Senior Privileged Access Management (PAM) Engineer
Remote • Posted 4 hours ago • Updated 4 hours ago

TalentFish LLC
Dice Job Match Score™
👾 Reticulating splines...
Job Details
Skills
- Privileged Access Management (PAM)
- Identity and Access Management (IAM)
- CyberArk
- Delinea
- HashiCorp Vault
- Secrets Management
- Credential Vaulting
- Privileged Session Management (PSM)
- Just-in-Time (JIT)
- Just-Enough-Access (JEA)
- Non-Human Identities (NHI)
- Administrative Tiering
- Least Privilege
- Windows
- Linux
- Active Directory
- Azure AD / Entra ID
- Okta
- AWS
- Azure
- GCP
- PowerShell
- Python
- Bash
- SIEM
- ServiceNow
- SailPoint
- Saviynt
Summary
Title: Senior Privileged Access Management (PAM) Engineer
Location: Remote USA
Position: 6-month Contract to Hire
Overview
TalentFish is casting a line for a Senior PAM Engineer. This is a remote 6-month contract to hire opportunity.
The Senior PAM Engineer will be responsible to support, enhance, and secure the organization's Privileged Access Management platforms, ensuring compliant, least-privileged access for workforce users, vendors, and systems across enterprise and cloud environments. This role plays a critical part in protecting high-risk credentials, reducing attack surface, supporting audits, and enabling secure operational access through modern PAM practices.
What You Bring to the Role (Ideal Experience)
- 8+ years of experience in Identity and Access Management (IAM), including 5+ years of hands-on Privileged Access Management (PAM) engineering experience.
- Strong expertise designing, implementing, administering, and supporting PAM solutions for workforce users and third-party vendors in large enterprise environments.
- Subject matter expert for PAM platform upgrades, migrations, and major re-architecture initiatives.
- Experience recommending and enforcing PAM security standards and configuration baselines.
- Proven experience managing Non-Human Identities (NHI), enforcing administrative tiering models (Tier 0/1/2), and implementing platform hardening.
- Hands-on experience with one or more leading PAM platforms, including CyberArk, Delinea, and/or HashiCorp Vault.
- Strong understanding of privileged access concepts such as credential vaulting and rotation, privileged session management (PSM), Just-in-Time (JIT), Just-Enough-Access (JEA), and break-glass access.
- Experience securing privileged access across Windows and Linux servers, databases, APIs, and cloud platforms (AWS, Azure, Google Cloud Platform).
- Experience integrating PAM platforms with IAM/SSO solutions such as Okta or Entra ID.
- Strong scripting and automation skills using PowerShell, Python, Bash, or JavaScript.
- Knowledge of compliance and security frameworks including SOC 2, ISO 27001, HIPAA, and NIST.
- Experience supporting audits, access reviews, and compliance activities related to privileged access.
- Familiarity with logging, monitoring, SIEM integrations, and platform health reporting.
Preferred Qualifications
- Vendor-specific PAM certifications (CyberArk, Delinea, HashiCorp).
- Experience with Zero Trust security architectures.
- Experience with cloud-native PAM and secrets management.
- Healthcare industry experience preferred.
- Experience integrating PAM with ITSM tools such as ServiceNow.
- Exposure to Identity Governance and Administration (IGA) tools including SailPoint or Saviynt.
What You'll Do (Skills Used in This Position)
- Design, implement, and support enterprise PAM solutions across on-prem and cloud environments.
- Maintain and enhance PAM platforms to ensure secure, reliable, and compliant privileged access.
- Develop PAM onboarding playbooks for new systems and applications.
- Implement credential vaulting, rotation, session monitoring, and emergency access controls.
- Enforce least-privilege access and administrative tiering models to reduce organizational risk.
- Perform platform upgrades, migrations, and architecture improvements.
- Monitor platform health, build KPI dashboards, and troubleshoot access or session issues.
- Integrate PAM with IAM, SSO, ITSM, logging, and SIEM platforms.
- Support audits, access reviews, and compliance initiatives.
- Collaborate with security, infrastructure, cloud, and application teams.
- Mentor junior engineers and lead PAM design and architecture discussions.
Compensation and Employment
This role requires authorization to work in the U.S. without current or future visa sponsorship. The expected hourly rate for this position is $70-$82 per hour depending on experience and qualifications. This role also qualifies comprehensive benefits such as health insurance, 401(k), and paid time off. TalentFish is committed to pay transparency and equal opportunity. The salary range provided is in compliance with applicable state and federal regulations. All offers are contingent upon the completion of a background check, which may include but is not limited to reference checks, education verification, employment verification, drug testing, criminal records checks, and any required certifications or compliance requirements based on the end client's policies and applicable laws.
TalentFish is an employee-owned company pioneering a new realm in talent acquisition. We are redefining IT staffing by evolving AI, video screening, and our unique platform. TalentFish focuses on delivering the best possible experience for employees, consultants, and clients. TalentFish is an Equal Opportunity Employer we embrace and encourage diversity.
- Dice Id: 91130241
- Position Id: 8864527
- Posted 4 hours ago
Company Info
What is TalentFish?
Sourcing from decades of combined experience; our employee-owned company is positioning itself to be the next generation of Technology staffing companies. We provide high quality technology talent, consulting and products with a focus on AI, CyberSecurity, Digital and Project Management. TalentFish is built from the ground up as a cloud-based, video-enabled, AI-driven agency. Our aim is to seek out and connect better talent with better opportunities, faster, by employing high quality and more experienced professionals, using sophisticated tools, while also developing our own bleeding-edge tools that will advance the staffing industry to a new level of interaction and results-driven success.
Why TalentFish?
TalentFish is redefining the definition of an IT staffing agency. We are evolving a white label AI Bot that will be able to source, engage and screen technical candidates at lightning speed, providing a direct pipeline of vetted and AI matched candidates to your business. By performing technical video screening of candidates and leveraging both AI and human intelligence. We save our client precious time and ensure quality.
TalentFish is employee owned. When you work with one of our team members, you are working with an owner. We only hire the best of the best because each and every one of us is deeply invested and holds one another accountable. We are obsessed with quality and service, and aim to advance the employee and client experience. Our goal is to increase quality talent delivery and improve the staffing experience, processes and technology overall.
Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs

