Hiring.Camp

Architect, Privileged Access Management

Danaher

·

Yesterday

Location
BRA - Sao Paulo - Cytiva Do Brasil Comercio E Servicos Para Biotecnologia LTDA, Brazil
Type
Full-time
Department
Engineering
Education
Bachelor
Source
Workday

Description

At Danaher, the Architect, Privileged Access Management designs the enterprise PAM architecture across all regions. Global PAM strategy and direction are set by security leadership and IT leadership; the Architect shapes and refines the technical architecture, then owns translating it into adoptable reference designs for privileged human and non-human identities. The architect works independently and integrates with IAM, infrastructure, cloud, and DevOps teams that each own their own architecture and constraints. 

 

This position reports to Director, Identity Security & Privileged Access Management and is part of the enterprise-wide Danaher Information Security (DIS) team; this is a remote associate role. 

 

In this role, you will have the opportunity to: 

  • Architect enterprise PAM target-state: privileged account discovery, vaulted credential management, session isolation/recording, JIT access, break-glass, endpoint privilege management, and machine/service-account controls. 

  • Integrate PAM architecture with IdP, IGA, SIEM, ITSM, CMDB, cloud platforms, and DevOps pipelines. 

  • Engineer/prototype reference implementations and policy-as-code patterns to prove designs before regional teams scale them. 

  • Design the sustainability & governance model: control design, exception governance, ownership, and architecture review cadence. 

 

The essential requirements of the job include: 

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related field. 

  • 9+ years of cybersecurity experience with a focus on identity and access or privileged access management (GCRF P4 Bachelor's-track minimum; recommended, pending Comp sign-off). 

  • Experience designing privileged access management architecture — including discovery, vaulting, session management, just-in-time access, endpoint privilege management, and machine/service-account controls. 

  • Hands-on experience with enterprise PAM platforms (such as CyberArk, BeyondTrust, or Delinea) and integrating them with identity, cloud, ITSM, and SIEM systems. 

  • Experience working independently with IAM, infrastructure, cloud, and DevOps teams to design and govern privileged-access controls and exceptions. 

 

It would be a plus if you also possess previous experience in: 

  • Experience with non-human identity / secrets management and policy-as-code. 

  • CISSP, CCSP, CISM, or a relevant PAM platform certification. 

Join our winning team today. Together, we’ll accelerate the real-life impact of tomorrow’s science and technology. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life.

For more information, visit www.danaher.com.

Skills

CybersecuritySIEMDevOpsCISSP

Similar Jobs

3

Technical Architect - Privileged Access Management

Jabil · USA - St. Petersburg - RSV, United States of America +1 · Remote

1 month ago

PAM Senior Engineer / Architect (Privileged Access Management)

Turnkey Consulting · Hybrid

6 months ago

Security Architect – Privileged Access Management

Devoteam · Machelen, Vlaams Gewest, Belgium · Hybrid

7 months ago