Security Engineer III

Security Engineer III

Full-Time 48000 - 72000 £ / year (est.) No working from home possible
Conde Nast

At a Glance

  • Tasks: Lead the design and implementation of CyberArk Privilege Cloud solutions.
  • Company: Join Condé Nast, a global media powerhouse with iconic brands.
  • Benefits: Enjoy 25 days holiday, private healthcare, and remote work options.
  • Other info: Collaborative culture with opportunities for personal and professional growth.
  • Why this job: Make a real impact in cyber security for renowned media brands.
  • Qualifications: 4+ years in PAM, CyberArk certification, and strong technical skills required.

The predicted salary is between 48000 - 72000 £ per year.

Condé Nast is looking for a Security Engineer to join our global Cyber Security team. This is a high-visibility role designed for a technical lead who can bridge the gap between complex project delivery and long-term security engineering excellence. The successful candidate would have worked predominantly in the Identity and Access Management (IAM) space, specialising as an SME in the area of Privilege Access Management (PAM).

As such you will have extensive knowledge of PAM solutions across multi-cloud and hybrid-on-premises environments, additionally you will have experience with identity lifecycle management as a whole and federated authentication protocols such as SAML, OIDC, and OAuth 2.0.

As our SME within the PAM space, your journey will begin working on our global Privileged Access Management (PAM) project, where you will be responsible for the end-to-end implementation and delivery of our Privileged Access Management (PAM) solution into the organisation. The successful candidate will have proven experience delivering end-to-end PAM solutions, including multiple CyberArk Privileged Cloud implementations, for medium to large organisations and would have worked in a professional services role or consultancy capacity previously.

Following the successful deployment of the PAM platform, you will maintain end-to-end technical ownership as the platform’s SME. As part of your role, you will collaborate strategically with the Identity team to harmonise our PAM and IAM architectures, ensuring both privileged and standard identities are hardened against modern threats through optimal configuration and policy alignment.

This role reports to the Senior Security Architecture Manager, but will work closely with the Security Architect to ensure our PAM and IAM solutions are deployed effectively throughout the organisation. As the technical owner for key security platforms you will own the lifecycle management of these, ensuring they are delivering optimal security performance, automated lifecycle workflows, and a seamless user experience that aligns with our global security architecture.

What will you be doing?

  • Act as the primary SME and technical owner for CyberArk Privilege Cloud throughout the project lifecycle; spearheading the design, implementation and onboarding phases, orchestrating the transition to Business-As-Usual (BAU), and providing technical support and platform governance post-delivery.
  • Provide other team members with knowledge transfer and upskilling on PAM.
  • Integrate SaaS, Cloud and on-premises applications with CyberArk as needed.
  • Establish and maintain ongoing processes and procedures needed as part of the overarching PAM program, including the PAM standard.
  • Act as the senior escalation point for complex PAM tooling issues, working with internal teams (Infrastructure, Support, Networking, Identity) and vendors to elevate and resolve issues.
  • Collaborate with the Identity team to evaluate emerging platform features and roadmap enhancements, ensuring that new capabilities are architected and integrated into the global security stack with a focus on scalability and resilience.
  • Create, maintain and update design documentation, technical documentation, service guides and administrative guides for security tooling.
  • Provide administrative and overall support of the PAM platform, assisting with upgrades, maintenance, DR testing and management of the platform as a whole.
  • Ensure the platform is integrated with on-prem SIEM solutions and work with the SOC team to define identity and privilege use cases and set up alerting as needed.
  • Support the security engineering team with the management of detection and response tooling when required.

About you:

  • Senior PAM Engineer/Consultant with 4+ years’ experience designing and implementing CyberArk Privilege Cloud in complex enterprise environments.
  • Certified as a CyberArk Sentry – Privilege Cloud Engineer or CyberArk Certified Delivery Engineer (CDE).
  • Strong understanding of privileged identity lifecycle management, including onboarding Active Directory users and local Windows/Linux administrator accounts.
  • Experience integrating CyberArk with Okta for identity lifecycle management and deploying core components such as SIA.
  • Broad technical knowledge of Active Directory (including GPO), databases, application servers, operating systems (Windows, Linux, macOS), and network infrastructure.
  • Advanced experience in configuring and troubleshooting privileged applications, privileged identity management, and API integrations.
  • Experience integrating PAM solutions across hybrid environments including AWS for key and secrets management, SSH and API key management, and reporting.
  • Familiarity with integrating load-balancing technologies with CyberArk.
  • Experience integrating PAM solutions with SIEM solutions.
  • Experience of having implemented and worked with identity access management solutions such as Okta, Ping, OneLogin.
  • Knowledge of federated authentication protocols such as SAML, OIDC, and OAuth 2.0.
  • Strong knowledge of identity access governance tools and processes, security policy, and governance.
  • Experience working in geographically dispersed environments.
  • Strong communication, presentation, and written skills.
  • Strong data analysis skills with intermediate to advanced proficiency in Google Sheets or Excel.
  • Experience of using SIEM, XDR/EDR, and Vulnerability Management solutions desirable.
  • Scripting experience is essential (Python, Powershell).

What benefits do we offer?

  • 25 days holiday (plus bank holidays) and extra days of annual leave if you move house or want to volunteer.
  • You’ll have access to a competitive pension scheme, Bupa Private Healthcare, Season ticket loans and eye tests.
  • We offer a range of tools to support your wellbeing, including core hours, 10 remote days (from home or a country with a Condé Nast office location), access to our Employee Assistance Programme, corporate gym membership and cycle to work scheme.
  • We’re a dog friendly office, plus you’ll enjoy discounts and magazine subscriptions, keeping you up to date with all things Condé Nast.
  • We encourage personal and professional growth through the Condé Nast Learning Hub where you’ll find an extensive portfolio of learning courses and training, available in local languages.
  • Our Employee Resource Groups provide a platform for employees to identify shared objectives, exchange ideas, and work on community priorities for our global workforce.

What happens next?

If you are interested in this opportunity, please apply below, and we will review your application as soon as possible. You can update your resume or upload a cover letter at any time by accessing your candidate profile. Condé Nast is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, age, familial status and other legally protected characteristics.

Security Engineer III employer: Conde Nast

Condé Nast is an exceptional employer, offering a vibrant work culture that thrives on collaboration and diversity. Located in London, employees benefit from a generous holiday allowance, comprehensive healthcare, and unique perks such as a dog-friendly office and access to the Condé Nast Learning Hub for personal and professional growth. With a commitment to employee wellbeing and a supportive environment, Condé Nast provides a meaningful and rewarding workplace for those looking to make an impact in the media industry.

Conde Nast

Contact Details:

Conde Nast Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Security Engineer III

Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current Condé Nast employees on LinkedIn. A friendly chat can sometimes lead to job opportunities that aren’t even advertised!

Tip Number 2

Prepare for interviews by brushing up on your technical skills and understanding PAM solutions inside out. We want you to showcase your expertise, so practice explaining complex concepts in simple terms – it’ll impress the interviewers!

Tip Number 3

Don’t forget to research Condé Nast’s brands and their digital presence. Knowing their portfolio will help you tailor your responses during interviews and show that you’re genuinely interested in being part of their team.

Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, you can easily update your CV or add a cover letter whenever you need to.

We think you need these skills to ace Security Engineer III

CyberArk Privilege Cloud
Identity and Access Management (IAM)
Privilege Access Management (PAM)
SAML
OIDC
OAuth 2.0
Active Directory

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Security Engineer III role. Highlight your experience with Privileged Access Management (PAM) and any relevant certifications. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Share why you're excited about joining Condé Nast and how your background makes you a perfect fit for our Cyber Security team. Let us know what makes you tick!

Showcase Your Technical Skills:Don’t forget to highlight your technical expertise, especially in IAM and PAM solutions. Mention specific tools and technologies you've worked with, like CyberArk or Okta, so we can see your hands-on experience.

Apply Through Our Website:We encourage you to apply through our website for a smooth application process. It helps us keep track of your application and ensures it gets the attention it deserves. We can't wait to hear from you!

How to prepare for a job interview at Conde Nast

Know Your PAM Inside Out

Make sure you have a solid understanding of Privileged Access Management (PAM) and CyberArk solutions. Brush up on your knowledge of identity lifecycle management and federated authentication protocols like SAML, OIDC, and OAuth 2.0. Being able to discuss these topics confidently will show that you're the right fit for the role.

Showcase Your Experience

Prepare specific examples from your past work where you've successfully implemented PAM solutions or worked in a consultancy capacity. Highlight your experience with CyberArk Privilege Cloud and any challenges you overcame during those projects. This will demonstrate your hands-on expertise and problem-solving skills.

Collaborate and Communicate

Since this role involves working closely with various teams, be ready to discuss how you've collaborated in the past. Share examples of how you’ve communicated complex technical concepts to non-technical stakeholders. This will illustrate your ability to bridge gaps and work effectively within a team.

Ask Insightful Questions

Prepare thoughtful questions about the company's current PAM initiatives and future plans. Inquire about the team dynamics and how they approach security challenges. This not only shows your interest in the role but also helps you gauge if the company culture aligns with your values.