Deskripsi Pekerjaan
Join Optum's elite cybersecurity team as an InfoSec Engineering Consultant specializing in Privileged Access Management (PAM). This senior role empowers you to design, implement, and optimize cutting-edge security solutions that protect critical infrastructure across our global healthcare ecosystem. You'll lead initiatives to eliminate privilege-based risks while ensuring compliance with industry standards like ISO 27001 and NIST. Collaborate with cross-functional teams to integrate PAM workflows with existing IAM systems, conduct vulnerability assessments, and develop incident response protocols. Ideal candidates will bring 5+ years of hands-on security operations experience combined with deep expertise in PAM/PKI technologies. Optum offers a dynamic environment where your contributions directly impact patient data security and regulatory compliance.
Tanggung Jawab
- Design and implement comprehensive Privileged Access Management (PAM) solutions including Just-In-Time access and session monitoring
- Lead PKI infrastructure lifecycle management including certificate issuance, revocation, and automation
- Conduct security assessments and penetration testing focused on privilege escalation vectors
- Develop and maintain PAM policies, procedures, and documentation aligned with SOC 2 and HIPAA requirements
- Integrate PAM solutions with SIEM platforms for real-time threat detection and response
- Provide expert guidance to engineering teams on secure access protocols and least privilege principles
- Monitor PAM system performance and optimize configurations for maximum security efficiency
Kualifikasi
- 5+ years of experience in security operations or infrastructure engineering
- 3+ years hands-on experience with PAM solutions (e.g., CyberArk, BeyondTrust) and PKI frameworks
- Strong understanding of identity governance, authentication protocols (MFA, SSO), and zero-trust architectures
- Experience with cloud security platforms (AWS/Azure security services) and hybrid environments
- Professional certifications (CISSP, CISM, or OSCP) preferred
- Excellent analytical skills with ability to translate complex security requirements into technical solutions
- Proven ability to collaborate across IT, compliance, and business stakeholders