This role is responsible for planning, implementing, and operating our PAM platform (e.g., CyberArk Privilege Cloud), supporting our strategy to reduce risk, strengthen identity governance, and meet ...
This role is responsible for planning, implementing, and operating our PAM platform (e.g., CyberArk Privilege Cloud), supporting our strategy to reduce risk, strengthen identity governance, and meet ...
As an Identity and Access Management (IAM) Senior Engineer for Privileged Access Management (PAM), you will be an integral part of our cybersecurity team, focusing on designing, implementing and ...
As an Identity and Access Management (IAM) Senior Engineer for Privileged Access Management (PAM), you will be an integral part of our cybersecurity team, focusing on designing, implementing and ...
Two years of experience in the Medical Staff Services (e.g., credentialing, privileging, enrollment, and/or medical staff office). * Interpersonal skills to interact effectively with all levels of ...
Two years of experience in the Medical Staff Services (e.g., credentialing, privileging, enrollment, and/or medical staff office). * Interpersonal skills to interact effectively with all levels of ...
Define and enforce access management policies based on least privilege, zero trust, and zero standing access principles. * Manage onboarding, rotation, vaulting, and monitoring of admin, service ...
Define and enforce access management policies based on least privilege, zero trust, and zero standing access principles. * Manage onboarding, rotation, vaulting, and monitoring of admin, service ...
Maintain least privilege standards, including enforcement of cloud only admin accounts and removal of unnecessary or stale privileged principals. JIT Access, PIM/PAM Integration & Access Elevation
Maintain least privilege standards, including enforcement of cloud only admin accounts and removal of unnecessary or stale privileged principals. JIT Access, PIM/PAM Integration & Access Elevation
Identity & Privileged Governance Analyst
New York, NY · On-site
$110K - $170K/yr
Support identity and privileged access governance, hygiene, and remediation activities, with a focus on service account management. * Monitor identity and privileged access controls, identify gaps ...
Identity & Privileged Governance Analyst
New York, NY · On-site
$110K - $170K/yr
Support identity and privileged access governance, hygiene, and remediation activities, with a focus on service account management. * Monitor identity and privileged access controls, identify gaps ...
Role: Privileged Access Management (PAM) Architect Location: Iselin NJ (Remote) - Open to travel on need basis Type: Full-Time Main Duties & Responsibilities of the Role: * Lead the architecture ...
Quick apply
Role: Privileged Access Management (PAM) Architect Location: Iselin NJ (Remote) - Open to travel on need basis Type: Full-Time Main Duties & Responsibilities of the Role: * Lead the architecture ...
Adhering to least privileged best practices in provisioning of access * Ensuring you understand the why, what, how, and impact of activity ISM is administering * Administering user systems and data ...
Quick apply
Adhering to least privileged best practices in provisioning of access * Ensuring you understand the why, what, how, and impact of activity ISM is administering * Administering user systems and data ...
Enforce least privilege and role-based access policies. * Implement strong audit logging, session recording, and reporting . * Align PAM controls with regulatory and compliance requirements (e.g ...
Enforce least privilege and role-based access policies. * Implement strong audit logging, session recording, and reporting . * Align PAM controls with regulatory and compliance requirements (e.g ...
Booz Allen Hamilton is seeking a Privileged Access Management Engineer to enhance security in system architecture for federal government programs. The role involves designing and building secure ...
Booz Allen Hamilton is seeking a Privileged Access Management Engineer to enhance security in system architecture for federal government programs. The role involves designing and building secure ...
Department Library C & A - Access Serv - ID & Privileges Office About the Department Widely known as guardian of one of the largest academic library collections in North America, the University of ...
Department Library C & A - Access Serv - ID & Privileges Office About the Department Widely known as guardian of one of the largest academic library collections in North America, the University of ...
Senior Privileged Access Management Engineer
Morristown, NJ · On-site
$117K - $161K/yr
This role will focus on CyberArk Privilege Cloud and Venafi TLS certificate management, supporting a hybrid enterprise environment spanning Active Directory, Azure, and AWS. Key Responsibilities
Senior Privileged Access Management Engineer
Morristown, NJ · On-site
$117K - $161K/yr
This role will focus on CyberArk Privilege Cloud and Venafi TLS certificate management, supporting a hybrid enterprise environment spanning Active Directory, Azure, and AWS. Key Responsibilities
OR · On-site
$109K - $150K/yr
Experience with Delinea Privilege Manager or similar endpoint privilege elevation tools * Experience supporting or administering an enterprise MFA platform * Familiarity with PAM in hybrid or cloud ...
OR · On-site
$109K - $150K/yr
Experience with Delinea Privilege Manager or similar endpoint privilege elevation tools * Experience supporting or administering an enterprise MFA platform * Familiarity with PAM in hybrid or cloud ...
Senior Privileged Access Management Engineer
Morristown, NJ · Hybrid
$117K - $161K/yr
This role will focus on CyberArk Privilege Cloud and Venafi TLS certificate management, supporting a hybrid enterprise environment spanning Active Directory, Azure, and AWS. Key Responsibilities
Senior Privileged Access Management Engineer
Morristown, NJ · Hybrid
$117K - $161K/yr
This role will focus on CyberArk Privilege Cloud and Venafi TLS certificate management, supporting a hybrid enterprise environment spanning Active Directory, Azure, and AWS. Key Responsibilities
Advise stakeholders on RBAC, least privilege design, SoD risk identification, and privileged access architecture. Participate in and contribute to security assessments, incident reviews, and access ...
New
Advise stakeholders on RBAC, least privilege design, SoD risk identification, and privileged access architecture. Participate in and contribute to security assessments, incident reviews, and access ...
New
Advise stakeholders on RBAC, least privilege design, SoD risk identification, and privileged access architecture. Participate in and contribute to security assessments, incident reviews, and access ...
New
Advise stakeholders on RBAC, least privilege design, SoD risk identification, and privileged access architecture. Participate in and contribute to security assessments, incident reviews, and access ...
New
OR · On-site
$109K - $150K/yr
Experience with Delinea Privilege Manager or similar endpoint privilege elevation tools * Experience supporting or administering an enterprise MFA platform * Familiarity with PAM in hybrid or cloud ...
OR · On-site
$109K - $150K/yr
Experience with Delinea Privilege Manager or similar endpoint privilege elevation tools * Experience supporting or administering an enterprise MFA platform * Familiarity with PAM in hybrid or cloud ...
Booz Allen Hamilton is seeking a Privileged Access Management Engineer to enhance security within their federal government Identity and Access Management program. The role involves designing and ...
Booz Allen Hamilton is seeking a Privileged Access Management Engineer to enhance security within their federal government Identity and Access Management program. The role involves designing and ...
Job Summary : Booz Allen Hamilton is seeking a Privileged Access Management Engineer to enhance security within a federal government Identity and Access Management program. The role involves ...
Job Summary : Booz Allen Hamilton is seeking a Privileged Access Management Engineer to enhance security within a federal government Identity and Access Management program. The role involves ...
Booz Allen Hamilton is a leading provider of management and technology consulting services, and they are seeking a Privileged Access Management Engineer to enhance the security of their federal ...
Booz Allen Hamilton is a leading provider of management and technology consulting services, and they are seeking a Privileged Access Management Engineer to enhance the security of their federal ...
Privilege information
See salary details
$36.54 - $39.05
9% of jobs
$39.05 - $41.56
14% of jobs
$42.82 is the 25th percentile. Wages below this are outliers.
$41.56 - $44.08
4% of jobs
$44.08 - $46.59
4% of jobs
$46.59 - $49.10
4% of jobs
$49.10 - $51.62
4% of jobs
$51.62 - $54.13
4% of jobs
$54.13 - $56.64
4% of jobs
The median wage is $56.79 / hr.
$56.64 - $59.16
18% of jobs
$60.26 is the 75th percentile. Wages above this are outliers.
$59.16 - $61.67
17% of jobs
$61.67 - $64.18
15% of jobs
$36
$52
$64
How much do privilege jobs pay per hour?
What are some common challenges faced by professionals working in IT privilege management roles?
What are privilege jobs?
What is the difference between Privilege vs Security Officer?
| Aspect | Privilege | Security Officer |
|---|---|---|
| Required Credentials | Varies; often includes certifications like CompTIA Security+ or equivalent | Typically requires security guard license and relevant certifications |
| Work Environment | IT systems, networks, and data access points | Physical security sites, buildings, and premises |
| Employer & Industry Usage | IT, cybersecurity, and data management sectors | Security services, law enforcement, and private security firms |
| Common Search & Comparison | Yes, often compared in cybersecurity contexts | Often compared in physical security contexts |
Privilege roles focus on granting and managing access to digital systems and data, requiring IT security certifications. Security Officers primarily handle physical security and access control at physical sites. While both roles involve security, Privilege is more IT-centric, whereas Security Officers focus on physical safety and security.
What is a Privilege job?
A Privilege job typically refers to a role that involves managing access rights, security controls, or privileged accounts within an organization. These jobs often focus on ensuring that sensitive data and critical systems are only accessible to authorized users. Responsibilities may include implementing security policies, monitoring privileged access, and preventing unauthorized use. Such roles are commonly found in IT security, compliance, and risk management teams.
What are the key skills and qualifications needed to thrive as a Privilege Manager, and why are they important?
Full-time
Posted 29 days ago
IDEXX Laboratories rating
7.6
Based on 53 frontline employees who took The Breakroom Quiz
50th of 103 rated laboratories
Job description
IT accelerates the success of IDEXX employees and customers by providing scalable, secure, and innovative technology solutions. As a global organization supporting critical systems across cloud and onprem environments, we are committed to maturing our identity and security posture-particularly in the area of Privileged Access Management (PAM).
The PAM Engineer plays a pivotal role in ensuring secure, compliant, and tightly governed privileged access across the enterprise. This role is responsible for planning, implementing, and operating our PAM platform (e.g., CyberArk Privilege Cloud), supporting our strategy to reduce risk, strengthen identity governance, and meet audit and regulatory requirements.
This position partners closely with Security, Infrastructure, Cloud Engineering, Application teams, and IAM functions to enforce best practices, monitor privileged activity, and support the operational lifecycle of privileged accounts across servers, endpoints, cloud platforms, network devices, and SaaS environments.
If you are passionate about reducing privileged-access risk and enabling secure operations through automation, governance, and modern PAM tooling, we encourage you to apply.
In this role, you willbe responsible for:
Privileged Access Platform Administration
- Deploy, configure, andmaintainthe enterprise PAM platform (e.g., CyberArk) including credential vaulting, session management, password rotation, andjustIntime(JIT) access.
- Manage platform components such as vault servers, connectors, session recording infrastructure, credential providers, and privileged session gateways.
- Ensure high availability, performance optimization, and adherence to operational SLAs.
Privileged Account & Credential Lifecycle Management
- Onboard andmaintainprivileged accounts across Windows, Linux, network devices, databases, cloud platforms (Azure, AWS, GCP), and SaaS admin consoles.
- Implement automated password rotation, check-in/checkout workflows, and lifecycle governance for service accounts, application credentials, and secrets.
- Maintain leastprivilege standards, including enforcement of cloudonly admin accounts and removal of unnecessary or stale privileged principals.
JIT Access, PIM/PAM Integration & Access Elevation
- Administerjustintimeelevation policies for cloud roles (e.g., Entra PIM) and integrate them with the enterprise PAM strategy.
- Configureapprovalworkflows, MFA enforcement, activation duration settings, and monitoring for high-risk role activation.
- Ensure alignment between PIM (role elevation) and PAM (credential vaulting/session control) platforms.
Security, Compliance & Audit Support
- Maintaincontrolsrequiredfor SOX, SOC2, ISO, and internal/external audit reviews of privileged access activity.
- Support regular access reviews for privileged accounts and roles, collaborating with managers and system owners.
- Provide evidence for audits related to privileged access, session logs, credential governance, and administrative workflows.
Automation, Scripting & Operational Efficiency
- Develop andmaintainautomation (e.g., PowerShell, Python, APIs) for onboarding, credential rotation, vault management, and reporting.
- Build integrations between PAM and enterprise systems such as ServiceNow, SIEM, CMDB, IGA platforms, and cloud identity services.
- Streamline manual processes and reduce ticket volume through automation and mature workflow design.
Monitoring&Incident Response
- Monitor for suspicious privileged behavior, anomalous sign-ins, risky activations, or vault activity using SIEM and platform analytics.
- Maintain and periodically validatebreakglass/emergency access controls across critical systems.
- Serve as an escalation point for privileged access issues or failuresimpactingoperations.
CrossFunctional Collaboration & Governance
- Partner with infrastructure, application, cloud, and security teams to enforce standards for privileged access governance.
- Assistsystem owners inidentifyingwhat constitutes privileged access and mapping roles, entitlements, and required controls.
- Contribute to PAM roadmap planning, tool evaluations, and ongoing PAM maturity initiatives.
Location: Driving distance to our Westbrook, Maine HQ. Flexible hybrid on-site of 8 days per month/2 days per week on average, is required.
What You Will Need to Succeed:
- 2 to 5 years of hands-on experience administering enterprise PAM solutions such as CyberArk.
- Strong understanding of privileged access concepts including:
- Credential vaulting
- Session monitoring and recording
- JIT elevation & PIM
- Password rotation
- Tiering/Zero Trust/least privilege
- Expertisewith Windows/MacOS/Linuxadministration, Active Directory/Entra ID, cloud IAM roles (Azure, AWS, GCP), and integration of privileged accounts across these systems.
- Scripting & Automation: Proficiencyin PowerShell, APIs, JSON, and automation frameworks.Experience automating password rotation, onboarding workflows, and data collection.
- Soft Skills: Strong analytical abilities and troubleshooting skills for complex privileged access scenarios. Excellent communication skills and ability to translate technical concepts to nontechnical partners. Demonstratedcross-functionalcollaboration with security, engineering, and operations teams.
- Compliance & Security Knowledge: Familiarity with audits, risk controls, and compliance frameworks (SOX, SOC2, ISO 27001).Experience supporting audit evidence gathering and implementing controls to reduce privileged access risk.
Why IDEXX?
We're proud of the work we do, because our work matters. An innovation leader in every industry we serve, we follow our Purpose and Guiding Principles to help pet owners worldwide keep their companion animals healthy and happy, to ensure safe drinking water for billions, and to help farmers protect livestock and poultry from diseases. We have customers in over 175 countries and a global workforce of over 10,000 talented people.
So, what does that mean for you? We enrich the livelihoods of our employees with a positive and respectful work culture that embraces challenges and encourages learning and discovery. At IDEXX, you will be supported by competitive compensation, incentives, and benefits while enjoying purposeful work that drives improvement.
Let's pursue what matters together.
IDEXX values a diverse workforce and workplace and strongly encourages women, people of color, LGBTQ+ individuals, people with disabilities, members of ethnic minorities, foreign-born residents, and veterans to apply.
IDEXX is an equal opportunity employer. Applicants will not be discriminated against because of race, color, creed, sex, sexual orientation, gender identity or expression, age, religion, national origin, citizenship status, disability, ancestry, marital status, veteran status, medical condition, or any protected category prohibited by local, state, or federal laws.
#LI-EV1
What IDEXX Laboratories employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About IDEXX Laboratories
Sourced by ZipRecruiter
Industry
Manufacturing
Company size
10,000+ Employees
Headquarters location
Westbrook, ME, US
Year founded
1983