NCR
Information Security Engineer - CyberArk
ATLANTA, GA, USA
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Matched against 2.4M live jobs from 200,000+ employers in 200+ countries.
Tailor my resume for this job →Apply from your AI assistant
Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.
Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.
hirly's read of this role
- Role family
- Engineering
- Seniority
- Mid level
- Country
- US
- Work mode
- On-site / unstated
- First seen by hirly
- 27 Sept 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
About NCR VOYIX
NCR Voyix Corporation (NYSE: VYX) is a global platform-powered leader in unified commerce for shopping and dining. Combining a flexible, intelligent platform with end-to-end payments capabilities and services developed through its deep industry experience, NCR Voyix empowers retailers and restaurants to accelerate new possibilities for their operations, experiences and business outcomes. NCR Voyix is headquartered in Atlanta, Georgia, and serves customers in more than 35 countries worldwide.
Information Security Engineer
Location: Atlanta, GA
About NCR Voyix
NCR VOYIX Corporation (NYSE: VYX) is a leading global provider of digital commerce solutions for the retail, restaurant and banking industries. NCR VOYIX is headquartered in Atlanta, Georgia, with approximately 16,000 employees in 35 countries across the globe. For nearly 140 years, we have been the global leader in consumer transaction technologies, turning everyday consumer interactions into meaningful moments. Today, NCR VOYIX transforms the stores, restaurants and digital banking experiences with cloud-based, platform-led SaaS and services capabilities.
Not only are we the leader in the market segments we serve and the technology we deliver, but we create exceptional consumer experiences in partnership with the world’s leading retailers, restaurants and financial institutions. We leverage our expertise , R&D capabilities and unique platform to help navigate, simplify and run our customers’ technology systems.
Our customers are at the center of everything we do. Our mission is to enable stores, restaurants and financial institutions to exceed their goals – from customer satisfaction to revenue growth, to operational excellence, to reduced costs and profit growth. Our solutions empower our customers to succeed in today’s competitive landscape.
Our unique perspective brings innovative, industry-leading tech to all the moving parts of business across industries. NCR VOYIX has earned the trust of businesses large and small — from the best-known brands around the world to your local favorite around the corner.
Position Overview:
We are looking for an Information Security Engineer with strong experience in Privileged Access Management (PAM) to strengthen identity and access security controls across the enterprise. In this role, you will own key PAM capabilities end-to-end (design, implementation, and operational excellence), partner closely with IAM, infrastructure, and application teams, and drive improvements to CyberArk onboarding, credential rotation, and privileged session controls for both human and non-human identities. You will also help the organization adopt AI-enabled operational practices safely by applying secure-by-design principles to automation and AI-assisted workflows (e.g., protecting secrets/API keys used by automation, and ensuring appropriate access controls and auditability).
Key Responsibilities
PAM Platform Ownership
Own day-to-day reliability, security, and lifecycle management of CyberArk components and integrations (configuration, upgrades, health monitoring, and break-fix).
Define and maintain operational standards (onboarding patterns, safe design, naming/metadata, rotation policies, and access workflows) to ensure consistency and auditability.
Privileged Identity & Credential Lifecycle
Lead onboarding and lifecycle management for privileged accounts (human and non-human), including service accounts, application secrets, and automation identities.
Design and implement password/secret rotation strategies and work with application owners to ensure credential consumers are compatible with rotation and failover.
Privileged Session Controls
Configure and maintain privileged session access controls, including approvals, just-in-time access patterns (where applicable), session monitoring/recording, and least-privilege enforcement.
Perform PAM discovery activities and prioritize remediation of unmanaged privileged access.
Integration & Automation
Implement and troubleshoot integrations between CyberArk and enterprise platforms (e.g., directory services, endpoints/servers, CI/CD, and key application stacks).
Develop and maintain automation (PowerShell/Python) for onboarding, rotation validation, reporting, and operational tasks; contribute to reusable templates and standards.
Risk Reduction, Audit & Compliance
Produce and maintain audit-ready evidence for privileged access controls (e.g., onboarding approvals, rotation success, access reviews, session logs) and support internal/external audits.
Identify gaps in privileged access controls, drive remediation plans, and track improvements through measurable operational metrics.
AI & Automation Security Enablement
Partner with engineering teams to apply least-privilege and credential management patterns for AI/automation identities (e.g., API keys, service principals, tokens) used by scripts, bots, and AI-assisted workflows.
Define and implement controls to reduce AI-related identity risk (secret sprawl, over-privileged tokens, unmanaged credentials), including logging, rotation, and break-glass procedures.
Incident Response & Engineering Support
Provide Tier-3 support and technical leadership during PAM-related incidents; perform root cause analysis and implement corrective/preventive actions.
Mentor junior engineers and contribute to knowledge transfer through runbooks, training, and peer reviews.
Qualifications
Education: Bachelor’s degree in Computer Science , Information Security, or a related field (or equivalent practical experience).
Experience:
1 – 3 + years of experience in Information Security, IAM, or security engineering with a strong focus on PAM .
Hands-on experience implementing and operating CyberArk in enterprise environments (onboarding at scale, rotation, integrations, monitoring, and troubleshooting).
Demonstrated experience supporting audits and operating with strong change control and documentation discipline.
Technical Skills:
Strong knowledge of privileged access concepts (least privilege, break-glass access, service accounts, just-in-time patterns, session monitoring/recording).
Windows and Linux administration fundamentals (credential usage, services/daemons, scheduling, permissions) and authentication protocols basics (e.g., LDAP/Kerberos/SSO concepts).
Scripting/automation skills in PowerShell and/or Python , with the ability to develop maintainable scripts and perform peer reviews.
Ability to troubleshoot complex issues across applications, infrastructure, and integrations (logs, networking basics, and dependency mapping).
Working knowledge of GenAI and common enterprise AI adoption risks (data leakage, prompt injection, insecure plugins/tools, model/API access control), and the ability to translate these risks into practical identity and secrets-management controls.
Familiarity with using AI-assisted tools responsibly for operational efficiency (triage, documentation, reporting) while ensuring sensitive data handling, logging, and policy compliance.
Certifications (Preferred):
CyberArk certifications (e.g., Defender/Trustee) or equivalent hands-on mastery.
AI security training/certification (e.g., vendor AI security fundamentals) or demonstrated experience supporting secure enterprise AI adoption.
Security+ and/or higher-level certification such as SSCP, CISSP, or CISM (based on experience level).
Soft Skills
Strong analytical and problem-solving skills.
Excellent communication and collaboration abilities.
Ability to work under pressure during critical incidents.
Offers of employment are conditional upon passage of screening criteria applicable to the job
EEO Statement
Integrated into our shared values is NCR Voyix’s commitment to equal employment opportunity. All qualified applicants will receive consideration for employment without regard to
Similar jobs
- AI Security Engineer, AWS Security - AISecAmazon · Austin, Texas, USAFirst seen today
- Application Security EngineerAmazon · Arlington, Virginia, USAFirst seen today
- Information Systems Security Engineer (Active DOD Secret Clearance required)CompQsoft Inc. - ACTIVE · KITTERY, MEFirst seen today
- Software Product Security Engineer - HP IQHp · San Francisco, California, United States of AmericaFirst seen today
- Systems Security Engineer I – Anti-Tamper / Program Protection (On-site)Globalhr · US-AZ-TUCSON-801 ~ 1151 E Hermans Rd ~ BLDG 801 (External Site)First seen today
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job