Prime Therapeutics is a purpose-driven pharmacy benefit manager dedicated to connecting care for those they serve. The Security Engineer is responsible for supporting and implementing privileged access management controls to protect Prime’s systems from unauthorized access, ensuring operational stability and compliance.
Responsibilities:
- CyberArk Privileged Access Management Administration
- Design, implement, and maintain CyberArk PAM solutions in alignment with Prime security standards and best practices
- Administer and support CyberArk components including:
- Enterprise Password Vault (EPV)
- Password Vault Web Access (PVWA)
- Privileged Session Manager (PSM)
- CyberArk Secure Infrastructure Access (SIA)
- Endpoint Privilege Manager (EPM)
- Workforce Password Management (WPM)
- Manage CyberArk safes, platforms, and role‑based access controls for human and non‑human privileged accounts
- Configure and enforce password policies, credential rotation schedules, and session controls for privileged accounts
- Onboard and manage privileged accounts for servers, databases, applications, and service accounts
- Provide L1/L2 operational support for PAM‑related incidents, including failed password rotations, access issues, and session connectivity problems
- Perform root‑cause analysis of PAM failures and implement preventative controls to improve reliability
- Monitor privileged access activity and alerts to identify anomalous behavior or policy violations
- Produce audit evidence, compliance artifacts, and activity reports related to privileged access usage
- Integrate CyberArk with target systems including operating systems, databases, applications, and directory services
- Support onboarding of new platforms, applications, and environments into CyberArk
- Perform CyberArk version upgrades, patching, and component maintenance to ensure platform stability and security
- Collaborate with infrastructure and application teams to design secure privileged access patterns for new and existing systems
Requirements:
- Bachelor's degree in Information Security, Computer Science or related area of study, or equivalent combination of education and/or relevant work experience; HS diploma from an accredited school or equivalent GED required
- 2 years of work experience in the Information Security field, or related Information Technology experience such as Server Engineering, Networking, Architecture or Application Development
- Must be eligible to work in the United States without the need for work visa or residency sponsorship
- 2–4 years of experience in IT security, cybersecurity, or related technical field
- Experience with vulnerability management, firewalls, or endpoint protection tools
- Experience with scripting languages (e.g., Python, PowerShell) to support security automation
- Relevant certifications (e.g., CompTIA Security+, CySA+, or equivalent) preferred