What are the responsibilities and job description for the IBM Cloud Security Architect position at Openkyber?
PAM Security Architect Westlake, TX or Boston, MA or Merrimack, NH 12 month contract (long-term engagement) Hybrid: 3 days onsite | Local candidates only
Top 3 Required Skills
- Privileged Access Management & Secrets Management Architecture
- 10 years of experience designing and delivering enterprise-scale cybersecurity architecture in regulated environments (financial services preferred)
- Hands-on architecture and deployment experience with PAM solutions, with a strong focus on Secrets Management using HashiCorp Vault
- Deep understanding of non-interactive credentials, workload access controls, machine identity, ephemeral secrets, and automated secret rotation
Enterprise Security Architecture & PAM Tooling
- Proven expertise with PAM tools such as CyberArk, Delinea Secret Server, HashiCorp Vault, and Microsoft Entra ID
- Strong knowledge of workload identity frameworks including SPIFFE and SPIRE
- Experience designing PAM policies, standards, and controls aligned with regulatory requirements (PCI DSS, HIPAA, GDPR)
- Ability to evaluate build vs. buy solutions and design secure cloud and hybrid architectures
Leadership, Influence & Change Management
- Strong consensus-building and stakeholder-influencing skills across business and technology teams
- Ability to act as a change agent, modernizing legacy PAM implementations and driving adoption of modern secrets management patterns
- Excellent communication skills with the ability to present complex security concepts to both technical and non-technical audiences
Role Overview The PAM Security Architect will define and drive the Privileged Access Management architecture strategy for the Enterprise Cybersecurity organization. This is a highly visible, Top 25 program supporting long-term security initiatives. The role is an individual contributor position requiring strong architectural ownership, technical depth, and enterprise influence.
Interview Process
- 2 rounds: Manager interview followed by technical deep dive with the team
- Video interviews
Additional Qualifications
- Bachelor's degree in Information Security, Computer Science, or related field (Master's preferred)
- Relevant certifications such as CISSP, CISM, or CRISC are highly desirable
- Strong understanding of cloud security, IAM, SSDLC, cryptography, and key management
- Work Authorization: TN
For applications and inquiries, contact: hirings@openkyber.com