- Location
- IN, Bangalore Kar, India
- Workplace
- Hybrid
- Type
- Full-time
- Department
- Engineering
- Experience
- 7+ years
- Education
- Master
- Source
- Workday
Description
At Solventum, we improve lives by helping healthcare professionals do their best work. Join a team using innovation and insight to make a real impact on the future of healthcare. All roles listed are with Solventum, and we’re committed to protecting your personal information—learn more in our Privacy Policy: https://www.solventum.com/en-us/home/legal/website-privacy-statement/applicant-privacy/
Job Description:
3M Health Care is now Solventum
At Solventum, we enable better, smarter, safer healthcare to improve lives. As a new company with a long legacy of creating breakthrough solutions for our customers’ toughest challenges, we pioneer game-changing innovations at the intersection of health, material and data science that change patients' lives for the better while enabling healthcare professionals to perform at their best. Because people, and their wellbeing, are at the heart of every scientific advancement we pursue.
We partner closely with the brightest minds in healthcare to ensure that every solution we create melds the latest technology with compassion and empathy. Because at Solventum, we never stop solving for you.
The Impact You’ll Make in this Role
You are a hands-on Privileged Access Management engineer supporting a next-generation Identity and Access Management team. You will help implement, administer, support, and enhance enterprise PAM capabilities across CyberArk technologies while partnering with security, infrastructure, cloud, application, and compliance teams to deliver secure privileged access services at scale.
You are excited about contributing to PAM modernization in a large global company. You bring practical experience with privileged account onboarding, access controls, password rotation, session management, endpoint privilege management, cloud access controls, automation, integrations, and operational support across hybrid environments.
You are self-driven, collaborative, and passionate about IAM technologies, problem solving, and continuous improvement. You enjoy technical depth in Privileged Access Management and are comfortable supporting enterprise users, troubleshooting complex issues, documenting procedures, and helping mature secure privileged access processes.
As Privileged Access Management Security Engineer you will have the opportunity to tap into your curiosity and collaborate with some of the most innovative and diverse people around the world. Here, you will make an impact by:
- Implementing, administering, and supporting enterprise CyberArk PAM capabilities across Core PAM, CPM, PSM, PSMP, EPM, SCA, Privilege Cloud, and related services.
- Configuring and maintaining safes, platforms, policies, privileged accounts, access controls, password rotation, reconciliation, and credential lifecycle processes.
- Supporting privileged account onboarding, user provisioning and deprovisioning, automated account onboarding, and operational improvements.
- Developing and supporting automation, REST API integrations, PowerShell or Python scripts, custom CPM plugins, and PSM connectors.
- Troubleshooting CyberArk authentication, onboarding, connectivity, session management, and platform issues through root-cause analysis and collaboration with partner teams.
- Supporting EPM agent deployment, application control policies, elevation policies, privilege reduction initiatives, and phased movement from Detect Mode to Enforcement Mode.
- Integrating PAM capabilities with Active Directory, Microsoft Entra ID, Okta, LDAP, SAML, OIDC, MFA, ServiceNow, Splunk, Qualys, CrowdStrike, and cloud platforms.
- Supporting secure SSH, RDP, cloud administration, device trust, secure browser, ephemeral access, password sharing, and secure collaboration use cases.
- Creating and maintaining operational procedures, technical documentation, knowledge articles, and reporting that support audit readiness and continuous improvement.
To set you up for success in this role from day one, Solventum requires (at a minimum) the following qualifications:
- Bachelor’s Degree or higher AND 7 years of experience in Information Security, Identity and Access Management, Privileged Access Management, CyberArk, privileged account management, password vaulting, session management, endpoint privilege management, PAM integrations, or related security technologies.
- undefined
- High School Diploma/GED AND 11 years of experience in Information Security, Identity and Access Management, Privileged Access Management, CyberArk, privileged account management, password vaulting, session management, endpoint privilege management, PAM integrations, or related security technologies.
And
In addition to the above requirements, the following are also required:
- 5+ years of hands-on experience supporting CyberArk PAM solutions in enterprise environments, including Vault, CPM, PVWA, PSM, PSMP, safes, platforms, policies, accounts, and access controls.
- Experience with CyberArk Endpoint Privilege Manager, Privilege Cloud, or CyberArk SaaS-based PAM environments, including tenant configuration, onboarding, migration support, or operational optimization.
- Experience integrating CyberArk with Active Directory, Microsoft Entra ID, Okta, LDAP, SAML, OIDC, SSO, MFA, REST APIs, ServiceNow, Splunk, Qualys, CrowdStrike, or similar enterprise platforms.
- Experience with PowerShell, Python, Terraform, REST APIs, or related automation methods used to support PAM operations, onboarding, reporting, or integrations.
- Experience troubleshooting authentication, privileged account onboarding, password rotation, reconciliation, session management, SSH, RDP, SSL/TLS, networking, or connectivity issues.
- Experience supporting cloud or hybrid PAM use cases across Azure, AWS, GCP, or similar environments.
- Experience supporting security operations, audit evidence, compliance remediation, technical documentation, operational procedures, and knowledge articles.
- Strong communication and collaboration skills with the ability to work independently in a remote environment and partner across technical and business teams.
Additional qualifications that could help you succeed even further in this role include:
- CyberArk certifications such as CyberArk Sentry, Guardian, CDE, Defender, or equivalent hands-on CyberArk training.
- Experience with enterprise-scale CyberArk deployments, upgrades, migrations, Privilege Cloud optimization, or CyberArk EPM, SCA, SIA, WPM, and PCLOUD rollouts.
- Experience supporting Zero Trust, PAM modernization, endpoint privilege reduction, secure cloud access, or hybrid PAM initiatives.
- Experience developing technical standards, architecture documentation, operational runbooks, dashboards, metrics, or continuous improvement reporting.
- Advanced scripting, API development, CI/CD integration support, custom CPM plugin development, or PSM connector development experience.
Work location: Bangalore (Hybrid)
Solventum is committed to maintaining the highest standards of integrity and professionalism in our recruitment process. Applicants must remain alert to fraudulent job postings and recruitment schemes that falsely claim to represent Solventum and seek to exploit job seekers.
Please note that all email communications from Solventum regarding job opportunities with the company will be from an email with a domain of @solventum.com. Be wary of unsolicited emails or messages regarding Solventum job opportunities from emails with other email domains.
Please note: your application may not be considered if you do not provide your education and work history, either by: 1) uploading a resume, or 2) entering the information into the application fields directly.
Solventum Global Terms of Use and Privacy Statement
Carefully read these Terms of Use before using this website. Your access to and use of this website and application for a job at Solventum are conditioned on your acceptance and compliance with these terms.
Please access the linked document by clicking here. Before submitting your application you will be asked to confirm your agreement with the
terms.