This role has been designed as ‘’Onsite’ with an expectation that you will primarily work from an HPE office.
Who We Are:
Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today’s complex world. Our culture thrives on finding new and better ways to accelerate what’s next. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE.
Job Description:
HPE Global IT is a dynamic organization enabling the enterprise to innovate and lead the industry with our consumption-based IT transformation and our consulting, financial, educational, and operational support services. Join us as we develop innovative solutions that revolutionize how we help customers by simplifying their operations and move the world forward.
About our Cybersecurity Team
Are you ready to make an impact with one of the world’s leading technology companies? HPE’s Cybersecurity team is where you can do just that. We’re looking for a highly skilled and driven Senior Technical Privileged Access Management (PAM) Engineer to join our global Cybersecurity organization. If you’re passionate about engineering secure, scalable PAM solutions and driving modernization across complex hybrid environments, this is the role for you.
What you’ll do:
About the Role
As a Senior Technical PAM Engineer, you will be responsible for the detailed design, implementation, and lifecycle management of HPE’s Privileged Access Management solutions. You will serve as a technical SME for CyberArk and related PAM technologies, ensuring secure management of privileged credentials and sessions across on-premises and multi-cloud environments.
This role requires deep technical expertise, strong problem-solving skills, and the ability to translate security architecture into robust, automated engineering solutions that reduce risk and improve operational efficiency.
Responsibilities:
Technical Design & Engineering
- Translate PAM architecture and strategy into detailed engineering designs and implementation plans
- Engineer and deploy CyberArk Privileged Cloud and on-prem modules (PAM Core, PSM, CPM, EPM, Alero, SCA, Conjur, etc.) across enterprise infrastructure
- Implement Just-in-Time (JIT) and Just Enough Access (JEA) models aligned with Zero Trust principles
- Design and automate privileged account onboarding, credential rotation, and session monitoring workflows
- Develop and maintain scripts and APIs for automation, integration, and reporting
Integration
- Integrate PAM with Active Directory, Entra ID, ITSM, SIEM/SOAR, and DevOps pipelines
- Extend PAM coverage to cloud environments (AWS, Azure, GCP) and non-human identities (service and machine accounts)
- Manage ongoing platform health, performance tuning, patching, and upgrades for CyberArk components
- Support incident response and troubleshooting for PAM-related issues in production environments
Security & Compliance
- Enforce least-privilege and privileged access governance controls aligned with enterprise security standards
- Conduct periodic reviews of vault policies, platform configurations, and privileged account inventory
- Support internal and external audits (SOX, FedRAMP, etc.) by providing evidence of PAM controls and compliance posture
- Collaborate with risk and compliance teams to continuously improve PAM maturity and audit readiness
Collaboration & Mentorship
- Partner with Cybersecurity Architects, IAM, and Cloud Security teams to ensure PAM alignment with enterprise identity strategy
- Serve as a technical mentor for junior engineers, guiding them on CyberArk engineering best practices and automation techniques
- Contribute to PAM roadmap discussions and provide input on platform enhancements, tool evaluations, and new integrations
What you need to bring:
You are a technically strong PAM engineer who thrives in complex enterprise environments and enjoys solving deep integration and automation challenges. You have a strong command of privileged access controls, infrastructure security, and modern authentication models. You take ownership end-to-end — from design through deployment and ongoing operations — with a focus on quality, security, and scalability.
Education & Experience Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
- 7–10 years of IT or cybersecurity experience, with at least 6+ years focused on PAM engineering
- Expert-level hands-on experience with CyberArk (Privileged Cloud and on-prem modules including PSM, CPM, EPM, Alero, SCA, Conjur)
- Deep understanding of Windows, Linux, Active Directory, Entra ID, and cloud IAM models
- Experience with automation and scripting (PowerShell, Python, REST APIs) for onboarding, reporting, and integrations
- Familiarity with Zero Trust, JIT/JEA, and privileged identity lifecycle management
- Experience integrating PAM with AWS, Azure, GCP, and DevOps toolchains
- Knowledge of secrets management platforms (CyberArk Conjur, HashiCorp Vault, AWS Secrets Manager, etc.)
- Understanding of authentication standards such as SAML, OIDC, FIDO2, and MFA/passwordless authentication
- Preferred certifications: CyberArk Defender/Sentry/Guardian, CISSP, CISM, or similar.
Additional Skills:
What We Can Offer You:
Health & Wellbeing
We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing.
Personal & Professional Development
We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach any career goals you have — whether you want to become a knowledge expert in your field or apply your skills to another division.
Unconditional Inclusion
We are unconditionally inclusive in the way we work and celebrate individual uniqueness. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good.
Let's Stay Connected:
Follow @HPECareers on Instagram to see the latest on people, culture and tech at HPE.
Job:
Information TechnologyJob Level:
TCP_04
HPE is an Equal Employment Opportunity/ Veterans/Disabled/LGBT employer. We do not discriminate on the basis of race, gender, or any other protected category, and all decisions we make are made on the basis of qualifications, merit, and business need. Our goal is to be one global team that is representative of our customers, in an inclusive environment where we can continue to innovate and grow together. Please click here: Equal Employment Opportunity.
Hewlett Packard Enterprise is EEO Protected Veteran/ Individual with Disabilities.
HPE will comply with all applicable laws related to employer use of arrest and conviction records, including laws requiring employers to consider for employment qualified applicants with criminal histories.
No Fees Notice & Recruitment Fraud Disclaimer
It has come to HPE’s attention that there has been an increase in recruitment fraud whereby scammer impersonate HPE or HPE-authorized recruiting agencies and offer fake employment opportunities to candidates. These scammers often seek to obtain personal information or money from candidates.
Please note that Hewlett Packard Enterprise (HPE), its direct and indirect subsidiaries and affiliated companies, and its authorized recruitment agencies/vendors will never charge any candidate a registration fee, hiring fee, or any other fee in connection with its recruitment and hiring process. The credentials of any hiring agency that claims to be working with HPE for recruitment of talent should be verified by candidates and candidates shall be solely responsible to conduct such verification. Any candidate/individual who relies on the erroneous representations made by fraudulent employment agencies does so at their own risk, and HPE disclaims liability for any damages or claims that may result from any such communication.
Top Skills
Hewlett Packard Enterprise Bangalore, Karnataka, IND Office
24, SALARPURIA ARENA, HOSUR MAIN ROAD, Bangalore, Bangalore, India, 560030


