Information Security Engineer - CyberArk

NCR Corporation

United States

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

NCR Corporation is looking for an Information Security Engineer (I) to oversee day-to-day security and lifecycle management of CyberArk components. The successful candidate will manage privileged account processes, design secret rotation strategies, and ensure compliance with operational standards.

The ideal candidate will have relevant educational credentials, hands-on CyberArk experience, and strong analytical skills. The position is based in Atlanta, GA.

Qualifications

  • 1–3+ years of experience in Information Security or IAM.
  • Hands-on experience with CyberArk in enterprise environments.
  • Ability to troubleshoot across applications and infrastructure.

Responsibilities

  • Manage lifecycle of CyberArk components and integrations.
  • Implement and troubleshoot integrations with enterprise platforms.
  • Mentor junior engineers and provide technical leadership.

Skills

Privileged access concepts
Windows and Linux administration
Scripting in PowerShell/Python
Troubleshooting
AI security concepts

Education

Bachelor’s degree in Computer Science or related field

Tools

CyberArk

Job description

Information Security Engineer (I)

Location: Atlanta, GA

Key Responsibilities
  • Own day‑to‑day reliability, security, and lifecycle management of CyberArk components and integrations (configuration, upgrades, health monitoring, and break‑fix).
  • Define and maintain operational standards (onboarding patterns, safe design, naming/metadata, rotation policies, and access workflows) to ensure consistency and auditability.
  • Lead onboarding and lifecycle management for privileged accounts (human and non‑human), including service accounts, application secrets, and automation identities.
  • Design and implement password/secret rotation strategies and work with application owners to ensure credential consumers are compatible with rotation and failover.
  • Configure and maintain privileged session access controls, including approvals, just‑in‑time access patterns (where applicable), session monitoring/recording, and least‑privilege enforcement.
  • Perform PAM discovery activities and prioritize remediation of unmanaged privileged access.
  • Implement and troubleshoot integrations between CyberArk and enterprise platforms (e.g., directory services, endpoints/servers, CI/CD, and key application stacks).
  • Develop and maintain automation (PowerShell/Python) for onboarding, rotation validation, reporting, and operational tasks; contribute to reusable templates and standards.
  • Produce and maintain audit‑ready evidence for privileged access controls (e.g., onboarding approvals, rotation success, access reviews, session logs) and support internal/external audits.
  • Identify gaps in privileged access controls, drive remediation plans, and track improvements through measurable operational metrics.
  • Partner with engineering teams to apply least‑privilege and credential management patterns for AI/automation identities (e.g., API keys, service principals, tokens) used by scripts, bots, and AI‑assisted workflows.
  • Define and implement controls to reduce AI‑related identity risk (secret sprawl, over‑privileged tokens, unmanaged credentials), including logging, rotation, and break‑glass procedures.
  • Provide Tier‑3 support and technical leadership during PAM‑related incidents; perform root cause analysis and implement corrective/preventive actions.
  • Mentor junior engineers and contribute to knowledge transfer through runbooks, training, and peer reviews.
Qualifications
  • Education: Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent practical experience).
  • Experience: 1–3+ years of experience in Information Security, IAM, or security engineering with a strong focus on PAM.
  • Hands‑on experience implementing and operating CyberArk in enterprise environments (onboarding at scale, rotation, integrations, monitoring, and troubleshooting).
  • Demonstrated experience supporting audits and operating with strong change control and documentation discipline.
  • Technical Skills:
    1. Strong knowledge of privileged access concepts (least privilege, break‑glass access, service accounts, just‑in‑time patterns, session monitoring/recording).
    2. Windows and Linux administration fundamentals (credential usage, services/daemons, scheduling, permissions) and authentication protocols basics (e.g., LDAP/Kerberos/SSO concepts).
    3. Scripting/automation skills in PowerShell and/or Python, with the ability to develop maintainable scripts and perform peer reviews.
    4. Ability to troubleshoot complex issues across applications, infrastructure, and integrations (logs, networking basics, and dependency mapping).
    5. Working knowledge of GenAI and common enterprise AI adoption risks (data leakage, prompt injection, insecure plugins/tools, model/API access control), and the ability to translate these risks into practical identity and secrets‑management controls.
    6. Familiarity with using AI‑assisted tools responsibly for operational efficiency (triage, documentation, reporting) while ensuring sensitive data handling, logging, and policy compliance.
  • Certifications (Preferred):
    1. CyberArk certifications (e.g., Defender/Trustee) or equivalent hands‑on mastery.
    2. AI security training/certification (e.g., vendor AI security fundamentals) or demonstrated experience supporting secure enterprise AI adoption.
    3. Security+ and/or higher‑level certification such as SSCP, CISSP, or CISM (based on experience level).
  • Soft Skills:
    1. Strong analytical and problem‑solving skills.
    2. Excellent communication and collaboration abilities.
    3. Ability to work under pressure during critical incidents.
EEO Statement

Integrated into our shared values is NCR Voyix’s commitment to equal employment opportunity. All qualified applicants will receive consideration for employment without regard to sex, age, race, color, creed, religion, national origin, disability, sexual orientation, gender identity, veteran status, military service, genetic information, or any other characteristic or conduct protected by law. NCR Voyix is committed to being a globally inclusive company where all people are treated fairly, recognized for their individuality, promoted based on performance and encouraged to strive to reach their full potential. We believe in understanding and respecting differences among all people. Every individual at NCR Voyix has an ongoing responsibility to respect and support a globally diverse environment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

CyberArk Engineer
CyberArk Engineer

Computer Task • Dallas (TX)

On-site
USD 110,000 - 150,000
CyberArk Engineer
CyberArk Engineer

KeyData Cyber • United States

On-site
USD 96,000 - 179,000
Senior Technology Security Engineer (IAM)
Senior Technology Security Engineer (IAM)

Pointwest Technologies Corp • Des Moines (IA)

On-site
USD 90,000 - 120,000
CyberArk SME
CyberArk SME

Infosys • Plano (TX)

On-site
USD 81,000 - 106,000
Health insurance
Disability insurance
HSA/Dep Care
+4
Privileged Access Security Engineer (CyberArk)
Privileged Access Security Engineer (CyberArk)

NCR Corporation • United States

On-site
USD 90,000 - 120,000
Senior CyberArk Engineer
Senior CyberArk Engineer

CBTS • Berkeley Heights (NJ)

On-site
USD 100,000 - 130,000
Senior Cybersecurity Technologist
Senior Cybersecurity Technologist

Travelers • Atlanta (GA)

On-site
USD 127,000 - 209,000
CyberArk Engineer
CyberArk Engineer

CBTS • Plano (TX)

On-site
USD 95,000 - 130,000
CyberArk SME
CyberArk SME

Infosys Limited • Plano (TX), Northern (KY)

Hybrid
USD 120,000 - 160,000
Long-term/Short-term Disability
Health and Dependent Care Reimburse- m
Insurance (Accident, Critical Illness,
+1
CyberArk SME
CyberArk SME

Infosys Limited • Raleigh (NC)

On-site
USD 81,000 - 106,000
Long-term/Short-term Disability
Health and Dependent Care Reimburse
Insurance (Accident, Critical Illness,
+1