2

Cyberark Engineer Remote Jobs in California (NOW HIRING)

IAM Architect

Berkeley, CA · On-site +1

$280K - $310K/yr

... remote access to broader infrastructure * Partner cross-functionally with Security Engineering ... Knowledge of privileged access management (PAM) tools and patterns (CyberArk, HashiCorp Vault, AWS ...

Business Systems Analyst

San Diego, CA · Remote

$70K - $100K/yr

... developers and business unit partners alike. This role will be located at our HQ in San Diego CA ... Remote is not available. Responsibilities: Platform Administration & Governance * Enforce software ...

New

Cyberark Engineer Remote information

What is the difference between Cyberark Engineer Remote vs Cybersecurity Analyst Remote?

AspectCyberark Engineer RemoteCybersecurity Analyst Remote
Required CertificationsCyberArk certifications, security certifications (e.g., CISSP)CompTIA Security+, CISSP, CEH
Work EnvironmentRemote, technical teams, security operationsRemote, monitoring security threats, incident response
Industry UsageFinancial, healthcare, enterprise sectorsAll sectors, including government and private
Common Search/ComparisonYesYes

Cyberark Engineer Remote focuses on implementing and managing CyberArk security solutions, requiring specialized certifications. Cybersecurity Analysts analyze security threats and respond to incidents, often with overlapping certifications. Both roles are remote and vital in security teams, but their core responsibilities differ: one is technical implementation, the other threat analysis.

What is a CyberArk Engineer and what do they do?

A CyberArk Engineer is an IT security professional specialized in deploying, managing, and maintaining CyberArk solutions for privileged access management. Their primary role is to secure, monitor, and manage privileged accounts and credentials within an organization to prevent unauthorized access and data breaches. Working remotely, they design and implement CyberArk systems, troubleshoot issues, and ensure compliance with security policies. They also provide support, training, and best practices for secure credential management to other teams.

What are the key skills and qualifications needed to thrive as a CyberArk Engineer in a remote role, and why are they important?

To thrive as a CyberArk Engineer remotely, you need a solid background in identity and access management (IAM), experience with privileged access security, and typically a degree in computer science or related certification such as CyberArk Defender or Sentry. Proficiency with CyberArk's suite of tools, scripting languages (like PowerShell or Python), and integration with SIEM or ITSM systems is essential. Strong problem-solving skills, communication, and the ability to work independently are crucial soft skills for remote collaboration and troubleshooting. These skills ensure secure management of privileged accounts and effective response to security threats in distributed environments.

What are some common challenges faced by a remote CyberArk Engineer, and how can they be addressed?

Remote CyberArk Engineers often encounter challenges such as coordinating securely with on-site teams, troubleshooting privileged access issues across distributed environments, and maintaining up-to-date knowledge of evolving security protocols. To address these, clear communication channels, robust remote access tools, and regular virtual meetings with stakeholders are essential. Additionally, ongoing training and close collaboration with security operations and IT teams help ensure smooth implementation and management of CyberArk solutions in a remote setting.
What are the most commonly searched types of Cyberark Engineer jobs in California? The most popular types of Cyberark Engineer jobs in California are:
What are popular job titles related to Cyberark Engineer Remote jobs in California? For Cyberark Engineer Remote jobs in California, the most frequently searched job titles are:
What job categories do people searching Cyberark Engineer Remote jobs in California look for? The top searched job categories for Cyberark Engineer Remote jobs in California are:
What cities in California are hiring for Cyberark Engineer Remote jobs? Cities in California with the most Cyberark Engineer Remote job openings:
Infographic showing various Cyberark Engineer Remote job openings in California as of July 2026, with employment types broken down into 7% Locum Tenens, 8% Internship, 38% Full Time, 27% Temporary, 4% Contract, and 16% Nights. Highlights an 74% Physical, 11% Hybrid, and 15% Remote job distribution.
Identity Governance & Administration (IGA) Engineer (Saviynt)

Identity Governance & Administration (IGA) Engineer (Saviynt)

MKS Instruments, Inc.

Irvine, CA • Remote

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 17 days ago


Job description

A Day in Your Life at MKS

The Identity Governance & Administration (IGA) Engineer (Saviynt) will be responsible for the ongoing operation and evolution of the Saviynt Identity Governance & Administration (IGA) platform, including designing, implementing, and optimizing identity governance solutions across the enterprise. This role partners closely with security, IT, and application teams to deliver scalable, compliant, and efficient identity lifecycle management.

As a technical expert in identity governance, you will contribute to platform stability, integrations, and continuous improvement while helping advance MKS's overall IAM maturity.

The ideal candidate is a highly motivated, selfdriven professional who enjoys solving complex problems, learning new technologies, and delivering secure identity solutions.

You Will Make an Impact By

Saviynt Platform Ownership

  • Serve as the subject matter expert (SME) for the Saviynt IGA platform
  • Oversee configuration, customization, and integration of Saviynt with enterprise systems
  • Ensure platform scalability, performance, reliability, and alignment with security standards
  • Support ongoing operations including upgrades, maintenance, and issue resolution
  • Collaborate with vendors and internal stakeholders to ensure platform success

Technical Leadership

  • Provide technical guidance and knowledge sharing within the IAM team
  • Partner with IT and security leadership to prioritize work and deliver solutions
  • Contribute to and promote best practices for configuration, development, and operations

Identity Lifecycle Management

  • Design and maintain workflows for user provisioning, de-provisioning, and access reviews.
  • Implement role-based access control (RBAC) and attribute-based access control (ABAC) models.

Integration & Automation

  • Develop connectors and integrations between Saviynt/CyberArk and applications (on-prem and cloud).
  • Automate identity processes using APIs, scripts, and Saviynt/CyberArk
  • Improve operational efficiency through automation and solution optimization

Security & Compliance

  • Ensure adherence to regulatory requirements (e.g., SOX, GDPR).
  • Conduct periodic access certifications and audits.
  • Implement controls for privileged access management.

Incident Management & Continuous Improvement

  • Troubleshoot and resolve Saviynt platform issues
  • Perform root cause analysis and implement preventive measures.
  • Stay current with Saviynt product capabilities, roadmap updates, and IAM industry trends
  • Recommend enhancements to improve security posture and operational efficiency

Skills You Bring:

  • Strong hands-on experience with Saviynt IGA platform (configuration, workflows, connectors)
  • Solid understanding of identity and access management concepts and best practices
  • Knowledge of directory services (Active Directory, LDAP), SSO, and federation protocols (SAML, OAuth, OIDC).
  • Familiarity with APIs, REST, and scripting languages (PowerShell, Python).
  • Proven ability to lead technical teams and manage complex projects.
  • Strong problem-solving and analytical skills with minimal supervision and escalate issues as appropriate
  • Excellent communication skills for collaboration with stakeholders and vendors.
  • Working with an international team and stakeholders (USA, India, Germany, ...)
Requirements
  • 5+ years in IAM engineering roles, with at least
  • 2+ years focused on Saviynt.
  • Experience in large-scale enterprise environments.
  • Demonstrated understanding of risk and compliance frameworks
  • Excellent documentation, written and communication skills
  • Must be a detail-oriented, well-organized, self-starter able to work in a dynamic environment with the ability to perform multiple tasks
  • Highly motivated individual with the ability to self-start, prioritize, and multi-task

Preferred Requirements:

  • Saviynt certification
  • Scripting and/or programming skills in technologies, such as PowerShell, SQL, Python, and JSON
  • Strong interpersonal and communication skills and the ability to collaborate and work effectively with a wide range of cross-functional teams, vendors, and time zones
  • Experience with REST protocols
  • Familiarity with standards for SSO technologies such as SAML2, OAuth2

Physical Demands and Working Conditions:

  • Perform activities such as sitting, standing, or typing for extended periods of time
  • Regularly requires good manual dexterity and coordination
  • Must be able to communicate information and ideas so others will understand
  • Must be able to exchange accurate information
  • The ability to observe documents and details at close range (within a few feet of the observer)
  • Operates in a professional office environment
  • Constantly operates a computer and other office productivity machinery
  • Noise level in the work environment is usually average

This position is remote but candidates must be within commutable distance to Andover MA, Broomfield CO, Rochester NY, or Irvin CA. Relocation benefits are not available for this position.

We are interested in a qualified candidates eligible to work in the United States and will not be sponsoring work visas for this position, at this time.

MKS is an equal opportunity employer, including disability, veteran status and all categories protected by law. Please review our EOE statements for additional details. MKS is generally only hiring candidates who reside in states where we are registered to do business.

Compensation and Benefits:

  • Salary Pay Range: $ 88,000 - $147,000 per year. This range is a good faith estimate of the expected salary range for this position, based on a wide range of factors including qualifications, experience and training, operational and business needs and other considerations permitted by law.

  • Bonus: This position is eligible for a discretionary annual bonus, in an amount to be determined by MKS [or as applicable].

  • Benefits: MKS offers a comprehensive benefits package, including health insurance coverage (medical, dental and vision), 401(k) with company match, life and disability insurance, 12 paid holidays, sick time, 15 paid vacation days, [6 weeks fully paid] parental leave, adoption assistance and tuition reimbursement [and for participation in any stock programs, signing bonus, etc.

#LI-MH1 #LI-Remote

Globally, our policy is to recruit individuals from wide and diverse backgrounds. However, certain positions require access to controlled goods and technologies subject to the International Traffic in Arms Regulations (ITAR) or Export Administration Regulations (EAR). Applicants for these positions may need to be "U.S. persons." "U.S. persons" are generally defined as U.S. citizens, noncitizen nationals, lawful permanent residents (or, green card holders), individuals granted asylum, and individuals admitted as refugees.

MKS Inc. and its affiliates and subsidiaries ("MKS") is an affirmative action and equal opportunity employer: diverse candidates are encouraged to apply. We win as a team and are committed to recruiting and hiring qualified applicants regardless of race, color, national origin, sex (including pregnancy and pregnancy-related conditions), religion, age, ancestry, physical or mental disability or handicap, marital status, membership in the uniformed services, veteran status, sexual orientation, gender identity or expression, genetic information, or any other category protected by applicable law. Hiring decisions are based on merit, qualifications and business needs. We conduct background checks and drug screens, in accordance with applicable law and company policies. MKS is generally only hiring candidates who reside in states where we are registered to do business.

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

MKS is committed to working with and providing reasonable accommodations to qualified individuals with disabilities. If you need a reasonable accommodation during the application or interview process due to a disability, please contact us at:accommodationsatMKS@mksinst.com.

If applying for a specific job, please include the requisition number (ex: RXXXX), the title and location of the role