Senior Engineer – Privileged Access Management

🕒 June 10

🇺🇸 United States – Remote

💵 $150k - $170k / year

⏰ Full Time

🟠 Senior

🧑‍💻 Full-stack Engineer

👻 Ghost score 12%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of AHEAD

AHEAD

1001 - 5000 employees

💼 Consulting

🤖 Artificial Intelligence

🏢 Enterprise

💰 $5.7M Venture Round - AHEAD on 2024-05

Consulting • Artificial Intelligence • Enterprise

AHEAD is a technology consulting and systems-integration firm that accelerates digital transformation by engineering integrated solutions across infrastructure, applications, data, and security. The company specializes in AI transformation and AI-enabled infrastructure, data platform and platform/workload modernization, secure and resilient architectures, operational excellence, and managed services including IT lifecycle and procurement (AHEAD Hatch) and hardware integration (AHEAD Foundry). AHEAD delivers end-to-end services from strategy and financial consulting to build and run operations, partners with major cloud and infrastructure vendors (AWS, Google Cloud, Microsoft, Cisco, Dell, VMware, NVIDIA, ServiceNow, Palo Alto Networks, Rubrik, etc. ), and serves enterprise clients across industries such as healthcare, financial services, manufacturing, retail, and public sector.

📋 Description

• Lead architecture and design of multi-tenant BeyondTrust PAM services for MSP customers, including onboarding of new tenants and standardization of service offerings. • Architect secure privileged access workflows for infrastructure, applications, databases, cloud platforms, and network devices, aligned to least-privilege principles and regulatory requirements. • Implement and maintain BeyondTrust Password Safe and related components, including: • Discovery and onboarding of privileged accounts and systems • Password rotation policies and check-in/check-out workflows • Session brokering, recording, and real-time monitoring • Approval workflows and just-in-time (JIT) access • Implement and maintain BeyondTrust Privilege Management for endpoints and servers (Windows and Linux/Unix), including policy design, deployment, and tuning to minimize user/admin friction while enforcing least privilege. • Design and maintain highly available and secure BeyondTrust infrastructure, including clustering, scaling, upgrades, patching, and disaster recovery strategies across customer environments. • Integrate PAM with identity and security platforms, including: • Active Directory / Entra ID / LDAP and other directories for authentication and group-based access • MFA/SSO platforms using SAML/OIDC/OAuth2 • SIEM and logging platforms for monitoring and alerting on privileged activity • ServiceNow and other ITSM tools for request, approval, and ticket correlation workflows • Develop and maintain automation and tooling (e.g., PowerShell, Python, REST APIs) to: • Accelerate onboarding and lifecycle management of privileged accounts and systems • Enforce configuration standards and policies at scale • Generate reports and dashboards for compliance and operational KPIs • Lead end-to-end customer onboarding to the PAM service, including: • Requirements gathering, use case definition, and risk assessment • Designing onboarding playbooks and standard reference architectures • Coordinating with internal and customer teams to implement and validate PAM controls • Define and maintain standardized PAM policies and baselines across customer environments, including credential management, access approval patterns, session monitoring, and privileged elevation rules. • Conduct security and risk assessments of existing privileged access practices, recommend remediation plans, and track execution to closure. • Serve as subject matter expert and escalation point for PAM-related incidents and service requests, including troubleshooting BeyondTrust platform issues and complex access problems. • Collaborate with security, infrastructure, network, and application teams (internal and customer) to ensure PAM controls are aligned with broader security architecture and operational requirements. • Develop and maintain comprehensive documentation, including: • Platform architectures and configuration standards • Customer-specific runbooks and operational procedures • Onboarding and migration playbooks • Knowledge base articles and FAQs for internal and customer use • Provide mentoring and guidance to team members on PAM concepts, BeyondTrust best practices, and secure operations in a managed services context. • Communicate with customers and internal stakeholders with transparency, providing regular status updates, risk/issue visibility, and technical recommendations. • Complete training and certification as assigned to further skills and knowledge, including PAM and BeyondTrust-specific certifications where applicable. • *Other job duties as assigned

🎯 Requirements

• Minimum Required – A college degree or equivalent in Information Systems, Computer Science, Cybersecurity, or a related field. Unique education, specialized experience, skills, knowledge, training, or certification may be substituted for formal education. • Minimum of 7 years of related experience in IT operations, infrastructure engineering, or cybersecurity, with significant hands-on responsibility for privileged access controls in enterprise environments. • 3+ years of direct experience designing, implementing, and operating PAM solutions (BeyondTrust strongly preferred; experience with platforms such as CyberArk or Delinea is a plus). • Experience delivering services in a managed services or consulting capacity, including direct customer engagement and multi-tenant or multi-customer environments. • Demonstrated experience leading technical initiatives, driving cross-functional projects, and mentoring junior team members. • Experience working with regulated or compliance-driven environments (e.g., SOX, PCI DSS, HIPAA, ISO 27001) and supporting audit and evidence collection for privileged access controls.

🏖️ Benefits

• Medical, Dental, and Vision Insurance • 401(k) • Paid company holidays • Paid time off • Paid parental and caregiver leave • Plus more! See benefits https://www.aheadbenefits.com/ for additional details.

Apply Now

Similar Jobs

🕒 June 10

Circle

501 - 1000

💳 Fintech

₿ Crypto

🌐 Web 3

Senior Software Engineer developing and maintaining blockchain systems infrastructure for Circle, a leading digital financial platform. Responsible for building scalable microservices and enhancing payment system integrations.

🕒 June 10

Samsara

1001 - 5000

📦 Logistics

🏗️ Construction

🏥 Healthcare

Senior infrastructure engineer building resilient AWS platforms for Samsara’s Connected Operations IoT cloud. Improving scalability, safety, automation, and cost efficiency across critical production systems.

🕒 June 10

Samsara

1001 - 5000

📦 Logistics

🏗️ Construction

🏥 Healthcare

Senior Infrastructure Engineer building resilient AWS platforms for Samsara’s IoT operations cloud. Reducing production risk through infrastructure automation, scalability, recovery, and multi-region architecture.

🕒 June 10

Pragmatike

11 - 50

💼 Consulting

📣 Marketing

🎯 Recruiter

Backend Software Engineer designing and implementing scalable backend systems for a fast-growing technology company. Opportunity to tackle complex problems in a high-ownership engineering culture.

🕒 June 10

Virtuous

51 - 200

💼 Consulting

📣 Marketing

🤝 Non-profit

Senior Software Engineer (Full Stack) building scalable web applications for nonprofits. Collaborating with cross-functional teams to drive key features and ensure platform performance.