.
  • Partner with stakeholders to ensure capabilities meet business and security needs while reducing risk.
Education Requirement:
  • Bachelor’s degree (or equivalent experience), preferably in Computer Science, Information Systems, or a related field.
Required Skills & Experience:
  • 10+ years of experience in cybersecurity or Identity and Access Management (IAM), including at least 7 years focused on Privileged Access Management (PAM).
  • Experience leading and developing security engineering teams within a large, global organization.
  • Strong understanding of enterprise PAM and secrets management platforms (e.g., Delinea, CyberArk, BeyondTrust, and/or HashiCorp Vault).
  • Hands‑on knowledge of PAM solutions supporting Windows, UNIX/Linux, and databases.
  • Experience delivering solutions using Agile methodologies and collaborating with Product Owners using tools such as Jira.
  • Excellent communication skills, with the ability to effectively translate complex technical concepts, risks, and recommendations for technical and non-technical stakeholders.
Preferred Experience & Skills:
  • Hands‑on experience with identity platforms such as Active Directory, Microsoft Entra ID, cloud identity services, and/or HashiCorp Vault.
  • Hands‑on knowledge of PAM solutions operating in multi‑cloud environments (AWS, Azure, and GCP) and Kubernetes platforms.
  • Familiarity with ServiceNow for incident and change management processes.
  • Experience automating administrative and operational tasks using PowerShell or similar technologies.
  • Strong understanding of cybersecurity fundamentals, secure SDLC practices, Zero Trust principles, and cloud-native security controls.
  • Knowledge of industry standards and frameworks such as NIST, ITIL, and modern identity security practices.
  • Experience working in healthcare, life sciences, or other highly regulated industries.
  • Industry-recognized certifications such as CISSP, Security+, or comparable credentials.
Required Skills:
  • Application Security
  • Cloud Security
  • Cybersecurity OperationsData Protection
  • Delivery of Security Applications
  • Design Applications
  • DevOps Coaching
  • Influence
  • Information Security
  • SLA Management
  • System Designs
  • Technical Advice
  • Zero Trust Identity
US and Puerto Rico Residents Only:

Our company is committed to inclusion, ensuring that candidates can engage in a hiring process that exhibits their true capabilities. Please click here if you need an accommodation during the application or hiring process.

As an Equal Employment Opportunity Employer, we provide equal opportunities to all employees and applicants for employment and prohibit discrimination on the basis of race, color, age, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability status, or other applicable legally protected characteristics. As a federal contractor, we comply with all affirmative action requirements for protected veterans and individuals with disabilities. For more information about personal rights under the U.S. Equal Opportunity Employment laws, visit:

EEOC Know Your Rights EEOC GINA Supplement

We are proud to be a company that embraces the value of bringing together, talented, and committed people with diverse experiences, perspectives, skills and backgrounds. The fastest way to breakthrough innovation is when people with diverse ideas, broad experiences, backgrounds, and skills come together in an inclusive environment. We encourage our colleagues to respectfully challenge one another’s thinking and approach problems collectively.

Learn more about your rights, including under California, Colorado and other US State Acts

The salary range for this role is $142,400.00 - $224,100.00

This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. An employee’s position within the salary range will be based on several factors including, but not limited to relevant education, qualifications, certifications, experience, skills, geographic location, government requirements, and business or organizational needs.

The successful candidate will be eligible for annual bonus and long-term incentive, if applicable.

We offer a comprehensive package of benefits.

  • Medical
  • Dental
  • Vision healthcare and other insurance benefits (for employee and family)
  • Retirement benefits, including 401(k)
  • Paid holidays
  • Vacation
  • Compassionate and sick days

More information about benefits is available at https://jobs.merck.com/us/en/compensation-and-benefits.

San Francisco Residents Only:

We will consider qualified applicants with arrest and conviction records for employment in compliance with the San Francisco Fair Chance Ordinance.

Los Angeles Residents Only:

We will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws, including the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance.

Search Firm Representatives Please Read Carefully

Merck & Co., Inc., Rahway, NJ, USA, also known as Merck Sharp & Dohme LLC, Rahway, NJ, USA, does not accept unsolicited assistance from search firms for employment opportunities. All CVs / resumes submitted by search firms to any employee at our company without a valid written search agreement in place for this position will be deemed the sole property of our company. No fee will be paid in the event a candidate is hired by our company as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails.

Employee Status:
  • Regular
Flexible Work Arrangements:
  • Hybrid
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Associate Director, Cybersecurity Engineering
Associate Director, Cybersecurity Engineering

MSD Malaysia • Rahway (NJ)

On-site
USD 142,000 - 224,000
Sr. Specialist, Cybersecurity Engineering
Sr. Specialist, Cybersecurity Engineering

MSD • Rahway (NJ)

Hybrid
GBP 87,000 - 137,000
Associate Director, Cybersecurity Engineering
Associate Director, Cybersecurity Engineering

RiseMe • Rahway (NJ)

Hybrid
USD 142,000 - 224,000
Medical benefits
401(k) plan
Paid time off
Sr. Specialist, Cybersecurity Engineering
Sr. Specialist, Cybersecurity Engineering

MSD Malaysia • Rahway (NJ)

On-site
USD 117,000 - 184,000
Director, AI & Cybersecurity Legal
Director, AI & Cybersecurity Legal

MSD • Pennsylvania

Hybrid
USD 191,000 - 300,000
Medical, dental, vision
401(k) retirement plan
Paid holidays and leave
+1
Director, AI & Cybersecurity Legal
Director, AI & Cybersecurity Legal

MSD Malaysia • North Wales

On-site
USD 191,000 - 300,000
Associate Director - Treasury Benefits
Associate Director - Treasury Benefits

CamWebDir • Rahway (NJ)

Hybrid
USD 129,000 - 203,000
Medical, dental, vision benefits
401(k) with company match
Paid holidays and vacation
+1
Director, AI & Cybersecurity Legal
Director, AI & Cybersecurity Legal

Merck • North Wales

Hybrid
USD 191,000 - 300,000
Medical insurance
Dental insurance
Vision insurance
+5
Sr. Specialist, Cybersecurity Engineering
Sr. Specialist, Cybersecurity Engineering

Merck • West Point (PA)

Hybrid
USD 117,000 - 184,000
Medical insurance
Dental insurance
Vision insurance
+4
Director, AI & Cybersecurity Legal
Director, AI & Cybersecurity Legal

Merck • Rahway (NJ)

Hybrid
USD 191,000 - 300,000