网络安全负责人,特权访问管理 - 远程
Manager, Cybersecurity, Privileged Access Management - Remote
工作灵活性:远程办公
优先考虑居住在东部或中部时区的候选人
作为PAM经理,您将领导Stryker的企业特权访问管理计划,在本地、云和混合环境中保护特权账户、凭证、秘密和会话。您将负责PAM策略和运营模式,带领分析团队,并与基础设施、云、安全运营、应用程序和审计团队合作,降低特权访问风险并支持合规性要求。
您将负责的工作内容:
技术职责:
• 负责企业PAM策略、路线图、工程标准和运营模式,与零信任和最小权限原则保持一致。
• 领导CyberArk、BeyondTrust或Delinea在特权账户、凭证、秘密和会话管理用例中的部署和运营。
• 管理特权账户生命周期,包括分配、撤销、存储、轮换以及人工和共享特权账户的签入/签出。
• 实施高风险管理员访问的特权会话监控和记录,包括即时和限时访问,以及终端特权管理,以移除本地管理员权限并强制执行应用控制。
• 设计并管理玻璃破裂访问流程,包含审批和审计控制,并管理代理、监控和限时的第三方特权访问。
• 与基础设施、云、安全运营和应用程序团队合作,上线特权账户并集成PAM控制措施。
• 通过报告和审计证据支持SOX、HIPAA、ISO 27001和NIST网络安全框架的要求,确保特权访问控制。
领导力与人员管理职责:
• 通过设定优先级、工程标准、绩效期望和日常操作实践来领导PAM分析师。
知识与能力:
• 评估特权访问风险,解决复杂的身份安全问题,并平衡项目优先级。
• 将PAM风险、控制要求和实施决策转化为对技术团队、业务合作伙伴和审计人员的清晰指导。
您需要具备:
所需资格条件
• 计算机科学、网络安全、信息系统、工程、工商管理或相关专业的学士学位
• 至少8年身份或网络安全经验,其中至少4年在...
查看英文原文
Work Flexibility: Remote
Preference will be given to candidates residing in the Eastern or Central time zones.
As a PAM Manager, you will lead Stryker’s enterprise Privileged Access Management program, protecting privileged accounts, credentials, secrets, and sessions across on-premises, cloud, and hybrid environments. You will own the PAM strategy and operating model, lead a team of analysts, and partner with Infrastructure, Cloud, Security Operations, Application, and Audit teams to reduce privileged access risk and support regulatory compliance.
What you will do:
Technical Responsibilities:
•Own the enterprise PAM strategy, roadmap, engineering standards, and operating model aligned with Zero Trust and least-privilege principles.
•Lead the deployment and operation of CyberArk, BeyondTrust, or Delinea across privileged account, credential, secrets, and session-management use cases.
•Manage the privileged account lifecycle, including provisioning, deprovisioning, vaulting, rotation, and check-in/check-out for human and shared privileged accounts.
•Implement privileged session monitoring and recording for high-risk administrative access, just-in-time and time-bound access, and endpoint privilege management to remove local administrator rights and enforce application control.
•Design and govern break-glass access procedures with approval and audit controls, and manage brokered, monitored, and time-limited third-party privileged access.
•Partner with Infrastructure, Cloud, Security Operations, and Application teams to onboard privileged accounts and integrate PAM controls.
•Support SOX, HIPAA, ISO 27001, and NIST Cybersecurity Framework requirements through reporting and audit evidence for privileged access controls.
Leadership & People Management Responsibilities:
•Lead PAM analysts by setting priorities, engineering standards, performance expectations, and day-to-day operating practices.
Knowledge and Capabilities:
•Assess privileged access risks, resolve complex identity-security issues, and balance competing program priorities.
•Translate PAM risks, control requirements, and implementation decisions into clear guidance for technical teams, business partners, and auditors.
What You Need:
Required Qualifications
•Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Business Administration or a related discipline
•Minimum 8 years of experience in identity or cybersecurity, including a minimum 4 years of experience focused on privileged access management.
•Hands-on experience deploying and operating CyberArk, BeyondTrust, or Delinea.
•Experience with credential vaulting, privileged session management, just-in-time access, endpoint privilege management, and secrets management.
•Experience securing privileged access across Microsoft Azure, Amazon Web Services, Google Cloud Platform, and on-premises environments.
•People-leadership or team-lead experience managing analysts or engineers.
Preferred Qualifications
•Master’s degree in Computer Science, Cybersecurity, Information Systems, Engineering, or a related discipline.
•CyberArk Defender or Sentry, CISSP, BeyondTrust, or Delinea certification, or formal training in privileged access management, identity security, or Zero Trust architecture.
United States of America Pay Ranges:
- USN: $135,600 - $225,900 USD Annual
- US5: $142,400 - $237,200 USD Annual
- US10: $149,200 - $248,500 USD Annual
- US15: $155,900 - $259,800 USD Annual
- US20: $162,700 - $271,100 USD Annual
- US30: $176,300 - $293,700 USD Annual
View the U.S. work location and transparency guide to find the pay range for your location.
Travel Percentage: NoneStryker Corporation is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, gender identity, sexual orientation, national origin, disability, or protected veteran status. Stryker is an EO employer – M/F/Veteran/Disability.Stryker Corporation will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information.Originally posted on Himalayas