Loading open roles
Loading open roles
Loading role

Connect Pro Management Consultants · posted 6 months ago
Job Title: L3 PAM Engineer Band: A3/E4
Location: Noida (Onsite) Job Type: Full Time (FTE)
Job Summary:
Lead India's Cloud Revolution & Operate at Hyperscale: Join
Airtel's New Platform Operations Team!
Airtel is making a strategic leap, launching its own hyperscale cloud service
in India.
We're building an elite Platform Operations team to be the custodians
of this vital infrastructure, delivering
unmatched operational excellence from day one.
This role places you at the helm of overseeing a sophisticated and large cloud
infrastructure built on
cutting-edge technologies. You will be instrumental in creating a world-class
core system that guarantee the
availability, performance, security, and scalability of our sovereign cloud
services, leveraging Airtel's robust
network connectivity, extensive infrastructure backbone and deep enterprise
relationships.
We seek a Senior PAM Specialist with over 10 years of experience, possessing
deep architectural
understanding and hands-on expertise with Arcon PAM. This strategic role
involves leading the design,
complex implementation, and optimization of PAM solutions, providing Level 3
support, and ensuring
adherence to Cloud standards and best practices while mentoring junior team
members.
We are looking for seasoned operations professionals with a passion for
running resilient, secure, and highly
performance distributed systems. If you are passionate about the challenge of
running infrastructure at a
gigantic scale while delivering world-class service delivery for a
hyperscaler, Airtel Cloud offers a unique
opportunity. Come build and run the future with us!
Key Roles & Responsibilities:
Lead advanced deployment, architecture design, and configuration of scalable
and resilient Arcon
PAM solutions (v5.x, v6.x) across data centers/cloud using auto-scaling, load
balancing, and multi-
region failover.
Administered break-glass access management protocols to provide emergency
privileged access
during critical situations while maintaining audit trails and compliance.
Design and implement HA/DR solutions for PAM components.
Design and enforce onboarding frameworks for Windows, UNIX, databases,
openshift/openstack
and cloud targets.
Lead technical upgrades, patch management, and version migrations across
environments
Define session recording and alerting policies aligned with internal
audit/compliance standards.
Drive root cause analysis and corrective actions for high-priority
production issues.
Conduct pre-audit system assessments and proactively remediate compliance
gaps.
Coordinate with internal GRC teams to align PAM controls
Author technical documentation, SOPs, runbooks, and deployment guides.
Implement privileged access review and recertification workflows.
Creation of policies and reports in PAM solutions
Provide support to the entire PAM /PIM environment
Play active role in the execution of the project and demonstrate strong
technical leadership
Experience on one or more of the following : BeyondTrust, CyberArk,
ObserveIT, Arcos, CA
Privileged Identity and Privileged Session Management Suite
Technical Skills and Competencies:
Required:
ARCON PAM v5.x and above
Strong understanding of Privileged session management, vaulting strategy,
and policy
enforcement.
Strong Windows Active Directory, UNIX, Linux & SSH key management
experience
Strong understanding of network hardware configuration and password
management options
(SSH, ACS, LDAP)
Strong understanding of Database authentication methods and techniques
(standalone,
LDAP/AD, others)
Ability to document and define PAM target state processes and gather
business requirements
Exposure to DevOps tools, CI/CD, and automation platforms is a plus.
Good understanding of Privileged Management processes; Defining Access
Control, User
Entitlements, Manage Applications Credentials, and User Access Policy
Management
Should have PAM workflow design concepts, integrations and implementation
Windows Server (2012, 2016, 2019), Linux (RHEL, CentOS, Ubuntu), UNIX
systems
Active Directory / LDAP, SAML, OAuth, OIDC, SSO
ITSM: ServiceNow, BMC Remedy.
MFA: DUO, Azure MFA, RSA, ADFS
Protocols: SSH, RDP, HTTPS, TLS/SSL, SNMP.
Scripting & Automation: PowerShell, Bash/Shell, Python, Ansible,
Terraform
Windows Server (2012, 2016, 2019), Linux (RHEL, CentOS, Ubuntu)
MS-SQL, MySQL
Preferred:
Integrations & Connectors
o Integration with Active Directory / LDAP, MFA (DUO, RSA, Azure MFA).
o ITSM tools: ServiceNow, BMC Remedy.
o SIEM tools: Splunk, QRadar.
o Identity platforms: Oracle Identity Manager (OIM)
Platforms & Systems
o Windows Server (2012, 2016, 2019), Linux (RHEL, CentOS, Ubuntu).
o Network device access management (Cisco, Juniper).
Tools & Frameworks
o Identity & Access Management (IAM) principles, Role-based access
control (RBAC).
o CI/CD: Jenkins, Docker, Kubernetes (preferred).
o Monitoring: Nagios, Zabbix, Arcon dashboards.
o Documentation: Confluence, SharePoint, MS Office Suite.
Security Concepts
o Identity & Access Management (IAM) principles, Role-based access
control (RBAC).
o Compliance requirements (ISO 27001, SOC, GDPR)
o SIEM: Splunk, QRadar
Familiarity with the following Identity & Access Management areas:
o Single Sign On and Identity Federation
o Directory Services such as architecture and design including directory
schema, namespace and
replication topology
o Identity Administration services that include Create, Update, and Delete
(CrUD) processes
o Role Base Access Control and/or an understanding of Attribute and Policy
based Access Control
(ABAC + PBAC)
Core Competencies:
Commitment to Operational Excellence and Process Adherence:
o Demonstrates a strong commitment to following established operational
procedures,
including incident, change, problem, and release management in alignment with
ITIL
frameworks
o Exhibit comprehensive understanding and practical application of the
incident lifecycle,
encompassing systematic procedures for identification, containment,
eradication, recovery,
and post-incident analysis.
o Proficient in using enterprise-grade monitoring tools (e.g., Prometheus,
Grafana, Zabbix,
SolarWinds, ELK) and ITSM/ticketing systems (e.g., ServiceNow, Jira) for
proactive incident
detection, alert management, and streamlined issue resolution workflows.
Systematic and Data-Driven Technical Diagnostics and Remediation:
o Employs a methodical and rigorous approach to identify, diagnose, and
resolve technical
challenges within distributed systems
o Leverage data analysis of logs, performance metrics, and system behavior to
pinpoint
underlying root causes.
Robust Foundation in Core Cloud Computing Principles:
o Exhibits a strong theoretical and practical understanding of IaaS, PaaS,
SaaS, Compute,
Storage, Networking, Security, Databases, and Serverless architectures.
o Demonstrates a proactive stance towards acquiring knowledge of new cloud
services and
technologies, actively seeking opportunities to optimize processes, enhance
tooling, and
improve system reliability.
o Experience in cloud platforms (AWS, Azure, GCP) is a plus.
Expertise in Developing Automation Solutions:
o Exhibits the ability to design, develop, and implement scripts to streamline
repetitive
operational tasks, automate deployments, and enhance monitoring capabilities.
o Proficiency in at least one scripting language relevant to automation (e.g.,
Python, Bash,
PowerShell, Ruby, and Perl).
Experience in Infrastructure and Procedural Documentation:
o Proven ability to create and maintain comprehensive documentation for
infrastructure,
operational procedures, and incident resolutions.
Exceptional Communicator and Collaborative Team Player:
o Demonstrates mastery of English communication, both written and verbal,
alongside
exceptional interpersonal skills that facilitate strong working relationships
o Drive effective collaboration and teamwork across diverse engineering teams
to achieve
shared goals.
Ability to Thrive in a Dynamic Support Environment:
o Exhibits the flexibility and commitment required to work in a 24/7 support
model, including
rotational shifts and on-call responsibilities.
Qualifications:
· Bachelor’s/Master's in Computer Science, Information Security, or
equivalent
· 10+ years of Experience in IT Infrastructure Management with 8+
years' experience in Arcon PAM
· Proven experience with Design, Build and Operations of PAM solutions and
experience integrating
PAM solution with infrastructure and applications
· PAM Administrator / PAM Professional (preferred)