1

Internship Privileged Access Management Engineer Jobs

Lead Privileged Access Management Engineer

Tampa, FL · On-site

$93K - $122K/yr

Being a Senior / Lead Engineer within the CISO organization , you will serve as a technical authority for DTCC's Privileged Access Management (PAM) platforms . You will design, build, and operate ...

Lead Privileged Access Management Engineer

Coppell, TX · On-site

$95K - $125K/yr

Being a Senior / Lead Engineer within the CISO organization , you will serve as a technical authority for DTCC's Privileged Access Management (PAM) platforms . You will design, build, and operate ...

Lead Privileged Access Management Engineer

Coppell, TX · On-site

$95K - $125K/yr

Being a Senior / Lead Engineer within the CISO organization , you will serve as a technical authority for DTCC's Privileged Access Management (PAM) platforms . You will design, build, and operate ...

next page

Showing results 1-20

Internship Privileged Access Management Engineer information

See salary details

$13

$25

$38

How much do internship privileged access management engineer jobs pay per hour?

As of Jul 21, 2026, the average hourly pay for internship privileged access management engineer in the United States is $25.42, according to ZipRecruiter salary data. Most workers in this role earn between $20.67 and $28.85 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an Internship Privileged Access Management Engineer, and why are they important?

To thrive as an Internship Privileged Access Management Engineer, you need a foundational understanding of information security principles, identity and access management concepts, and basic programming or scripting skills, often supported by coursework in cybersecurity or computer science. Familiarity with PAM tools like CyberArk or BeyondTrust, directory services (Active Directory), and relevant certifications such as CompTIA Security+ is highly valuable. Strong analytical thinking, attention to detail, and effective communication help interns excel when troubleshooting access issues and collaborating with IT teams. These skills ensure the secure management of privileged accounts, protecting organizations from security breaches and compliance risks.

What is the difference between Internship Privileged Access Management Engineer vs Privileged Access Management Engineer?

AspectInternship Privileged Access Management EngineerPrivileged Access Management Engineer
CredentialsTypically pursuing or recent graduate, some certifications preferredProfessional certifications like CISSP, CISA, or vendor-specific PAM certifications
Work EnvironmentInternship setting, supervised, entry-level tasksFull-time, specialized cybersecurity environment
Employer & Industry UsageInternship programs in tech and finance firmsCybersecurity firms, large enterprises, IT departments
Search & Comparison IntentUnderstanding entry-level roles in PAMCareer progression or job requirements in PAM

The Internship Privileged Access Management Engineer role is an entry-level position designed for students or recent graduates gaining initial experience. In contrast, the Privileged Access Management Engineer is a full-time professional responsible for managing and securing privileged accounts in an organization. The internship provides foundational exposure, while the full engineer role involves advanced responsibilities and certifications.

What is an Internship Privileged Access Management Engineer?

An Internship Privileged Access Management Engineer is a student or entry-level professional who assists in managing and securing privileged accounts within an organization's IT environment. They work alongside experienced engineers to implement and maintain systems that control and monitor access to sensitive data and resources. Their responsibilities may include supporting the deployment of privileged access management (PAM) tools, monitoring user activities, and helping enforce security policies. This role provides hands-on experience in cybersecurity, particularly focused on identity and access management.

What types of projects and responsibilities can an intern expect in a Privileged Access Management (PAM) Engineer role?

As a Privileged Access Management Engineer intern, you can expect to work on projects focused on securing and managing privileged accounts within the organization. Typical responsibilities include assisting with the configuration and deployment of PAM solutions, monitoring access logs, supporting audits, and helping to resolve access-related incidents. Interns often collaborate with cybersecurity, IT, and compliance teams to ensure best practices are followed and may participate in process improvement initiatives. This role provides hands-on experience with leading PAM tools and exposure to real-world security challenges, setting a strong foundation for future career growth in cybersecurity.
More about Internship Privileged Access Management Engineer jobs
What cities are hiring for Internship Privileged Access Management Engineer jobs? Cities with the most Internship Privileged Access Management Engineer job openings:
What are the most commonly searched types of Privileged Access Management Engineer jobs? The most popular types of Privileged Access Management Engineer jobs are:
What states have the most Internship Privileged Access Management Engineer jobs? States with the most job openings for Internship Privileged Access Management Engineer jobs include:
What job categories do people searching Internship Privileged Access Management Engineer jobs look for? The top searched job categories for Internship Privileged Access Management Engineer jobs are:
Infographic showing various Internship Privileged Access Management Engineer job openings in the United States as of July 2026, with employment types broken down into 1% As Needed, 68% Full Time, 24% Part Time, and 7% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $52,867 per year, or $25.4 per hour.
Senior Privileged Access Management Engineer

Senior Privileged Access Management Engineer

Zelis

Morristown, NJ • Hybrid

$117K - $161K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 28 days ago


Zelis rating

7.6

Company rating: 7.6 out of 10

Based on 11 frontline employees who took The Breakroom Quiz

130th of 209 rated software companies


Job description

At Zelis, we Get Stuff Done. So, let's get to it!

A Little About Us

Zelis is modernizing the healthcare financial experience across payers, providers, and healthcare consumers. We serve more than 750 payers, including the top five national health plans, regional health plans, TPAs and millions of healthcare providers and consumers across our platform of solutions. Zelis sees across the system to identify, optimize, and solve problems holistically with technology built by healthcare experts - driving real, measurable results for clients.

A Little About You

You bring a unique blend of personality and professional expertise to your work, inspiring others with your passion and dedication. Your career is a testament to your diverse experiences, community involvement, and the valuable lessons you've learned along the way. You are more than just your resume; you are a reflection of your achievements, the knowledge you've gained, and the personal interests that shape who you are.

Position Overview

Leads privileged access management and TLS certificate lifecycle activities for Zelis IT systems

Senior Privileged Access Management (PAM) Engineer - Team Lead
Overview

We are seeking a highly skilled and motivated Senior PAM Engineer - Team Lead to join the Identity and Access Management (IAM) team. This is a hands-on technical leadership role, ideal for someone who thrives in dynamic environments and is passionate about Security, PAM, Automation, and Machine Identity Management.

This role will focus on CyberArk Privilege Cloud and Venafi TLS certificate management, supporting a hybrid enterprise environment spanning Active Directory, Azure, and AWS.

Key Responsibilities

  • Manage and enhance privileged access lifecycle capabilities using CyberArk Privilege Cloud, including credential vaulting, session management, privileged session monitoring, and Just-in-Time (JIT) access.

  • Design and implement PAM solutions aligned with organizational security standards, including least privilege enforcement, credential rotation, session isolation, and privileged access workflows across enterprise systems.

  • Lead engineering initiatives to integrate PAM controls across infrastructure and applications, including Active Directory, Azure AD, AWS IAM, and cloud-native services.

  • Develop and maintain machine identity management solutions using Venafi, including TLS certificate lifecycle management, automation of certificate issuance/renewal, and integration with enterprise platforms and DevOps pipelines.

  • Architect and implement automation frameworks and accelerators to streamline PAM and certificate management processes, improving scalability, auditability, and operational efficiency.

  • Analyze and troubleshoot PAM and certificate management system issues, conducting root cause analysis and implementing durable solutions to improve system reliability and security posture.

  • Collaborate with infrastructure, security, DevOps, and application teams to onboard systems into CyberArk and Venafi, ensuring consistent enforcement of privileged access and certificate policies.

  • Monitor PAM and machine identity platforms to ensure performance, availability, and compliance with organizational policies and SOPs. Lead response efforts for critical incidents involving privileged accounts or certificate outages.

  • Provide technical leadership and mentorship to junior engineers, promoting best practices in PAM, automation, and secure design.

  • Drive continuous improvement by researching emerging PAM and machine identity trends, including secrets management, workload identity, and cloud-native privilege models.

  • Develop and maintain documentation including architecture diagrams, onboarding guides, SOPs, and knowledge base articles for PAM and certificate management operations.

Qualifications

  • Proven experience implementing and managing CyberArk Privilege Cloud in an enterprise environment, including vaulting, CPM, PSM, and session management.

  • Hands-on experience with Venafi (or similar certificate lifecycle management platforms) for managing TLS/SSL certificates at scale.

  • Strong understanding of PAM principles, including least privilege, credential management, session monitoring, JIT access, and privileged threat mitigation.

  • Experience working in hybrid environments with Active Directory, Azure AD, and AWS IAM.

  • Proficiency in scripting and automation (e.g., PowerShell, Python) and experience with automation platforms (e.g., Azure Automation, AWS Lambda, CI/CD pipelines).

  • Familiarity with authentication and authorization mechanisms, including Kerberos, LDAP, SAML, OAuth, OpenID Connect, and secrets/token-based authentication.

  • Experience integrating PAM solutions with enterprise systems using REST APIs, secure authentication methods, and service accounts.

  • Strong understanding of TLS/SSL, PKI concepts, certificate authorities, and cryptographic standards.

  • Excellent communication and collaboration skills, with the ability to work across technical and business teams.

  • Ability to lead technical initiatives and deliver results without direct managerial authority.

Preferred Qualifications

  • CyberArk certifications (e.g., CyberArk Defender, Sentry, or Guardian).

  • Experience with DevOps and secrets management tools (e.g., HashiCorp Vault, Kubernetes secrets, Azure Key Vault, AWS Secrets Manager).

  • Familiarity with compliance and regulatory frameworks (e.g., SOX, HIPAA, PCI-DSS, NIST).

  • Experience with cloud-native PAM capabilities (e.g., Azure Privileged Identity Management (PIM), AWS IAM Access Analyzer).

  • Knowledge of containerized and microservices environments and their impact on privileged access and certificate management.

Please note at this time we are unable to proceed with candidates who require visa sponsorship now or in the future.

Location and Workplace Flexibility

We have offices in Atlanta GA, Boston MA, Morristown NJ, Plano TX, St. Louis MO, St. Petersburg FL, and Hyderabad, India. We foster a hybrid and remote friendly culture, and all our employee's work locations are based on the needs of the position and determined by the Leadership team. In-office work and activities, if applicable, vary based on the work and team objectives in accordance with Company policies.

Base Salary Range

$127,000.00 - $160,550.00

At Zelis we are committed to providing fair and equitable compensation packages. The base salary range allows us to make an offer that considers multiple individualized factors, including experience, education, qualifications, as well as job-related and industry-related knowledge and skills, etc. Base pay is just one part of our Total Rewards package, which may also include discretionary bonus plans, commissions, or other incentives depending on the role.

Zelis' full-time associates are eligible for a highly competitive benefits package as well, which demonstrates our commitment to our employees' health, well-being, and financial protection. The US-based benefits include a 401k plan with employer match, flexible paid time off, holidays, parental leaves, life and disability insurance, and health benefits including medical, dental, vision, and prescription drug coverage.

Equal Employment Opportunity
Zelis is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
We welcome applicants from all backgrounds and encourage you to apply even if you don't meet 100% of the qualifications for the role. We believe in the value of diverse perspectives and experiences and are committed to building an inclusive workplace for all.

Accessibility Support
We are dedicated to ensuring our application process is accessible to all candidates. If you are a qualified individual with a disability or a disabled veteran and require a reasonable accommodation with any part of the application and/or interview process, please email TalentAcquisition@zelis.com.

Disclaimer

The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities, duties, and skills from time to time.


What Zelis employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom