Privileged Access Management; PAM Specialist; BloodHound desired
Listed on 2026-01-14
-
IT/Tech
Cybersecurity, Information Security
Job Description
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Job DescriptionThis job is responsible for developing and supporting enterprise-wide information security policies, procedures, and standards. Key responsibilities include applying knowledge of laws, rules, regulations, and information security concepts (e.g., NIST, COBIT, ISO) to establish and maintain policies, validate alignment of processes and controls to requirements, and report on adherence to policy requirements. Job expectations include using data analytics and partnering with internal teams to verify policy compliance, identify gaps in coverage, and support remediation activities.
SummaryJoin one of the largest financial institutions in the U.S. as a Privileged Access Specialist dedicated to safeguarding the bank's most critical assets. This is a fantastic opportunity to work on cutting-edge cybersecurity initiatives focused on Active Directory
, Microsoft Entra , and other Tier 0 infrastructure
. You will play a pivotal role in defending against advanced threats by implementing robust privileged access controls and eliminating attack paths. If you are passionate about identity security and thrive in high-stakes environments, this role offers the chance to make a measurable impact on the security posture of a global enterprise.
- Deploy and configure Blood Hound for enterprise environments (AD and Azure AD).
- Collect and analyze data using Sharp Hound collectors and interpret graph-based attack paths.
- Develop and execute custom Cypher queries to uncover advanced attack vectors.
- Collaborate with red and blue teams to simulate adversary techniques and validate defensive measures.
- Provide actionable recommendations to mitigate identified risks and harden Active Directory environments.
- Maintain documentation and reporting for findings and remediation strategies.
- Hands‑on experience with Blood Hound and Sharp Hound in enterprise‑scale environments.
- Strong understanding of Active Directory architecture
, privilege escalation techniques, and common misconfigurations. - Proficiency in Cypher query language for graph‑based analysis.
- Familiarity with defensive use cases for Blood Hound and integration into security operations.
- Knowledge of identity security best practices and attack path management.
- 3+ Years technical experience in attack path analysis
- 5+ Years experience administering Active Directory and Entra (formerly Azure
AD) - CISSP
, CISM
, or equivalent security certifications. - Offensive Security certifications (e.g., CEH, OSCP, CRTP) or red team focused credentials are a plus.
- Experience with PAM vendors and tools (Cyber Ark, Hashi, Beyond Trust, etc.).
- Familiarity with compliance frameworks (NIST, ISO/IEC, FFIEC)
1st shift (United States of America)
Hours Per Week40
LocationsUS - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - MA - Boston - 100 Federal St - 100 Federal St Lp (MA5100)
Pay$78,200.00 - $ annualized salary, offers to be determined based on experience, education and skill set.
Discretionary IncentiveThis role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.
BenefitsThis role is currently benefits eligible. We provide industry‑leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).