Cyber security Engineer - privileged Access Management
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
Role Overview
Cyber security engineering role focused on FortiPAM privileged access management and FortiDLP data loss prevention.
FortiPAM is used across on-premises, cloud, and hybrid environments to manage privileged accounts, credentials, and sessions.
Key Skills for This Role
Full Job Posting
Role Focus
Cyber security engineering role focused on FortiPAM privileged access management and FortiDLP data loss prevention.
FortiPAM is used across on-premises, cloud, and hybrid environments to manage privileged accounts, credentials, and sessions.
FortiPAM Responsibilities
- Onboard privileged and service accounts for Windows, Linux/Unix, network devices, databases, and hypervisors into vaulted credential stores.
- Configure automated password rotation and secure RDP, SSH, HTTPS, and database-console access through the FortiPAM session broker.
- Implement session recording, live monitoring, just-in-time access, approval workflows, checkout/check-in policies, and dual-control access.
- Integrate FortiPAM with Active Directory/Entra ID, LDAP, RADIUS, and SAML/SSO providers for federation and MFA.
- Configure RBAC and least-privilege policies aligned with job functions and risk tiers.
- Conduct access reviews, orphaned and stale account audits, and credential rotation compliance checks.
- Troubleshoot FortiPAM connectivity, authentication, and session-broker issues.
- Maintain break-glass and emergency access procedures for FortiPAM outages.
FortiDLP Responsibilities
- Design, implement, and tune FortiDLP policies for unauthorized transfer of PII, PHI, financial data, and intellectual property.
- Build data classification schemas and fingerprinting or pattern-matching rules using regex, exact data match, document fingerprinting, and OCR detection.
- Configure endpoint DLP agents for monitoring and blocking USB and other data-transfer activity.
Technical Skills
- FortiPAM and FortiDLP.
- Privileged access management, role-based access control, MFA, session security, and credential rotation.
- Active Directory/Entra ID, LDAP, RADIUS, SAML/SSO, and SIEM/SOC integrations.
- Windows, Linux/Unix, network devices, databases, and hypervisors.
Requirements
- Hands-on capability to deploy, configure, and administer FortiPAM for privileged account, credential, and session management.
- Experience implementing privileged access workflows, approval controls, session recording, just-in-time access, and least-privilege policies.
- Experience designing and tuning FortiDLP policies for sensitive data across endpoints, email, web, and removable media.
- Ability to integrate privileged access controls with directory, authentication, identity federation, MFA, and SIEM/SOC systems.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career