
CyberArk Engineer
Posted Sep 15

Posted Sep 15
This is a fully remote position, open to applicants in United Kingdom.
β’ Report directly to the Cyber Operations Lead and collaborate closely with SOC engineers.
β’ Manage the CyberArk ticket queue from L2 to L4, serving as the primary escalation point.
β’ Triage, diagnose, resolve, and close CyberArk incidents and requests within the established SLA.
β’ Troubleshoot issues relating to vault, CPM rotation failures, PSM session problems, PVWA faults, and integration disruptions involving Entra ID, MFA, and SIEM.
β’ Conduct root-cause analysis and oversee escalations with the CyberArk vendor.
β’ Manage account onboarding and offboarding, implement safe and policy changes, and perform access reviews.
β’ Apply patches and perform upgrades on CyberArk environments.
β’ Renew certificates and conduct disaster-recovery checks in both Self-Hosted and Privilege Cloud environments.
β’ Maintain documentation such as runbooks and known-error records.
β’ Operate within ITSM change control frameworks.
β’ Provide support for privileged access management across managed client estates.
β’ A minimum of 3 years of hands-on experience in CyberArk administration and troubleshooting within production environments, including CPM, PSM, PVWA, and vault.
β’ Demonstrated capability in L3/L4 fault resolution under SLA constraints.
β’ Adherence to ticket-queue and change-control protocols in a managed service environment.
β’ Proficiency in PowerShell scripting for diagnosis and repair purposes.
β’ Strong understanding of Identity & Access Management principles.
β’ Knowledgeable in ITSM & Service Management methodologies.
β’ Competent in Incident Management processes.
β’ Familiarity with Security Tooling & EDR solutions.
β’ Practitioner-level supporting skills in cloud technologies, networking, network security, monitoring, scripting, vulnerability management, and documentation.
β’ Desirable: Defender/Sentry certification, with practical experience being prioritized over certification.
β’ Desirable: Exposure to Entra ID, EDR, SIEM, or Zscaler environments.
β’ Desirable: Background in Managed Service Provider (MSP) operations.
β’ Must reside in the UK or meet the requirements for UK-hours and security screening conditions.
β’ Contract engagement opportunities.
β’ Flexible remote work options.
β’ Coverage aligned with UK working hours.
β’ Security screening procedures in place.
Mercor
RTX
Expel
Qualus
Get handpicked remote jobs straight to your inbox weekly.