This role requires hands-on privileged access experience, preferably with CyberArk and federal enterprise environments.
Key Responsibilities
• Support Just-in-Time provisioning for privileged access.
• Support privileged session management, privilege elevation, delegation management, and lifecycle management.
• Support enterprise secrets management use cases and integration with back-end vault platforms.
• Discover, classify, manage, and govern privileged accounts across systems and applications.
• Identify owners and usage patterns for privileged human and non-human accounts.
• Implement RBAC and ABAC for privileged accounts.
• Support PIV-based SSO for privileged access to prevent credential exposure.
• Register applications for PAM across multiple environments.
• Randomize, manage, and vault passwords, keys, and other credentials for administrative, service, and application accounts.
• Broker credentials to applications, databases, services, network devices, operating systems, and other systems.
• Coordinate vulnerability remediation with security teams.
• Support STIG configurations and hardened container images.
• Monitor, record, audit, and analyze privileged sessions and actions.
• Develop security audit dashboards and support FISMA/compliance data pulls.
• Support Active Directory tiering and permission improvements.
Required Qualifications
• Experience with privileged accounts, privileged session management, secrets management, and credential vaulting.
• Experience with CyberArk or comparable PAM platform.
• Experience with least privilege, privileged account discovery, account ownership, and lifecycle governance.
• Ability to support cloud, hybrid, and on-prem privileged access use cases.
• Ability to obtain favorable EOD / suitability and maintain required access.
Preferred Qualifications
• Experience supporting PAM adoption across many application teams.
• Experience with PIV SSO for privileged access.
• Experience with AD tiering, LDAP, CDM, STIGs, hardened containers, and FISMA dashboards.
• Experience supporting DevOps secrets management and container platform integrations.
• Prior DHS, or federal Zero Trust/PAM experience.
Skills Required
- Experience implementing or operating PAM solutions.
- Experience with privileged accounts, privileged session management, secrets management, and credential vaulting.
- Experience with CyberArk or comparable PAM platform.
- Experience with least privilege, privileged account discovery, account ownership, and lifecycle governance.
- Ability to support cloud, hybrid, and on-prem privileged access use cases.
- Ability to obtain favorable EOD / suitability and maintain required USCIS access.
- U.S. citizenship likely required for DHS IT access unless waiver is granted.
- CyberArk PAS Vault experience.
- Experience supporting PAM adoption across many application teams.
- Experience with PIV SSO for privileged access.
- Experience with AD tiering, LDAP, CDM, STIGs, hardened containers, and FISMA dashboards.
- Experience supporting DevOps secrets management and container platform integrations.
- Prior DHS, USCIS, or federal Zero Trust/PAM experience.
What We Do
Makpar provides high level strategic and project management services based on over 10 years of experience in customer focused, cutting edge technology in product development, big data and analytics. With a principal office in Loudon County, Virginia, we have access to the best and the brightest people in the industry who have a passion for helping our clients. Our highly experienced consultants will work on your most pressing challenges day in and day out and will deliver results that will delight you. We value integrity, honesty, and open communications in all our dealings. We continually strive to improve ourselves through soliciting feedback and evaluating our results against the best in the industry.









