PIM/PAM Engineer
Listed on 2026-06-12
-
IT/Tech
Cybersecurity, Systems Engineer, IT Support
Capgemini Government Solutions (CGS) LLC is seeking a PIM/PAM Engineer to support mission?critical government clients. The ideal candidate will collaborate with a high?performing team, engage with a broad range of stakeholders, and play a key role in expanding CGS capabilities while continuing to grow their technical and consulting expertise.
The PIM/PAM Engineer is responsible forthe architecture, design, implementation, and administration of enterprise-level Privileged Identity Management (PIM) and Privileged Access Management (PAM) solutions. Thisrole ensures the secure management of privileged identities within the framework by maintaining a hardened appliance posture and enforcing the Principle of Least Privilege across the enterprise. The ideal candidate is a technical specialist who understands that identity is the new perimeter.
You will act as the primary administrator for our PAM vaulting solutions, working closely with Infrastructure, Dev Ops, and Security Operations teams to integrate vaulting into every layer of our tech stack.
Key Responsibilities :
- Design, deploy, configure, andmaintainrobust PIM/PAM solutions across enterprise, cloud, and hybrid environments.
- Manage the lifecycle of privileged accounts, including automated vaulting, password rotation, privileged session management, and just-in-time (JIT) access.
- Integrate PIM/PAM tools with broader identity ecosystems (IdPs, IGA, SIEM, and ticketing systems like Service Now) using APIs and custom scripting.
- Define, implement, and enforce least-privilege access policies, role-based access control (RBAC), and attribute-based access control (ABAC).
- Conduct regular discovery audits toidentifyunmanaged privileged accounts, service accounts, and secrets, bringing them under centralized management.
- Provide tier-3 technical support for complex identity infrastructure issues, system upgrades, patches, and disaster recovery drills.
- Support continuous monitoring and audit readiness by generating compliance reports and ensuring adherence to federal and DoD security frameworks.
- Deep understanding of session recording, credential vaulting,secrets management, and delegation of authority.
- Strong foundational knowledge of Windows Active Directory, Linux/Unix administration, Group Policy Objects (GPOs), and basic networking protocols.
- Proficiency in scripting languages (e.g., Power Shell, Python, Bash) for automation and API integrations.
Required Qualifications:
- Ability to obtain and maintain a DoD Secret Clearance. U.S. Citizenship is required.
- Bachelor?s degree in computer science, Information Technology, Cybersecurity, or a related technical field is required.
- 6+of progressive
IT experiencerequiredwith 2-3+ years of dedicated experience in Identity and Access Management (IAM), with a strong focus on PIM/PAM engineeringhighly-desired.
- CompTIA Security+ CE (Current) is highly desired, must be able to obtain within 3 months of hire.
About Capgemini
Capgemini is a global leader in partnering with companies to transform and manage their business by harnessing the power of technology. The Group is guided everyday by its purpose of unleashing human energy through technology for an inclusive and sustainable future. It is a responsible and diverse organization of over 360,000 team members in more than 50 countries. With its strong 55-year heritage and deep industry expertise, Capgemini is trusted by its clients to address the entire breadth of their business needs, from strategy and design to operations, fueled by the fast evolving and innovative world of cloud, data, AI, connectivity, software, digital engineering and platforms.
The Group reported in 2022 global revenues of ?22 billion.
Get The Future You Want | ;/p>
Disclaimer
All qualified applicants will be considered for employment based on their skills, and merit.
Please be aware that Capgemini may capture your image (video or screenshot) during the interview process and that image may be used for verification, including during the hiring and onboarding process.
Applicants for employment in the US must have valid work authorization that does not now and/or will not in the future require sponsorship of a visa for…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).