PAM Engineer

The Trust
Kintbury, United Kingdom
24 days ago

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English

Job location

Kintbury, United Kingdom

Tech stack

Microsoft Active Directory
Amazon Web Services (AWS)
User Authentication
Azure
Cloud Computing
Continuous Integration
DevOps
Identity and Access Management
Python
Lightweight Directory Access Protocols (LDAP)
Powershell
Security Information and Event Management
Google Cloud Platform
Cyberark
Sentry
Devsecops

Job description

We're seeking an experienced PAM Engineer to join a high-security environment. This role involves designing, implementing, and maintaining enterprise-grade PAM solutions to protect critical systems and identities. Please note: Active SC Clearance is essential. This position requires additional vetting, which may extend the onboarding timeline. Key ResponsibilitiesDesign, deploy, and manage PAM solutions (e.g. CyberArk, BeyondTrust, Delinea).Configure and administer PAM tools to enforce least privilege and secure credential management.Integrate PAM systems with SIEM, IAM, and other security platforms.Monitor, audit, and analyse privileged access activities.Develop and maintain PAM-related policies, documentation, and operational processes.Conduct access reviews, privilege audits, and risk assessments.Collaborate closely with IT, DevOps, and Security teams to ensure seamless implementation.Provide technical troubleshooting and support for PAM issues.Stay up to date with evolving security standards and PAM best practices.

Requirements

Required Skills & ExperienceProven hands-on experience in PAM engineering (installation, configuration, and administration).CyberArk certification (minimum: Defender, Sentry, or CPC).Strong understanding of Active Directory, LDAP, and authentication protocols.Scripting experience (PowerShell, Python) for automation and reporting.Familiarity with compliance and regulatory frameworks (ISO 27001, NIST, GDPR).Excellent analytical, communication, and documentation skills. Preferred QualificationsCertifications such as CISSP, CISM, or CyberArk CDE.Experience with cloud platforms (AWS, Azure, GCP) and hybrid infrastructures.Exposure to DevSecOps practices and CI/CD pipeline integration.

Apply for this position