The posting
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Information Systems Engineer PAM based in United States.
This is a fully remote role focused on strengthening privileged access security across a complex hybrid cloud environment. You will serve as the primary Privileged Access Management specialist within a Core Services and Security team. The role combines PAM engineering, privileged account governance, monitoring, automation, and security controls. You will work across Microsoft Active Directory, Microsoft Entra ID, Azure, AWS, and enterprise identity services. Your work will support major initiatives including acquisitions, divestitures, consolidation, compliance, and operational improvements. You will collaborate closely with Security, Risk, Compliance, and technology stakeholders to improve access security and colleague experience. This is an opportunity to shape secure, scalable identity infrastructure while contributing to a highly regulated enterprise environment
Accountabilities
- Engineer, implement, administer, and continuously improve enterprise Privileged Access Management (PAM) and Privileged Session Management (PSM) solutions.
- Manage privileged account onboarding, credential vaulting, account lifecycle processes, and privileged access workflows.
- Implement least-privilege and just-in-time access methodologies to strengthen privileged access governance.
- Monitor privileged activity through session recording, auditing, analytics, and other security controls.
- Support investigations involving privileged credentials, elevated access, and security incidents.
- Partner with key stakeholders to identify improvements that enhance colleague experience and strengthen identity and access controls.
- Maintain security requirements, compliance controls, risk reviews, documentation, and related objectives.
- Support operational initiatives, incident management, and problem management in a timely and effective manner.
- Participate in integration initiatives for acquisitions, consolidation projects, and divestitures involving Active Directory and Azure environments.
- Collaborate with Security, Risk, and Compliance teams to address audit requirements and regulatory obligations.
- Support identity and access management services across Active Directory, Azure, AWS, Microsoft 365, Exchange, Teams, SharePoint, OneDrive, DNS, and related enterprise platforms.
- Bachelor’s degree in Computer Science, Business, or another applicable discipline, or equivalent professional experience.
- 10+ years of progressive professional experience in Identity and Access Management.
- 10+ years of experience working with IAM solutions, including PAM, Identity Lifecycle Management, and Identity Governance and Management.
- 10+ years of experience with Microsoft Active Directory and Microsoft Entra ID.
- 8+ years of experience with DDI, networking, firewall, server, and cloud technologies.
- 5+ years of hands-on Windows PowerShell experience, including the ability to develop scripts and automation as needed.
- Experience working within complex enterprise environments with diverse authentication and authorization requirements.
- Strong knowledge of IAM technologies including Active Directory, VDS, SSO, SAML, OAuth, OpenID, MFA, and PAM.
- Experience with identity lifecycle and governance platforms such as MIM, SailPoint, Saviynt, or ForgeRock.
- Knowledge of cloud identity technologies across Microsoft Azure, Amazon AWS, and Google Cloud.
- Experience administering Microsoft Exchange, Microsoft 365, SharePoint, Teams, and OneDrive.
- Automation experience using PowerShell, Perl, Python, .NET, or similar development technologies.
- Experience supporting Windows Server and Linux Server environments, including AuthX support.
- Experience with mergers and acquisitions involving Active Directory and Azure environments.
- Experience working in GxP or other regulated environments, with strong systems management and compliance documentation skills.
- Experience implementing and administering PAM platforms such as CyberArk, BeyondTrust, Delinea, ARCON, or similar solutions is preferred.
- Hands-on experience with privileged session monitoring, recording, auditing, credential vaulting, and privileged account lifecycle management is preferred.
- Knowledge of just-in-time access, least-privilege administration, Zero Trust security principles, and privileged access governance is preferred.
- Expected base salary of $81,000–$110,000 annually, depending on geographic market, skills, experience, education, and other factors.
- Fully remote position available anywhere in the United States.
- Medical, dental, and vision coverage.
- Health Savings Account and Flexible Spending Account options.
- Life and AD&D insurance.
- 401(k) retirement plan.
- Tuition reimbursement.
- Additional resources and programs supporting long-term health and well-being.
- Opportunity to work on enterprise-scale identity, PAM, hybrid cloud, and security initiatives.
- Exposure to complex security, compliance, acquisition, consolidation, and divestiture projects.
How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1



