CyberArk Secret Manager Engineer (AAM) – CISO / IDAM

Company: Xpand Group
Apply for the CyberArk Secret Manager Engineer (AAM) – CISO / IDAM
Location: London
Job Description:

CyberArk Secret Manager Engineer (AAM) (Freelance Contract) – CISO / IDAM | Hybrid Europe

Hybrid – 8 days per month onsite

Offices: Brussels, London, Amsterdam, or Paris

Contract Type: Freelance / Contract

Overview

We are supporting a leading global financial market infrastructure organisation within their CISO division, currently undergoing a major Privileged Access Management (PAM) transformation.

As part of this initiative, they are deploying CyberArk Secret Manager (Application Access Manager – AAM) across a complex enterprise environment.

This is a hands-on, delivery-focused role where you will take ownership of the end-to-end deployment, configuration, and integration of CyberArk Secret Manager components across both on-prem and cloud environments.

Key Responsibilities

  • Deploy, configure, and integrate CyberArk Secret Manager (AAM) components:
    • Credential Provider (CP)
    • Central Credential Provider (CCP)
    • Application Service Credential Provider (ASCP)
  • Design and implement solutions for secure management of service and application accounts
  • Integrate CyberArk with applications, middleware, databases, and enterprise systems
  • Configure and manage Safes, platforms, and access control policies
  • Ensure adherence to the principle of least privilege
  • Automate processes using PowerShell, Bash, REST APIs, and Ansible
  • Troubleshoot and resolve complex integration and authentication issues
  • Collaborate with application and infrastructure teams to enable secure-by-design practices
  • Produce technical documentation, including architecture diagrams and runbooks

Required Experience

  • Strong hands-on experience with CyberArk Secret Manager / AAM
  • Proven experience implementing:
    • CP, CCP, and ASCP components
  • Solid background in CyberArk PAM administration:
    • Safes, platforms, permissions, onboarding
  • Experience integrating CyberArk with enterprise applications and systems
  • Strong scripting and automation skills (PowerShell, Bash, REST APIs)
  • Experience with Ansible automation
  • Good understanding of Windows and Linux environments
  • Solid knowledge of networking and security fundamentals

Key Attributes

  • Able to work independently and take ownership of deliverables
  • Strong problem-solving and troubleshooting skills
  • Comfortable working in a fast-paced, project-driven environment
  • Excellent communication and stakeholder engagement skills

Why Apply?

  • Work on a large-scale CyberArk Secret Manager deployment
  • Be part of a high-performing CISO / IDAM team
  • Exposure to complex enterprise and financial services environments
  • Flexible hybrid working model across multiple European locations
  • Opportunity to drive automation and modern PAM practices

Rates depend on experience and client requirements

#J-18808-Ljbffr…

Posted: May 30th, 2026