hirly

State Street

PAM Engineering Manager - Vice President

Hyderabad, India

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at State Street first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.6M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

Apply from your AI assistant

Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.

Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.

hirly's read of this role

Role family
Engineering management
Seniority
Executive
Country
IN
Work mode
On-site / unstated
First seen by hirly
5 Oct 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

Role Summary

We are seeking a highly skilled and motivated Privileged Access Management (PAM) Engineering Manager – Vice President to join the Global Cybersecurity organization. This is a hands-on technical leadership role for someone who thrives in complex, highly regulated environments and is passionate about privileged access security, CyberArk, HashiCorp Vault, PIM, AKV, AWS, automation, platform modernization, and operational resilience.

The role will drive engineering ownership for strategic PAM capabilities across the enterprise, including CyberArk, HashiCorp Vault, privileged account onboarding, secrets management, automation, access modernization, platform reliability, and integration with enterprise IAM, security, and cloud ecosystems.

  • Role Title: PAM Engineering Manager – Vice President
  • Capability: Privileged Access Management / Infrastructure Access Management
  • Function: Global Cybersecurity
  • Primary Focus: CyberArk, HashiCorp Vault, PIM, AKV, AWS, PAM engineering, platform modernization, automation, and risk reduction
  • Location: Bangalore or Hyderabad

Key Responsibilities

PAM Engineering Leadership

  • Lead the engineering lifecycle for enterprise PAM platforms, including CyberArk, HashiCorp Vault, CA-PAM migration support, PIM, AKV, AWS, and related privileged access capabilities.
  • Drive platform architecture, design, implementation, integration, and continuous improvement for privileged access services.
  • Own engineering delivery for strategic PAM initiatives such as CyberArk platform uplift, HashiCorp adoption, secrets management expansion, CPM/PSM capability development, access modernization, and migration from legacy PAM platforms.
  • Partner with product, operations, governance, application, infrastructure, and cloud teams to ensure PAM engineering outcomes align with business priorities, risk requirements, and enterprise security standards.
  • Lead engineering design and implementation across CyberArk components including Vault, PVWA, CPM, PSM, PSMP, DR, connectors, integrations, monitoring, and platform automation.
  • Drive HashiCorp Vault engineering for secrets management use cases including cloud workload identities, Azure service principals, AWS workloads, static secrets, database secrets, certificate/PKI use cases, and application credential modernization.
  • Ensure PAM platforms are engineered for scalability, resilience, auditability, and secure operations.
  • Support design patterns for privileged account onboarding across Windows, Unix/Linux, databases, network devices, cloud platforms, service accounts, application accounts, and non-human identities.
  • Identify and deliver automation opportunities to reduce manual effort, ticket volume, operational risk, and configuration errors.
  • Drive API, scripting, CI/CD, Terraform, PowerShell, REST API, and workflow-based automation for PAM and secrets management use cases.
  • Establish reusable engineering patterns, onboarding templates, reference architectures, and technical accelerators.
  • Promote engineering practices such as test automation, code review, tech debt reduction, platform refactoring, and continuous improvement.
  • Ensure PAM engineering solutions support least privilege, zero trust, credential vaulting, session monitoring, access control, audit logging, and regulatory expectations.
  • Partner with governance and audit teams to close control gaps, support evidence generation, remediate findings, and improve control traceability.
  • Drive remediation of platform-related vulnerabilities, configuration gaps, audit issues, and resiliency risks.
  • Ensure PAM controls integrate with IAM, SIEM, ServiceNow, SailPoint, monitoring, change management, and incident response processes.
  • Collaborate with global technology, cybersecurity, infrastructure, application, cloud, risk, audit, and business stakeholders.
  • Translate business and regulatory requirements into scalable PAM engineering solutions.
  • Provide senior technical leadership during major incidents, platform escalations, design reviews, audit discussions, and program governance forums.
  • Work across time zones and global teams to support enterprise delivery.
  • Lead, mentor, and develop a high-performing PAM engineering team.
  • Provide technical guidance to engineers and support teams across L2/L3/L4 responsibilities.
  • Build engineering capability across CyberArk, HashiCorp Vault, cloud PAM, automation, secrets management, and non-human identity security.
  • Foster a culture of accountability, engineering discipline, innovation, documentation, and operational excellence.
  • Create and maintain architecture diagrams, engineering standards, SOPs, runbooks, implementation patterns, knowledge articles, and support handover documents.
  • Ensure documentation is audit-ready, operationally usable, and aligned to enterprise standards.
  • Establish clear ownership models, RACI alignment, support handoffs, escalation paths, and post-implementation validation practices.

Your Team

You will be part of the Global Cybersecurity Privileged Access Management / Infrastructure Access Management team , responsible for engineering and modernizing enterprise privileged access, secrets management and non-human identity/account capabilities. The team supports business-critical access platforms that enable secure infrastructure access, privileged credential management, session control, secrets management, and privileged access governance across the enterprise.

This role will work closely with PAM Operations, PAM Governance, Cloud Security, Infrastructure, Application Technology, Risk, Audit, and Product teams to deliver secure, scalable, and resilient privileged access services.

Required Experience

  • 16+ years of technology experience, with significant experience in cybersecurity, IAM, PAM, infrastructure security, or platform engineering.
  • Strong hands-on experience with one or more leading PAM platforms such as CyberArk, HashiCorp Vault, BeyondTrust, Delinea, or CA-PAM .
  • Deep understanding of privileged account management, credential vaulting, session monitoring, password rotation, privileged access workflows, and least privilege principles.
  • Experience leading large-scale PAM engineering or modernization initiatives in complex enterprise environments.
  • Strong knowledge of CyberArk architecture and components such as Vault, PVWA, CPM, PSM, PSMP, DR, connectors, policies, safes, platforms, and onboarding patterns.
  • Experience with HashiCorp Vault architecture, secrets engines, authentication methods, policies, namespaces, replication, audit logging, and application integration patterns.
  • Experience integrating PAM solutions with IAM, SIEM, ServiceNow, SailPoint, Active Directory, cloud platforms, and enterprise monitoring tools.
  • Strong understanding of Windows, Linux/Unix, databases, network devices, cloud platforms, service accounts, and application credential management.
  • Experience with platform upgrades, patching, DR validation, certificate management, vulnerability remediation, and operational readiness.
  • Experience with Agile delivery, Jira, change management, incident management, problem management, and production support governance.

Technical Skills

  • CyberArk: Vault, PVWA, CPM, PSM, PSMP, PTA, EPM, AIM/Conjur or Secrets Manager capabilities.
  • HashiCorp Vault: KV, database secrets, AppRole, LDAP/OIDC, Kubernetes auth, PKI, transit, dynamic secrets, replication, audit logging.
  • Automation: PowerShell, Python, Shell scripting, REST APIs, Terraform, Ansible, CI/CD pipelines.
  • Cloud: Azure, AWS, hybrid cloud identity and access patterns.
  • Integrations: ServiceNow, SailPoint, Active Directory, LDAP, SIEM, monitoring platforms, application onboarding workflows.
  • Governance: audit evidence, access reviews, control validation, policy compliance, risk remediation.

Leadership Skills

  • Proven ability to lead technical initiatives and drive results across teams without relying solely on direct authority.
Original posting on State Street's site ↗

Listed on hirly, a job board. hirly is not the employer: State Street is hiring for this role.

Browse similar roles

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job