Privileged Access Management (PAM) Engineer

VeriSign
Reston, VA, United States
about 1 month ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$135,800.0 - $183,800.0
Working hours
Regular working hours
Job source

Tech stack

User Authentication Automation of Tests Cloud Computing Cyber Security System Configuration Identity and Access Management Python (Programming Language) Windows PowerShell Role-Based Access Control Azure Active Directory Zero Trust Network Access Session Management
+4 more
Enterprise Software Applications Information Technology Restful APIs Network Server

Job description

  • Design, implement, configure, administer, and maintain enterprise PAM solutions, in BeyondTrust
  • Administer and enhance Microsoft Entra ID, including enterprise applications, authentication, Conditional Access, role-based access control (RBAC), Privileged Identity Management (PIM), MFA, and SSO
  • Onboard applications, privileged accounts, service accounts, and other identities into PAM platforms
  • Configure and maintain privileged account policies, credential management, password rotation, session management, and access controls
  • Integrate PAM solutions with enterprise applications, directories, identity platforms, and infrastructure
  • Engineer and support integrations across PAM, IAM, IGA, MFA, and SSO technologies
  • Develop scripts and automation to streamline account onboarding, provisioning, testing, monitoring, and other identity-related processes
  • Implement automated testing and validation where appropriate to improve reliability and deployment efficiency
  • Support privileged access reviews, access certifications, and remediation activities to meet security, audit, and compliance requirements
  • Partner with security architects and engineering teams to develop technical designs and implement security controls based on least privilege and Zero Trust principles
  • Evaluate new PAM and identity technologies and recommend improvements that strengthen security and operational efficiency
  • Develop and maintain technical documentation, including system configurations, architecture diagrams, integration designs, operational procedures, and troubleshooting guides
  • Participate throughout the solution lifecycle, including design, development, testing, deployment, production support, upgrades, and ongoing maintenance

Requirements

The ideal candidate has deep experience with enterprise PAM technologies such as BeyondTrust, strong Microsoft Entra ID expertise, and a solid understanding of IAM, identity governance, authentication, and access security. This individual will partner with security, infrastructure, application, and architecture teams to deliver secure, scalable, and reliable identity solutions., * Bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field, or equivalent experience

  • 8+ years of experience in PAM, IAM, identity security, security engineering, or related technologies
  • 2+ years of hands-on experience implementing and administering enterprise PAM platforms in BeyondTrust
  • Experience administering Microsoft Entra ID in an enterprise environment
  • Experience with Entra ID capabilities including Conditional Access, RBAC, PIM, MFA, SSO, enterprise applications, and identity/access management
  • Strong understanding of PAM concepts, including privileged account management, credential vaulting, password rotation, session management, least privilege, and privileged access controls
  • Experience integrating PAM solutions with directories, applications, servers, cloud platforms, and other enterprise technologies
  • Experience with scripting and automation using technologies such as PowerShell, Python, REST APIs, or similar tools
  • Strong understanding of authentication, authorization, identity lifecycle management, and security best practices
  • Experience supporting audit and compliance requirements, including Sarbanes-Oxley (SOX) controls, preferably in a high-tech environment

Benefits & conditions

The pay range is $135,800 - $183,800.

The anticipated annual base salary range for this position is noted above, however, base pay offered may vary depending on job-related knowledge, skills, experience. Verisign offers a discretionary bonus which is based on individual and company performance, and certain roles may be eligible for discretionary stock awards.

Verisign is an equal opportunity employer. That means we recruit, hire, compensate, train, promote, transfer, and administer all terms and conditions of employment without regard to their race, color, religion, national origin, sex, sexual orientation, gender identity, age, protected veteran status, disability, or other protected categories under applicable law.

About the company

Verisign helps enable the security, stability, and resiliency of the internet. We are a trusted provider of internet infrastructure services for the networked world and deliver unmatched performance in domain name system (DNS) services.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Loading talks and stories from around this role…