Overview
On Site
Full Time
Skills
EXT
Password Management
Cyber Security
Innovation
Leadership
Identity Management
Optimization
Directory Services
Technical Support
Performance Tuning
Onboarding
Regulatory Compliance
PCI DSS
Auditing
Documentation
Technical Writing
Training
Continuous Improvement
Operational Efficiency
Microsoft Windows Server Administration
Active Directory
Group Policy
Linux
Unix Administration
Shell Scripting
Computer Networking
Load Balancing
Hardening
Docker
Kubernetes
SAML
OIDC
OAuth
LDAP
DevOps
Continuous Integration
Continuous Delivery
Terraform
Ansible
IT Service Management
ServiceNow
JIRA
Workflow
SIEM
Splunk
IBM QRadar
Management
Amazon Web Services
Microsoft Azure
Retail
CISSP
CISM
Cloud Security
Operating Systems
Microsoft Windows Server
Microsoft Operating Systems
Microsoft Windows
OS X
Red Hat Enterprise Linux
Ubuntu
SUSE Linux
Database
Microsoft SQL Server
MySQL
PostgreSQL
Oracle
Virtualization
VMware vSphere
Hyper-V
Cloud Computing
Virtual Machines
Scripting
Windows PowerShell
Bash
Python
Job Details
Privileged Access Management (PAM) Platform Engineer
Seattle, WA
6+ Months (Possible Ext.)
Job Description:-
As a PAM Platform Engineer on Nordstrom's Identity & Access Management team, you'll be a key technical specialist responsible for designing, implementing, and maintaining our enterprise-wide Privileged Access Management infrastructure using BeyondTrust.
You'll lead the rollout of BeyondTrust and support ongoing management of our privileged access solutions, including password management, endpoint privilege management, and session management capabilities across our retail technology ecosystem.
Join our cybersecurity team to drive enterprise-level PAM adoption while maintaining Nordstrom's commitment to innovation, security excellence, and work-life balance.
A day in the life...
You own this if you have...
Required Qualifications:
Preferred Qualifications:
Technical Skills:
#TB_EN
Seattle, WA
6+ Months (Possible Ext.)
Job Description:-
As a PAM Platform Engineer on Nordstrom's Identity & Access Management team, you'll be a key technical specialist responsible for designing, implementing, and maintaining our enterprise-wide Privileged Access Management infrastructure using BeyondTrust.
You'll lead the rollout of BeyondTrust and support ongoing management of our privileged access solutions, including password management, endpoint privilege management, and session management capabilities across our retail technology ecosystem.
Join our cybersecurity team to drive enterprise-level PAM adoption while maintaining Nordstrom's commitment to innovation, security excellence, and work-life balance.
A day in the life...
- PAM Platform Leadership: Serve as the primary technical expert for privileged access management solutions, including architecture, deployment, configuration, and optimization of password vaults and endpoint privilege management systems
- Enterprise PAM Implementation: Design and execute large-scale PAM deployments across Windows, macOS, and Linux environments, ensuring seamless integration with existing infrastructure
- Policy Development & Management: Create and maintain privilege elevation policies, credential rotation schedules, access request workflows, and governance rules aligned with security and compliance requirements
- Integration & Automation: Integrate PAM solutions with ITSM platforms, SIEM tools, vulnerability scanners, directory services, and other security infrastructure to create comprehensive privileged access workflows
- Troubleshooting & Support: Provide expert-level technical support for PAM platform issues, performance optimization, privileged account onboarding, and user access requests
- Security & Compliance: Ensure PAM implementations meet PCI DSS, and other requirements through proper audit trails, session recording and monitoring, and privileged account governance
- Documentation & Training: Develop technical documentation, procedures, and training materials for internal teams and end users
- Continuous Improvement: Monitor platform performance, evaluate new features, and implement best practices to enhance security posture and operational efficiency
You own this if you have...
Required Qualifications:
- 4-6+ years of hands-on experience implementing and managing BeyondTrust PAM at the Enterprise level.
- Beyond Trust certifications are preferred.
- Deep expertise in privileged account discovery, credential management, password rotation, session management, and access request workflows using BeyondTrust
- Strong understanding of Windows Server administration, Active Directory, Group Policy, and PowerShell scripting
- Experience with Linux/Unix system administration and shell scripting for cross-platform BeyondTrust PAM deployments
- Knowledge of networking fundamentals including protocols, ports, certificates, load balancing, and security hardening
- Experience with cloud platforms (AWS, Azure) and containerization technologies (Docker, Kubernetes)
- Understanding of identity and access protocols (SAML, OIDC, OAuth, SCIM, LDAP) and their integration with PAM solutions
Preferred Qualifications:
- Knowledge of DevOps practices, CI/CD pipelines, and Infrastructure as Code (Terraform, Ansible)
- Familiarity with ITSM integration (ServiceNow, Jira) for ticket-driven privileged access workflows
- Experience with SIEM integration and security monitoring platforms (Splunk, QRadar, etc.)
- Understanding of zero trust architecture and least privilege access principles
- Experience with secrets management platforms (HashiCorp Vault, AWS Secrets Manager, Azure Key Vault)
- Previous experience in retail technology environments or large-scale enterprise deployments
- Industry certifications such as CISSP, CISM, or relevant cloud security certifications
Technical Skills:
- PAM Platforms: Experience with BeyondTrust.
- Operating Systems: Windows Server (2016/2019/2022), Windows 10/11, macOS, RHEL, Ubuntu, SUSE
- Databases: SQL Server, MySQL, PostgreSQL, Oracle for PAM backend configuration
- Virtualization: VMware vSphere, Hyper-V, cloud-based virtual machines
- Scripting: PowerShell, Bash, Python for automation and integration tasks
- Security Tools: Integration experience with vulnerability scanners, endpoint detection tools, and identity governance platforms
#TB_EN
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.