RVC
JobsFor Employers
  1. Jobs
  2. /
  3. IAM Security Engineer/ Lead PAM

IAM Security Engineer/ Lead PAM

Strategic Staffing Solutions
1 hour 56 minutes ago
On-site
Contract
Lutz

IAM Security Engineer / Lead – PAM

Position Overview

We are seeking a senior-level IAM Security Engineer / Lead with deep expertise in Identity and Access Management (IAM) and Privileged Access Management (PAM).

This is not a Tier 1/Tier 2 IAM administration or operational support role. The ideal candidate will bring hands-on engineering and configuration experience and will help drive the maturity, modernization, and strategic direction of the organization's IAM and PAM capabilities.

Candidates should have strong experience with CyberArk, Idira EPM, or comparable enterprise PAM technologies, including direct configuration, implementation, integration, and troubleshooting.

Benefits

  • 16 days of PTO
  • 10 paid holidays

Key Responsibilities

  • Lead the design, configuration, implementation, and enhancement of enterprise IAM and PAM solutions.
  • Develop and maintain an IAM security roadmap aligned with business, cybersecurity, and technology objectives.
  • Configure and optimize CyberArk, Idira EPM, or similar PAM platforms to support enterprise privileged-access requirements.
  • Design and implement access-control policies and authorization mechanisms using the principle of least privilege.
  • Develop and enhance identity lifecycle processes for onboarding, offboarding, transfers, and access changes.
  • Design and maintain RBAC, position-based security, access certification, and compliance-monitoring processes.
  • Develop scripts, connectors, integrations, or custom solutions to extend IAM capabilities and automate security processes.
  • Integrate IAM platforms with enterprise applications, directories, authentication platforms, and other security technologies.
  • Implement and support SSO and MFA solutions, including SAML and OpenID Connect integrations.
  • Serve as an IAM subject matter expert supporting audit, compliance, and regulatory requirements.
  • Analyze authorization assignments and Segregation of Duties (SOD) conflicts and partner with audit and compliance teams to remediate violations.
  • Troubleshoot complex IAM, PAM, authentication, authorization, and privileged-access issues.
  • Identify opportunities to improve IAM architecture, processes, controls, automation, and overall security maturity.
  • Collaborate with cybersecurity, HR, application teams, infrastructure teams, business leaders, and other technical and non-technical stakeholders.

Required Qualifications

  • Senior-level experience in Identity and Access Management (IAM) and/or Privileged Access Management (PAM) engineering.
  • Strong hands-on experience configuring, implementing, integrating, and enhancing CyberArk, Idira EPM, or comparable PAM solutions.
  • Advanced knowledge of identity lifecycle management, including onboarding, offboarding, transfers, and access changes.
  • Strong understanding of RBAC, privileged-access controls, least privilege, authorization models, and position-based security.
  • Experience developing scripts, connectors, automation, or custom code to enhance IAM functionality.
  • Experience integrating IAM systems with enterprise applications, directories, and security platforms.
  • Advanced troubleshooting skills involving identity, authentication, authorization, and access-control issues.
  • Experience supporting IAM-related audit, risk, and compliance activities.
  • Knowledge of security and regulatory frameworks such as NERC CIP, SOX, NIST, and PCI.
  • Strong communication and collaboration skills with the ability to work effectively across technical and non-technical teams.

Additional Valuable Experience

  • SAP security and authorization experience, including SAP Portal, Portal Roles, SSO, directory services, and web services.
  • SAP GRC Access Control experience, including authorization analysis and SOD conflict identification and remediation.
  • Active Directory or other LDAP directory services.
  • Scripting or automation involving directory queries and updates.
  • MFA implementation and support.
  • Enterprise SSO implementation and troubleshooting.
  • SAML and OpenID Connect (OIDC).
  • Azure AD / Microsoft Entra ID groups and access management.
  • Reporting-platform security and authorization management.

Required Skills

active_directoryautomationldapscriptingsso

Required Languages

🇬🇧 English

1 jobs
Sort:
1h 56m ago

IAM Security Engineer/ Lead PAM

Strategic Staffing Solutions
🏢On-site
|Lutz
active_directoryautomationldapscripting+1
Roles
PythonJavaReactTypeScriptNode.jsGoRustDevOpsData scienceProductDesign
Remote
United StatesUnited KingdomCanadaGermanyPolandSpainNetherlandsPortugal
Work type
Fully remoteRemote in-countryHybridSeniorMid-levelJuniorAll jobs
R© 2026 ReVacancybuild 3859746d
AboutContactPrivacyCookiesRefundsTerms & ConditionsFor Employers