Roche
Healthcare
CybersecurityAnalyst-PrivilegedAccessManagement
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Cybersecurity Analyst - Privileged Access Management at Roche. Skills: Privileged Access Management, HashiCorp Vault, PKI. Drive HashiCorp Vault platform delivery. Upgrade privileged access controls”
Industry & Context.
Advanced troubleshooting
What They're Looking For.
Must Have
3–5 years of hands-on experience in cybersecurity or identity and access management, Bachelor's Degree in Computer Science, Engineering, or related discipline or equivalent experience
Nice to Have
Vault Agent or Kubernetes sidecar injection experience is a plus, Familiarity with ACME-based automation for internal certificate issuance is advantageous, Working knowledge of CyberArk alongside HashiCorp Vault is an advantage, Familiarity with ITIL principles is a plus
What You'll Do.
Drive HashiCorp Vault platform delivery
Upgrade privileged access controls
Automate privileged access controls
Design automation scripts
Deploy automation scripts
Streamline Vault operations
Build self-service portals
Embed DevSecOps principles
Integrate secrets management
Integrate IaC toolchains
Monitor PKI infrastructure
Maintain PKI infrastructure
Evolve PKI infrastructure
Manage certificate lifecycle
Implement certificate automation standards
Integrate PKI workflows
Secure containerised environments
Act as Tier 3 escalation point
Provide advanced troubleshooting
Provide architectural direction
How You'll Work.
Team & Collaboration
Partner with product owners; Partner with application teams; Global security team
Communication Scope
Explain complex security concepts
Process & Methodology
ITIL principles
Full Job Description
At Roche you can show up as yourself, embraced for the unique qualities you bring. Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally. This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come. Join Roche, where every voice matters. ### ### The Position In a world where every application, pipeline, and cloud workload depends on secure access, the people who build and manage that trust layer are critical. At Roche, our Enterprise Privileged Access Management team is responsible for exactly that — ensuring the right systems and people have the right access, at the right time, with the right controls in place. If you enjoy working on platforms that matter, thrive in a complex global environment, and want to deepen your expertise in one of the most in-demand areas of enterprise security — this is the role for you. # Your Opportunity As a Cybersecurity Analyst specialising in PAM, HashiCorp Vault, and PKI, you will be a core member of a global security team working at the intersection of platform engineering and cybersecurity. You will own meaningful workstreams, partner with product owners and application teams, and serve as the Tier 3 expert when complex PAM and Vault issues need to be resolved. This is not a monitoring-and-ticket role — you will be expected to design, build, and continuously improve. In this role, you will: * Drive HashiCorp Vault platform delivery in partnership with the product owner — leading initiatives to upgrade and automate privileged access controls across the enterprise * Design and deploy automation scripts and integrations (PowerShell, Python, Ansible) to streamline Vault operations and reduce manual effort * Build self-service portals and APIs that make secret usage effortless for application teams, embedding DevSec
Applying for this Cybersecurity Analyst - Privileged Access Management role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Roche?
Real rants from real employees. Read before you apply.