Senior PAM Engineer

  • Full-time

Company Description

Metro Global Solution Center (MGSC) is internal solution partner for METRO, a €31.6 Billion international wholesaler with operations in more than 30 countries. The store network comprises a total of 623 stores in 21 countries, of which 522 offer out-of-store delivery (OOS), and 94 dedicated depots. In 12 countries, METRO runs only the delivery business by its delivery companies (Food Service Distribution, FSD).

HoReCa and Traders are core customer groups of METRO. The HoReCa section includes hotels, restaurants, catering companies as well as bars, cafés and canteen operators. The Traders section includes small grocery stores and kiosks. The majority of all customer groups are small and medium-sized enterprises as well as sole traders. METRO helps them manage their business challenges more effectively.

MGSC, location wise is present in Pune (India), Düsseldorf (Germany) and Szczecin (Poland). We provide HR, Finance, IT & Business operations support to 31 countries, speak 24+ languages and process over 18,000 transactions a day. We are setting tomorrow’s standards for customer focus, digital solutions, and sustainable business models. For over 10 years, we have been providing services and solutions from our two locations in Pune and Szczecin. This has allowed us to gain extensive experience in how we can best serve our internal customers with high quality and passion. We believe that we can add value, drive efficiency, and satisfy our customers.
 

Website: https://www.metro-gsc.in
Company Size: 1000-1100
Headquarters: Pune, Maharashtra, India
Type: Privately Held
Inception:  2011

Job Description

Senior CyberArk Lead / SME – PAM Architecture, PCloud, EPM, CCP & Conjur

Location:

Pune, India (Onsite)

Experience:

9–12 years total experience with minimum 7+ years deep CyberArk experience.

Mandatory Certifications:

  • CyberArk CDE (preferred)
  • CyberArk Sentry (preferred)
  • Defender preferred

About the Role

We are seeking a Senior CyberArk SME / Lead Engineer to own design, governance, delivery, optimization, and strategic roadmap of CyberArk Privilege Cloud, EPM, CCP, and Conjur platforms. This role will lead engineering teams, stakeholders, vendors, and transformation programs across enterprise PAM.

Key Responsibilities

  • Own CyberArk architecture, engineering standards, and operational governance.
  • Lead enterprise rollout of Privilege Cloud, EPM, CCP, and Conjur.
  • Design scalable PAM solutions for infrastructure, applications, cloud, DevOps, and endpoints.
  • Lead onboarding factory for servers, databases, service accounts, application accounts, and cloud admins.
  • Design and govern CyberArk PSM connector framework for web applications, enterprise applications, legacy applications, and custom launch workflows.
  • Lead development standards for custom connectors/plugins and secure application access through CyberArk.
  • Define PAM operating model, RBAC, SoD, access recertification, break-glass processes.
  • Lead secrets management strategy for CI/CD pipelines, containers, Kubernetes, and machine identities.
  • Architect integrations with Entra ID, Azure, AWS, ServiceNow, SIEM, ITSM, DevOps platforms.
  • Drive reduction of show/copy password usage and movement to brokered access models.
  • Lead DR, HA design, resiliency planning, and performance optimization.
  • Manage escalations, incidents, root cause reviews, and platform stability.
  • Lead audits, compliance remediation, and regulatory evidence management.
  • Mentor engineers and establish CyberArk best practices.

Mandatory Technical Skills

  • Expert in CyberArk Privilege Cloud
  • Expert in CyberArk EPM
  • Strong CCP implementation experience
  • Strong Conjur implementation experience
  • Strong PSM connector / plugin development expertise
  • Secrets management for CI/CD pipelines
  • PAM architecture and governance
  • PowerShell / Python / REST APIs
  • Cloud security integrations
  • Linux / Windows / Database PAM

Nice to Have

  • Browser automation / web access connector design
  • Kubernetes / OpenShift
  • Zero Trust / JIT models
  • Identity integrations
  • Product ownership experience
Privacy NoticeImprint