Lead Privileged Access Management Engineer
Job in
Coppell, Dallas County, Texas, 75019, USA
Listed on 2026-04-18
Listing for:
DTCC
Full Time
position Listed on 2026-04-18
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer, Data Security, Cloud Computing
Job Description & How to Apply Below
Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.
The Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-quality information through activities that include development of essential, building infrastructure capabilities to meet client needs and implementing data standards and governance.
Pay and Benefits:
- Competitive compensation, including base pay and annual incentive
- Comprehensive health and life insurance and well-being benefits, based on location
- Pension / Retirement benefits
- Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
- DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
Being a Senior / Lead Engineer within the CISO organization, you will serve as a technical authority for DTCC's Privileged Access Management (PAM) platforms. You will design, build, and operate highly available, secure PAM services across hybrid environments, ensuring privileged access is controlled, observable, and resilient.
This role plays a critical part in advancing Zero Trust principles by embedding PAM into infrastructure, cloud, and application workflows. You will lead by example-owning production outcomes, driving automation, and ensuring the platform is observable, auditable, and operationally sound.
Your Primary Responsibilities:
- Design and evolve PAM platform architecture with a focus on scalability, resilience (HA/DR), and security-by-design.
- Drive platform maturity:
Implement sophisticated capabilities (JIT access, session recording, credential vaulting, API integrations) and standardize onboarding of new systems. - Implement and maintain end-to-end observability for PAM platforms using monitoring, logging, and alerting tools (e.g., Splunk, Prometheus, Grafana, or equivalent).
- Governance & compliance:
Establish policies for privileged account lifecycle, enforce password complexity and rotation, and ensure audit readiness for SOX, PCI, and internal controls. - Automation & integration:
Embed PAM into CI/CD pipelines and workflows; develop scripts and connectors for automated provisioning and session management. - Operational excellence:
Monitor PAM performance, lead incident response for privileged access breaches, and conduct root-cause analysis and remediation. - Stakeholder engagement:
Communicate platform health, roadmap, and risk posture to senior leadership; manage vendor relationships and licensing. - Act as a mentor for other engineers-reviewing designs, code, and operational practices.
- Disaster recovery readiness:
Participate in DR exercises and ensure PAM resilience in loss-of-region scenarios.
*
* NOTE:
The Primary Responsibilities of this role are not limited to the details above. **
Qualifications:
- Minimum of 6 years of related experience
- Bachelor's degree preferred and/or equivalent experience
- 6+ years in security/platform engineering or IAM
- Solid understanding of privileged account lifecycle, credential vaulting, and session management.
- Expertise in automation (Jenkins, Python, Groovy or equivalent) and integration with CI/CD a.
- Familiarity with Windows, Unix/Linux, Active Directory, and hybrid cloud environments.
- Understanding of regulatory compliance and audit processes in financial or highly regulated industries.
- Experience implementing and managing Bravura PAM or similar enterprise PAM solutions (e.g. Cyber Ark).
- Experience with Zero Trust architectures, API-based…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×