Privileged Access Management (PAM) Senior Specialist (HashiCorp Vault experience required)
Boston, Massachusetts;Washington, District of Columbia; Denver, Colorado; Jersey City, New Jersey; Chicago, Illinois
To proceed with your application, you must be at least 18 years of age.
Acknowledge (https://ghr.wd1.myworkdayjobs.com/Lateral-US/job/Boston/Privileged-Access---Secrets-Management-Senior-Specialist--CyberArk-and-HashiCorp-Vault-experience-required-_26027229)
Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.
Acknowledge (https://ghr.wd1.myworkdayjobs.com/Lateral-US/job/Boston/Privileged-Access---Secrets-Management-Senior-Specialist--CyberArk-and-HashiCorp-Vault-experience-required-_26027229)
Refer a friend
To proceed with your application, you must be at least 18 years of age.
Acknowledge (https://ghr.wd1.myworkdayjobs.com/Lateral-US/job/Boston/Privileged-Access---Secrets-Management-Senior-Specialist--CyberArk-and-HashiCorp-Vault-experience-required-_26027229)
Bank of America employees are required to meet all posting eligibility requirements prior to applying for any new position.
Acknowledge (https://ghr.wd1.myworkdayjobs.com/Lateral-US/job/Boston/Privileged-Access---Secrets-Management-Senior-Specialist--CyberArk-and-HashiCorp-Vault-experience-required-_26027229)
Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates' physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Overview:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Position Summary:
This role reports directly to the Technology Executive overseeing Privileged Access Management governance and operations for the bank and will play a key role in advancing enterprise adoption of CyberArk and HashiCorp Vault by establishing scalable operating routines, adoption models, and delivery discipline across the organization. The individual must be highly driven and technically proficient, with the ability to lead strategic and execution-focused initiatives that onboard applications to privileged access and secrets management platforms while ensuring alignment with enterprise security standards.
The successful candidate will serve as a key liaison across security, application development, infrastructure, and API management teams, driving seamless integration of security capabilities into business services. This individual must be comfortable operating at both strategic and technical levels, influencing cross-functional teams, shaping adoption strategies, and establishing scalable execution practices that can support future growth of the function.
Key Responsibilities:
Enterprise Adoption & Execution
Drive adoption of CyberArk and HashiCorp Vault across application portfolios.
Develop onboarding plans, roadmaps, and milestones to accelerate platform adoption.
Coordinate cross-functional delivery across application, infrastructure, security, product, and platform teams.
Track metrics, risks, dependencies, and blockers to ensure execution discipline and measurable progress.
Application Integration & Technical Enablement
Partner with application teams to design and implement vault-aware solutions aligned to security standards.
Provide technical guidance on secrets management, privileged access integration, credential modernization, and secure implementation practices.
Review solution designs and integration patterns to ensure alignment with enterprise standards.
Identify opportunities to simplify adoption through automation, scalable integrations, and repeatable practices.
Stakeholder Engagement & Influence
Build trusted relationships with technology leaders, architects, developers, and business partners.
Communicate status, risks, dependencies, and recommendations to senior stakeholders.
Influence teams to align around enterprise security objectives, adoption priorities, and delivery timelines.
Required Qualifications:
10+ years' experience leading security, IAM, PAM, secrets management, or application security initiatives in a large enterprise environment.
Strong understanding of CyberArk, HashiCorp Vault , privileged access management, secrets management, and application security principles.
Ability to work directly with application development teams and understand modern application architectures, APIs, and integration patterns.
Demonstrated ability to drive complex cross-functional initiatives from planning through execution.
Technical depth to review solution designs, implementation approaches, and alignment with enterprise security standards.
Strong organizational, communication, stakeholder management, and influence skills.
Detail-oriented execution mindset with the ability to establish structure, governance, and delivery discipline.
Preferred Qualifications
Experience with cloud-native architecture, DevSecOps, CI/CD pipelines, and automation.
Knowledge of secure software development lifecycle practices.
Familiarity with identity security, machine identities, and enterprise-scale authentication and authorization patterns.
Experience operating in highly regulated or large enterprise environments.
Shift:
1st shift (United States of America)
Hours Per Week:
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your "Know your Rights (https://www.eeoc.gov/sites/default/files/2023-06/22-088\EEOC\KnowYourRights6.12.pdf) " poster.
View the LA County Fair Chance Ordinance (https://dcba.lacounty.gov/wp-content/uploads/2024/08/FCOE-Official-Notice-Eng-Final-8.30.2024.pdf) .
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Investment products offered through MLPF&S and insurance and annuity products offered through MLLA:
Are Not FDIC Insured Are Not Bank Guaranteed May Lose Value
Are Not Deposits Are Not Insured by Any Federal Government Agency Are not a condition to Any Banking Service or Activity
Merrill Lynch, Pierce, Fenner & Smith Incorporated (also referred to as "MLPF&S" or "Merrill") makes available certain investment products sponsored, managed, distributed or provided by companies that are affiliates of Bank of America Corporation ("BofA Corp."). MLPF&S is a registered broker-dealer, registered investment adviser, Member SIPC and a wholly owned subsidiary of BofA Corp. Insurance and annuity products are offered through Merrill Lynch Life Agency Inc., a licensed insurance agency and wholly owned subsidiary of Bank of America Corporation.
Trust, fiduciary and investment management services are provided by Bank of America, N.A., Member FDIC and wholly owned subsidiary of Bank of America Corporation ("BofA Corp.").
Bank of America Private Bank is a division of Bank of America, N.A.
Banking products are provided by Bank of America, N.A. and affiliated banks, Members FDIC and wholly owned subsidiaries of Bank of America Corporation.
© 2026 Bank of America Corporation. All rights reserved.