Enter a job title or keyword

Senior PAM Engineer, VP

SMBC


Job Location:

Charlotte, NC - USA

Monthly Salary: Not provided by the employer
Posted: 21 August 2026 (4 days ago)
Application Deadline: 18 November 2026
Vacancies: 1 Vacancy

Job Summary

SMBC Group is a top-tier global financial group. Headquartered in Tokyo and with a 400-year history SMBC Group offers a diverse range of financial services including banking leasing securities credit cards and consumer finance. The Group has more than 130 offices and 80000 employees worldwide in nearly 40 countries. Sumitomo Mitsui Financial Group Inc. (SMFG) is the holding company of SMBC Group which is one of the three largest banking groups in Japan. SMFGs shares trade on the Tokyo Nagoya and New York (NYSE: SMFG) stock exchanges.

In the Americas SMBC Group has a presence in the US Canada Mexico Brazil Chile Colombia and Peru. Backed by the capital strength of SMBC Group and the value of its relationships in Asia the Group offers a range of commercial and investment banking services to its corporate institutional and municipal clients. It connects a diverse client base to local markets and the organizations extensive global network. The Groups operating companies in the Americas include Sumitomo Mitsui Banking Corp. (SMBC) SMBC Nikko Securities America Inc. SMBC Capital Markets Inc. SMBC MANUBANK JRI America Inc. SMBC Leasing and Finance Inc. Banco Sumitomo Mitsui Brasileiro S.A. and Sumitomo Mitsui Finance and Leasing Co. Ltd.

JOB SUMMARY
Join SMBCs Identity and Access Management (IAM) Architecture and Engineering team and help strengthen the security of privileged identities across the this role you will design and deliver Privileged Access Management (PAM) solutions that support Zero Trust principles Just-In-Time (JIT) access and least privilege controls across hybrid and cloud environments. You will work closely with security infrastructure cloud and application teams to integrate PAM capabilities improve operational efficiency and support regulatory and audit requirements.
PRINCIPAL DUTIES AND RESPONSIBILITIES
  • Design implement and maintain enterprise PAM architecture including credential vaulting session monitoring privileged access workflows and JIT access controls.
  • Lead the deployment configuration and ongoing enhancement of CyberArk solutions including PVWA CPM PSM Conjur and related components.
  • Integrate CyberArk Delinea Secret Server and other PAM platforms across on-premises cloud and hybrid environments.
  • Develop and maintain custom CPM plugins and integrations to manage credentials for proprietary or non-standard platforms.
  • Build and support application authentication and secrets management solutions using CyberArk Conjur and related technologies.
  • Implement and manage Microsoft Entra Privileged Identity Management (PIM) to govern privileged role assignments approvals and lifecycle management.
  • Define and enforce least privilege access models using RBAC ABAC and JIT methodologies across Azure AWS GCP and on-premises platforms.
  • Automate PAM provisioning access approvals and onboarding workflows including integration with ServiceNow SIEM platforms and monitoring solutions.
  • Monitor privileged activity improve security controls and enhance reporting to support compliance audit readiness and risk management.
  • Partner with IAM Security Architecture SOC Infrastructure Database Cloud and Application teams to embed PAM capabilities into operational processes.
  • Create and maintain architecture documentation standard operating procedures onboarding guides and technical standards.
  • Evaluate emerging PAM technologies and provide technical guidance and mentoring to team members.
POSITION SPECIFICATIONS
  • 5 years of experience in Identity and Access Management (IAM) with a strong focus on Privileged Access Management (PAM).
  • Experience designing and implementing PAM solutions within complex enterprise environments.
  • Experience implementing privileged access controls for both human and non-human identities.
  • Deep expertise with CyberArk including PVWA CPM PSM Conjur and Secrets Manager solutions.
  • Strong experience with Delinea (formerly Thycotic) Secret Server or comparable PAM platforms.
  • Experience designing and operating credential vaulting session management privilege elevation and JIT access solutions.
  • Strong understanding of authentication and federation standards including OAuth 2.0 OpenID Connect (OIDC) and SAML.
  • Experience with Microsoft Entra ID Entra PIM Azure RBAC and privileged role governance.
  • Knowledge of least privilege Zero Trust JIT access and privileged identity lifecycle management.
  • Experience securing privileged access across Azure AWS and GCP environments.
  • Strong scripting and automation skills to support PAM integrations workflows and administration.
  • Ability to communicate complex technical concepts to both technical and non-technical audiences.
  • Strong analytical and problem-solving skills with attention to detail.

NICE TO HAVE

  • Experience with Identity Governance and Administration (IGA) platforms such as SailPoint Saviynt or Microsoft Entra IGA.
  • Experience integrating PAM platforms with Microsoft Sentinel Cribl or other SIEM solutions.
  • CyberArk certifications training or advanced product specialization.
  • CISSP cloud security or related cybersecurity certifications.
  • Bachelors degree in Computer Science Information Technology Cybersecurity or a related field. Equivalent practical experience will also be considered.

SMBCs employees participate in a Hybrid workforce model that provides employees with an opportunity to work from home as well as from an SMBC office. SMBC requires that employees live within a reasonable commuting distance of their office location. Prospective candidates will learn more about their specific hybrid work schedule during their interview process. Hybrid work may not be permitted for certain roles including for example certain FINRA-registered roles for which in-office attendance for the entire workweek is required.

SMBC provides reasonable accommodations during candidacy for applicants with disabilities consistent with applicable federal state and local law. If you need a reasonable accommodation during the application process please let us know at


Required Experience:

Exec