Job Information
MetLife Director - Identity/Privileged Access Mgmt in United States
Position Overview:
Strategic Oversight and Implementation: Lead the development of the PAM strategy and corresponding roadmaps considering the corporate strategy, industry security trends, and regulatory requirements. Establish a strategy and multi-year plan incorporating all parts of PAM: scan/discovery, remediation, lifecycle management, password rotation, password vaulting, just in time administration. Architect, design, develop and troubleshoot PAM solutions with the ability to provide technical and architectural design documentation, recommendations, specifications, use cases, requirements, and test cases. Create solutions that drive full automation, self-service, and resiliency. Work to improve and track the maturity of the IAM PAM products and capabilities showing increased adoption and resiliency. Lead the design, integration, and operationalization of PAM solutions, ensuring seamless implementation across diverse business units and technologies. Act as the primary liaison between technical teams, business units, and strategic stakeholders to advance PAM services within the organization.
Automation: Develop and implement strategies for automating the provisioning, deprovisioning, and review processes for privileged accounts. Leverage business, security, and risk requirements to enhance process efficiency and drive continuous improvement initiatives, focusing on automation and streamlining across disparate systems.
Metrics and Reporting: Establish key performance indicators (KPIs) and metrics to assess the effectiveness and adoption of PAM systems. Regularly produce and present comprehensive reports to leadership, highlighting progress, challenges, and opportunities for improvement in privileged access management initiatives.
Financial Leadership: Direct the financial planning and execution for PAM services, including capital investments, technology refresh cycles, business-funded initiatives, contractor management, and personnel compensation. Ensure alignment with budgetary constraints and strategic objectives.
Organizational Leadership: Manage a team of direct reports and contract service providers. Develop and implement staffing strategies to ensure the team is well-equipped with the necessary skills and capacity. Promote a culture of innovation and continuous improvement, ensuring team members are qualified, trained, and aligned with organizational goals.
Risk Management: Identify and assess privileged access related risks and vulnerabilities and develop strategies to mitigate these risks. Maintain a continuous review of privileged account hygiene and metrics behind stale and out of compliance accounts. Respond to security incidents related to privileged account compromise and lead investigations to determine root causes and remediation actions.
Required:
8+ years of experience in IT/IAM/cybersecurity in a corporate environment.
5+ years of experience focused specifically on privileged access management (PAM) in organizations with greater than 10,000 users and/or 5+ years Cloud identity and secrets management.
Minimum of 3 - 4 years of experience leading teams, managing cross-functional projects, and interacting with senior stakeholders. Experience in managing both direct reports and external service providers.
Bachelor's degree in a relevant discipline.
Demonstrated ability to develop and execute strategic plans that align with organizational goals and industry leading practices.
Excellent verbal and written communication skills, with the ability to effectively present complex technical concepts to non-technical stakeholders and senior management.
Preferred:
In-depth understanding of regulatory requirements and industry standards related to data protection and privacy, including GDPR, CCPA, HIPAA, and SOX.
Preference for experience in regulated industries such as financial, auditing, or healthcare companies.
Strong background in integrating PAM solutions with diverse IT environments including Cloud, On-Premises, IaaS, and SaaS platforms (Entra, AWS).
Extensive experience with PAM solutions and platforms such as CyberArk, including their design, implementation, and operational management.
Proven experience in developing, implementing, and enforcing security policies and procedures to ensure compliance with applicable laws and regulations.
Proficiency with related security technologies and practices, including Identity and Access Management (IAM), Multi-Factor Authentication (MFA), Single Sign-On (SSO), and threat detection.
Strong analytical and problem-solving skills, with a proactive approach to identifying and addressing security risks and operational challenges.
Ability to work collaboratively across various departments and teams, fostering a culture of security awareness and continuous improvement.
Professional certifications such as CISSP, CISM, CIAM, or certifications in PAM tools (e.g. CyberArk Certified Delivery Engineer) are highly desirable.
Equal Employment Opportunity/Disability/Veterans
If you need an accommodation due to a disability, please email us at accommodations@metlife.com. This information will be held in confidence and used only to determine an appropriate accommodation for the application process.
MetLife maintains a drug-free workplace.
MetLife
- MetLife Jobs