Roche

Healthcare

CybersecurityAnalyst-PrivilegedAccessManagement

$105–165k ~AI est. Malaysia FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid+ candidates.

The Brief

“Cybersecurity Analyst - Privileged Access Management at Roche. Skills: Privileged Access Management, HashiCorp Vault, PKI. Drive HashiCorp Vault platform delivery. Upgrade privileged access controls”

Industry & Context.

Healthcare
Problems you'll solve

Advanced troubleshooting

What They're Looking For.

Must Have

3–5 years of hands-on experience in cybersecurity or identity and access management, Bachelor's Degree in Computer Science, Engineering, or related discipline or equivalent experience

Nice to Have

Vault Agent or Kubernetes sidecar injection experience is a plus, Familiarity with ACME-based automation for internal certificate issuance is advantageous, Working knowledge of CyberArk alongside HashiCorp Vault is an advantage, Familiarity with ITIL principles is a plus

What You'll Do.

Drive HashiCorp Vault platform delivery

Upgrade privileged access controls

Automate privileged access controls

Design automation scripts

Deploy automation scripts

Streamline Vault operations

Build self-service portals

Embed DevSecOps principles

Integrate secrets management

Integrate IaC toolchains

Monitor PKI infrastructure

Maintain PKI infrastructure

Evolve PKI infrastructure

Manage certificate lifecycle

Implement certificate automation standards

Integrate PKI workflows

Secure containerised environments

Act as Tier 3 escalation point

Provide advanced troubleshooting

Provide architectural direction

How You'll Work.

Team & Collaboration

Partner with product owners; Partner with application teams; Global security team

Communication Scope

Explain complex security concepts

Process & Methodology

ITIL principles

Full Job Description

At Roche you can show up as yourself, embraced for the unique qualities you bring. Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally. This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come. Join Roche, where every voice matters. ### ### The Position In a world where every application, pipeline, and cloud workload depends on secure access, the people who build and manage that trust layer are critical. At Roche, our Enterprise Privileged Access Management team is responsible for exactly that — ensuring the right systems and people have the right access, at the right time, with the right controls in place. If you enjoy working on platforms that matter, thrive in a complex global environment, and want to deepen your expertise in one of the most in-demand areas of enterprise security — this is the role for you. # Your Opportunity As a Cybersecurity Analyst specialising in PAM, HashiCorp Vault, and PKI, you will be a core member of a global security team working at the intersection of platform engineering and cybersecurity. You will own meaningful workstreams, partner with product owners and application teams, and serve as the Tier 3 expert when complex PAM and Vault issues need to be resolved. This is not a monitoring-and-ticket role — you will be expected to design, build, and continuously improve. In this role, you will: * Drive HashiCorp Vault platform delivery in partnership with the product owner — leading initiatives to upgrade and automate privileged access controls across the enterprise * Design and deploy automation scripts and integrations (PowerShell, Python, Ansible) to streamline Vault operations and reduce manual effort * Build self-service portals and APIs that make secret usage effortless for application teams, embedding DevSec

Free ATS check

Applying for this Cybersecurity Analyst - Privileged Access Management role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Roche?

Real rants from real employees. Read before you apply.

Read Company Rants →