{"id":1213420,"url":"https://alion.io/job/merck-co-associate-director-cybersecurity-engineering","title":"Associate Director, Cybersecurity Engineering","company":{"id":3768,"name":"Merck & Co.","domain":"msd.com","url":"https://alion.io/company/msd","size_band":"5000+","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":{"grade":"A","score":100,"open_postings":87,"ghost_share":0.011,"stale_share":0.138,"repost_share":0.057,"time_to_fill_p50_days":10,"computed_at":"2026-09-27T05:45:00Z"}},"role":"Leadership","role_family":"Leadership","seniority":"head","employment_type":"full_time","work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Rahway, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":142400,"max":224100,"currency":"USD","period":"year","gross":null,"usd_annual":224100},"salary_estimate":null,"experience_years_min":10,"visa_sponsorship":true,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Agile","optional":false},{"name":"BeyondTrust","optional":false},{"name":"CyberArk","optional":false},{"name":"Delinea","optional":false},{"name":"HashiCorp Vault","optional":false},{"name":"IAM","optional":false},{"name":"Jira","optional":false},{"name":"Least Privilege","optional":false},{"name":"Linux","optional":false},{"name":"Unix","optional":false},{"name":"Windows","optional":false},{"name":"Zero Trust","optional":false},{"name":"Active Directory","optional":true},{"name":"AWS","optional":true},{"name":"Azure","optional":true},{"name":"GCP","optional":true},{"name":"ITIL","optional":true},{"name":"Kubernetes","optional":true},{"name":"Microsoft Entra ID","optional":true},{"name":"PowerShell","optional":true},{"name":"ServiceNow","optional":true},{"name":"SLI/SLO/SLA","optional":true}],"status":"live","first_seen_at":"2026-09-25T05:51:47Z","employer_posted_date":"2026-09-25","last_verified_at":"2026-09-27T22:08:13Z","board_verified":true,"closed_at":null,"days_open":2,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":2},"description":"Job Description\nPrivileged Access Management (PAM) Team Lead (R4 - Associate Director)\nRole Summary\nThe Privileged Access Management (PAM) Team Lead owns the strategy, engineering execution, service health, and continuous improvement of our company's privileged access and secrets management capabilities. The role leads a global PAM engineering team and partners with the IAM Product team, architecture, cybersecurity, and business stakeholders to advance Zero Trust and meet business, regulatory, and operational needs. This role combines people leadership, engineering delivery, technical strategy, and governance to reduce cyber risk and strengthen enterprise identity security.\nKey Responsibilities:\nStrategy & Governance:\nOwn and execute the enterprise PAM roadmap aligned with our company's cybersecurity strategy, Zero Trust objectives, and identity security initiatives.\nDefine and maintain PAM standards and governance practices in partnership with security, risk, and architecture teams.\nDevelop and present PAM posture, risk metrics, and remediation plans to leadership, governance, and audit stakeholders.\nPartner across teams to prioritize PAM adoption, expand privileged access controls and remediate risk.\nEngineering:\nLead the design and delivery of enterprise PAM and secrets management capabilities.\nModernize privileged access through risk-based, least-privilege, and just-in-time access models.\nTranslate PAM strategy into scalable designs, standards, and patterns across all environments.\nLead evaluations of new PAM technologies based on need, risk, architectural fit, and cost.\nOversee remediation of PAM vulnerabilities, control gaps, audit findings, and technical debt.\nPeople Leadership & Collaboration:\nLead daily PAM engineering activities, drive execution, remove delivery barriers, and develop team capabilities.\nPromote Agile ways of working and continuous improvement.\nMentor and influence the team’s personal and professional development.\nProduct & Delivery Management:\nPartner with the IAM Product Owner to manage the backlog aligned with OKRs and team capacity.\nBe accountable for the health, stability, and continuous improvement of PAM services.\nPartner with stakeholders to ensure capabilities meet business and security needs while reducing risk.\nEducation Requirement:\nBachelor’s degree (or equivalent experience), preferably in Computer Science, Information Systems, or a related field.\nRequired Skills & Experience:\n10+ years of experience in cybersecurity or Identity and Access Management (IAM), including at least 7 years focused on Privileged Access Management (PAM).\nExperience leading and developing security engineering teams within a large, global organization.\nStrong understanding of enterprise PAM and secrets management platforms (e.g., Delinea, CyberArk, BeyondTrust, and/or HashiCorp Vault).\nHands-on knowledge of PAM solutions supporting Windows, UNIX/Linux, and databases.\nExperience delivering solutions using Agile methodologies and collaborating with Product Owners using tools such as Jira.\nExcellent communication skills, with the ability to effectively translate complex technical concepts, risks, and recommendations for technical and non-technical stakeholders.\nPreferred Experience & Skills:\nHands-on experience with identity platforms such as Active Directory, Microsoft Entra ID, cloud identity services, and/or HashiCorp Vault.\nHands-on knowledge of PAM solutions operating in multi-cloud environments (AWS, Azure, and GCP) and Kubernetes platforms.\nFamiliarity with ServiceNow for incident and change management processes.\nExperience automating administrative and operational tasks using PowerShell or similar technologies.\nStrong understanding of cybersecurity fundamentals, secure SDLC practices, Zero Trust principles, and cloud-native security controls.\nKnowledge of industry standards and frameworks such as NIST, ITIL, and modern identity security practices.\nExperience working in healthcare, life sciences, or other highly regulated industries.\nIndustry-recognized certifications such as CISSP, Security+, or comparable credentials.\nRequired Skills:\nApplication Security, Cloud Security, Cybersecurity Operations, Data Protection, Delivery of Security Applications, Design Applications, DevOps Coaching, Influence, Information Security, SLA Management, System Designs, Technical Advice, Zero Trust IdentityPreferred Skills:\nCurrent Employees apply HERE\nCurrent Contingent Workers apply HERE\nUS and Puerto Rico Residents Only:\nOur company is committed to inclusion, ensuring that candidates can engage in a hiring process that exhibits their true capabilities. Please click here if you need an accommodation during the application or hiring process.\nAs an Equal Employment Opportunity Employer, we provide equal opportunities to all employees and applicants for employment and prohibit discrimination on the basis of race, color, age, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability status, or other applicable legally protected characteristics. Asa federal contractor, we comply with all affirmative action requirements for protected veterans and individuals with disabilities. For more information about personal rights under the U.S. Equal Opportunity Employment laws, visit:\nEEOC Know Your Rights\nEEOC GINA Supplement\nWe are proud to be a company that embraces the value of bringing together, talented, and committed people with diverse experiences, perspectives, skills and backgrounds. The fastest way to breakthrough innovation is when people with diverse ideas, broad experiences, backgrounds, and skills come together in an inclusive environment. We encourage our colleagues to respectfully challenge one another’s thinking and approach problems collectively.\nLearn more about your rights, including under California, Colorado and other US State Acts\nThe salary range for this role is\n$142,400.00 - $224,100.00This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. An employee’s position within the salary range will be based on several factors including, but not limited to relevant education, qualifications, certifications, experience, skills, geographic location, government requirements, and business or organizational needs.\nThe successful candidate will be eligible for annual bonus and long-term incentive, if applicable.\nWe offer a comprehensive package of benefits. Available benefits include medical, dental, vision healthcare and other insurance benefits (for employee and family), retirement benefits, including 401(k), paid holidays, vacation, and compassionate and sick days. More information about benefits is available at https://jobs.merck.com/us/en/compensation-and-benefits.\nYou can apply for this role through https://jobs.merck.com/us/en (or via the Workday Jobs Hub if you are a current employee). The application deadline for this position is stated on this posting.\nSan Francisco Residents Only: We will consider qualified applicants with arrest and conviction records for employment in compliance with the San Francisco Fair Chance Ordinance\nLos Angeles Residents Only: We will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws, including the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance\nSearch Firm Representatives Please Read Carefully\nMerck & Co., Inc., Rahway, NJ, USA, also known as Merck Sharp & Dohme LLC, Rahway, NJ, USA, does not accept unsolicited assistance from search firms for employment opportunities. All CVs / resumes submitted by search firms to any employee at our company without a valid written search agreement in place for this position will be deemed the sole property of our company. No fee will be paid in the event a candidate is hired by our company as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails.\nEmployee Status:\nRegularRelocation:\nVISA Sponsorship:\nTravel Requirements:\nFlexible Work Arrangements:\nHybridShift:\nValid Driving License:\nHazardous Material(s):\nJob Posting End Date:\n10/8/2026*A job posting is effective until 11:59:59PM on the day BEFORE the listed job posting end date. Please ensure you apply to a job posting no later than the day BEFORE the job posting end date.","description_format":"text","description_chars":8525,"description_truncated":false,"requirements":{"experience_years_min":10,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Flexible schedule","Professional development"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"},{"name":"Puerto Rico","iso":"PR","kind":"country"}],"hiring_excludes":[],"relocation_offered":true,"industries":["Cybersecurity","Information Security","Veterinary Medicine","Vaccines"],"lifecycle":[{"event":"open","at":"2026-09-25T05:51:47Z"}],"liveness":{"score":88,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.876,"p_room":1,"age_days":1,"expected_fill_days":10,"reasons":["conf:9","velocity","win:early","comp:brand"],"computed_at":"2026-09-27T05:45:00Z"},"pay":{"stated_usd_annual":224100,"is_top_pay":false},"html_url":"https://alion.io/job/merck-co-associate-director-cybersecurity-engineering","json_url":"https://alion.io/job/merck-co-associate-director-cybersecurity-engineering.json","meta":{"generated_at":"2026-09-28T05:20:32Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":3563,"day_limit":5000,"remaining_today":1437,"minute_limit":60,"resets_at":"2026-09-29T00:00:00Z"}}}