1

Privileged Access Management Engineer Jobs (NOW HIRING)

$90 - $120/hr

Understanding of identity and access management (IAM), privileged access management (PAM ... focused software engineering role * Maintains a professional relationship with coffee and a ...

NY ยท On-site

$110 - $170/hr

... Privileged Access Management We are currently looking for a Project Manager to lead Privileged ... Coordinate work across DevOps, Business, and other key stakeholder groups * Ensure project progress ...

ADP is hiring a Director, Privileged Access Management Locations: Roseland NJ, Alpharetta GA, Pasadena CA, Orlando FL, Miami FL, Norfolk VA * Are you empathetic to client needs and inspired by ...

Showing results 21-40

Privileged Access Management Engineer information

See salary details

$61.5K

$152.8K

$205.5K

How much do privileged access management engineer jobs pay per year?

As of Aug 17, 2026, the average yearly pay for privileged access management engineer in the United States is $152,773.00, according to ZipRecruiter salary data. Most workers in this role earn between $143,000.00 and $158,500.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a privileged access management engineer?

A Privileged Access Management (PAM) Engineer needs a strong background in information security, identity and access management principles, and experience with enterprise PAM solutions. Familiarity with tools such as CyberArk, BeyondTrust, or Thycotic, and relevant certifications like CISSP or CompTIA Security+ are highly valued. Exceptional problem-solving skills, attention to detail, and effective communication enable success in a collaborative environment. These skills are critical for safeguarding sensitive assets, ensuring regulatory compliance, and supporting secure business operations.

What are the typical daily responsibilities of a privileged access management engineer?

As a Privileged Access Management Engineer, your daily tasks often involve managing user access permissions, maintaining and upgrading PAM solutions, and monitoring for unauthorized access attempts. You may work closely with IT security and operations teams to enforce security policies and address access-related incidents. Routine responsibilities also include auditing privileged accounts, updating documentation, and participating in compliance and risk assessments. This role requires you to be proactive and responsive, ensuring that only authorized personnel can access critical systems and sensitive data.

What is a privileged access management engineer?

A Privileged Access Management (PAM) Engineer is responsible for designing, implementing, and maintaining security controls to manage and protect privileged accounts within an organization. They work with PAM solutions to enforce least privilege access, monitor privileged session activity, and prevent unauthorized access to critical systems. PAM Engineers collaborate with security teams to ensure compliance with industry standards and regulatory requirements while continuously improving identity and access management processes.

What cities are hiring for Privileged Access Management Engineer jobs?

Cities with the most Privileged Access Management Engineer job openings:

What are the most commonly searched types of Privileged Access Management Engineer jobs?

The most popular types of Privileged Access Management Engineer jobs are:

What states have the most Privileged Access Management Engineer jobs?

States with the most job openings for Privileged Access Management Engineer jobs include:

What job categories do people searching Privileged Access Management Engineer jobs look for?

The top searched job categories for Privileged Access Management Engineer jobs are:

Infographic showing various Privileged Access Management Engineer job openings in the United States as of August 2026, with employment types broken down into 80% Full Time, 5% Part Time, and 15% Contract. Highlights an 80% In-person, 15% Hybrid, and 5% Remote job distribution, with an average salary of $152,773 per year, or $73.4 per hour.

Privileged Access Management (PAM) Engineer

Neotecra

New York, NY โ€ข On-site

Full-time

Re-posted 14 days ago


Job description

Job Summary

We’re looking for an experienced PAM Engineer to strengthen our cybersecurity posture by securing privileged identities across Active Directory, Entra ID, Linux, and multi-cloud environments (Azure, AWS, GCP). You’ll design, implement, and maintain advanced PAM and endpoint privilege controls that enforce least privilege, just-in-time (JIT) access, and Zero Trust principles.

Key Responsibilities

Privileged Identity Security

  • Manage and enhance corporate vaulting solutions for privileged credentials (AD, Entra, Linux, Azure, AWS, GCP).
  • Automate credential rotation and enforce time-bound, approval-based admin access.
  • Reduce standing privileges through JIT and least-privilege policies.

Endpoint Privilege Management

  • Deploy least-privilege policies across Windows, Linux, and macOS.
  • Replace local admin rights with controlled privilege elevation workflows.
  • Implement application control and privilege granularity to mitigate malware and insider threats.

Identity Hardening & Hygiene

  • Drive local admin cleanup initiatives and enforce removal of unauthorized rights.
  • Monitor and remediate stale accounts, over-privileged roles, and risky configurations.
  • Implement Identity Threat Detection & Response (ITDR) capabilities.

Security Architecture & Standards

  • Support Zero Trust initiatives and align PAM controls with NIST 800-63B and enterprise policies.
  • Promote MFA, SSO, and passwordless authentication for privileged users.

Cloud Identity & Access

  • Manage privileged roles and accounts in Entra ID (Azure AD), AWS IAM, and GCP IAM.
  • Design and enforce least-privilege models for workloads, service accounts, and keys.
  • Integrate cloud identities with PAM tools (vaulting, session recording, approval workflows).

Identity Lifecycle Management

  • Work with IGA teams to automate provisioning, deprovisioning, and recertification of privileged accounts.
  • Ensure all privileges have clear business justification and ownership.

Documentation & Governance

  • Maintain architecture diagrams, runbooks, and operational procedures.
  • Generate audit and compliance reports demonstrating control effectiveness.
  • Collaborate with audit, risk, and compliance teams to meet regulatory standards.

Required Qualifications

  • 3–5+ years in PAM, IAM, or Security Engineering roles.
  • Deep technical knowledge of AD, Entra ID, Linux, and at least one major cloud (Azure, AWS, or GCP).
  • Proficiency in vaulting, endpoint privilege management, and least-privilege enforcement.
  • Strong scripting skills (PowerShell, Python, Bash, Terraform).
  • Familiar with Zero Trust, NIST frameworks, ITDR, and cloud security standards (CIS, CSA).
  • Excellent communication and documentation skills.

Preferred Qualifications

  • Experience managing privileged access in multi-cloud environments.
  • Expertise in Entra ID PIM, AWS IAM policies, or GCP IAM roles.
  • Integration of PAM with CI/CD pipelines or ITSM workflows.

Certifications such as CISSP, CISM, CCSP, Azure Security Engineer, AWS Security Specialty, GIAC, or SailPoint