Responsibilities:
- Address CyberArk VPN issues, focusing on Windows lockdown and policy adjustments
- Implement and enforce Windows security settings and policies to harden the environment against various bypass techniques (e.g., WDAC, UAC)
- Collaborate with the cloud team to remediate AWS security findings from CrowdStrike analyses and other security recommendations
- Work to reduce recurring security events in the AWS environment
- Harden AWS infrastructure to minimize vulnerability to breaches
- Roll out and configure BeyondTrust solutions
- Implement Okta IAM platform multi-factor policies and build out associated workflows
- Configure and optimize the Bitsight 3rd party risk program, including vendor security scorecards, and work with vendors on remediation efforts
- Develop and implement solutions to prevent PowerShell, Wscript, and script payloads from executing
- Focus on integrating process-oriented solutions over solely policy-driven approaches
Experience:
- 5+ Years of Experience in Security Engineering related roles
- Demonstrated “Red Team” background with a proactive approach to identifying and mitigating security vulnerabilities
- Proficiency in CyberArk configuration and troubleshooting, particularly related to VPN and endpoint privilege management.
- Strong expertise in Windows security hardening, including in-depth knowledge of WDAC and UAC bypasses and their countermeasures.
- Experience with AWS cloud security, including vulnerability remediation and security best practices.
- Experience with CrowdStrike for endpoint and cloud security analysis.
- Experience with BeyondTrust deployment and configuration.
- Experience with implementing and managing Okta IAM platforms, including multi-factor authentication and workflow development.
- Experience with third-party risk management platforms like Bitsight, including configuration, optimization, and vendor interaction for remediation
- Knowledge of methods to stop script-based attacks (PowerShell, Wscript).
- Ability to work in a fast-paced environment and take ownership of critical security project

