Executive Director, Privileged Access Management

United States, New Jersey
Permanent
Job ID: 2575

Job Description


[Up to c. $325k Comp Package | Hybrid Working]


Role Overview

We’re representing a major international banking group looking to appoint a Director of Privileged Access Management to lead the strategy, engineering and operational delivery of privileged-access services across its US technology environment. Operating within a complex, highly regulated financial-services organisation with significant corporate, markets and investment-banking operations, this individual will own the continued maturation of PAM across infrastructure, applications and cloud platforms. The role combines leadership of an established engineering and operations capability with hands-on technical credibility across CyberArk, access-control architecture and automation, alongside direct responsibility for addressing regulatory and audit priorities. It is a high-visibility role with meaningful influence across security, infrastructure, application engineering, GRC and senior technology leadership, with the opportunity to materially improve how privileged access is governed and operated at enterprise scale...


Key Responsibilities

  • Define and execute the multi-year PAM strategy and roadmap, aligning engineering priorities with enterprise security objectives, technology transformation and regulatory commitments
  • Lead and develop the PAM engineering and operations function, establishing clear ownership, delivery standards, technical direction and accountability across the service lifecycle
  • Design and standardise privileged-access models across Windows, Active Directory, Unix/Linux, databases, network platforms, cloud environments and business applications
  • Own the continued evolution of CyberArk capabilities covering credential vaulting, password rotation, privileged-session controls, monitoring, emergency access and Just-In-Time access
  • Drive large-scale onboarding of privileged users, service accounts, administrative identities, applications and other non-human identities into centrally governed PAM services
  • Integrate PAM with SailPoint, Splunk and wider security tooling to improve access governance, workflow automation, telemetry, reporting and end-to-end control visibility
  • Lead remediation of PAM-related regulatory, internal audit and control findings, ensuring privileged-access reviews, exception processes and supporting evidence remain complete and audit-ready
  • Partner with Infrastructure, Application Engineering, Cybersecurity, GRC, Internal Audit and external vendors to embed PAM requirements into new platforms, architecture decisions and technology programmes


What You’ll Bring...

  • 8+ years across IAM, information security or identity engineering, including substantial experience owning or leading enterprise Privileged Access Management capabilities
  • Deep practical knowledge of CyberArk and the operational design of enterprise PAM environments, including vaulting, rotation, session management, privileged-account discovery and access workflows
  • Proven experience leading PAM engineers or operations teams while remaining technically credible enough to challenge architecture, engineering and control-design decisions
  • Strong track record of addressing regulatory or audit findings relating to privileged access, with an understanding of evidence, remediation planning, control effectiveness and sustainable closure
  • Broad privileged-access knowledge across Active Directory, Windows, Unix/Linux, databases, network infrastructure and AWS and/or Azure environments
  • Experience implementing modern privileged-access patterns including Just-In-Time access, emergency and break-glass controls, session monitoring, least privilege and platform-specific access models
  • Experience delivering privileged-account and application onboarding at enterprise scale, ideally including service accounts, non-human identities and bespoke or internally developed applications
  • (Preferred) Experience within banking, capital markets or another heavily regulated financial-services environment, alongside familiarity with frameworks such as NIST CSF, CRI and relevant security certifications such as CISSP or CISM


...


Apply for this role

All fields marked with * are required.

I confirm I have a pre-existing right to work in the role’s location *
I require visa sponsorship now or will require it in the future

Back to Job Listings