PAM Engineer
Job in
Washington, District of Columbia, 20022, USA
Listed on 2026-08-29
Listing for:
RedMatter Solutions
Full Time
position Listed on 2026-08-29
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
Description
We're hiring a PAM Engineer to lead privileged access management across our enterprise. You'll administer our PAM platform, enforce least-privilege and JIT access, integrate with Entra Active Directory, and support the compliance and ATO requirements that come with federal work.
Key Responsibilities- Lead the design, implementation, and ongoing management of PAM solutions—ensuring security, scalability, and operational efficiency across hybrid environments
- Deploy and administer enterprise PAM platforms (Keeper, Cyber Ark, or Delinea) across on-premises and cloud environments
- Manage and secure privileged accounts—service accounts, admin accounts, and shared credentials—through vaulting, rotation, and session monitoring
- Develop and enforce least-privilege access policies and Just-In-Time (JIT) access workflows across the enterprise
- Design, implement, and operate privileged session management (PSM) and privileged threat analytics capabilities
- Establish and maintain emergency "break-glass" privileged access procedures
- Integrate PAM solutions with Entra , Active Directory, and other identity providers to enable centralized privileged access governance
- Develop automation scripts and workflows using Power Shell or Python to streamline PAM operations and account lifecycle management
- Perform regular access certifications, entitlement reviews, and audit reporting to support compliance requirements
- Collaborate with security operations teams to monitor privileged account activity and respond to anomalous behavior
- Translate stakeholder requirements into actionable PAM processes and technical configurations
- Enforce strong authentication methods such as certificate-based or FIDO2 wherever possible
- 5+ years of experience in identity and access management, with at least 3 years focused on privileged access management
- Hands-on experience administering an enterprise PAM platform (Cyber Ark, Delinea, Keeper, or equivalent)
- Strong understanding of least-privilege principles, Zero Trust architecture, and privileged access best practices
- Experience integrating PAM solutions with Entra , Active Directory, and SIEM platforms (e.g., Sentinel, Splunk)
- Proficiency in Power Shell or Python for automation and PAM task management
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field—
or equivalent hands‑on experience - Ability to obtain a Public Trust clearance
- U.S. citizenship (required for federal contract)
- Direct experience with Keeper (our platform)
- Familiarity with NIST SP 800-53, FISMA, and federal identity guidelines as they relate to privileged access
- Knowledge of federal compliance frameworks including FedRAMP and applicable CISA guidance
- Experience supporting ATO processes and documenting PAM controls within System Security Plans (SSPs)
- Experience in cloud/Gov Cloud environments (Azure, AWS)
- Relevant certifications (e.g., CISSP, Security+, Cyber Ark Defender/Sentry)
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×