Overview:Job TitleCyber Security Engineer - IAM / PAM / SIEMLocation: Tampa, FL / Atlanta, GA / Pittsburgh, PA
Employment Type: Full-time
Job SummaryWe are seeking a highly skilled Cyber Security Engineer with strong hands-on experience in
Identity & Access Management (IAM),
Privileged Access Management (PAM), and
Security Information & Event Management (SIEM). This role will be responsible for designing, implementing, and operating enterprise security controls that protect identities, privileged accounts, and critical systems. The ideal candidate has a strong background in security engineering, threat detection, and access governance, and thrives in a fast-paced, collaborative environment.
Key ResponsibilitiesIAM (Identity & Access Management) - Design, implement, and manage IAM solutions including SSO, MFA, and lifecycle access provisioning.
- Automate user onboarding/offboarding, role-based access control (RBAC), and access reviews.
- Integrate IAM with cloud and on-prem apps using SAML, OIDC, OAuth2, SCIM, and LDAP/AD.
- Enforce governance controls such as certifications, SoD policies, and audit reporting.
PAM (Privileged Access Management) - Implement and maintain PAM platforms for vaulting, session management, and privileged workflow approvals.
- Define and enforce privileged access policies including JIT/JEA access and password rotation.
- Monitor and investigate privileged sessions to ensure compliance and reduce risk.
- Partner with infrastructure/app teams to onboard servers, databases, cloud environments, and network devices into PAM.
SIEM / Monitoring / Incident Support - Configure and manage SIEM tools by onboarding log sources, parsing, correlation rules, and alert tuning.
- Develop use cases for detection aligned to MITRE ATT&CK and organizational threat models.
- Perform alert triage, investigation, root-cause analysis, and provide incident response support.
- Create dashboards and reports for visibility into identity risk, privileged activity, and security posture.
Cross-Functional / Security Engineering - Collaborate with GRC, IT, DevOps, and application teams to ensure secure access design.
- Support audits, risk assessments, and continuous improvement initiatives.
- Contribute to security documentation, SOPs, and knowledge transfer.
Required Qualifications - Bachelor's degree in Cyber Security, Computer Science, IT, or similar (or equivalent experience).
- 6-10 years of overall information security experience.
- Strong hands-on expertise in IAM, PAM, and SIEM (must have all three).
- Experience with Active Directory / Azure AD / LDAP / Kerberos identity systems.
- Solid understanding of authentication/authorization protocols: SAML, OAuth2, OIDC, SCIM.
- Working knowledge of incident response, threat detection, and log analysis.
- Strong scripting/automation skills (PowerShell, Python, Bash, or similar).
- Ability to work independently, manage priorities, and communicate clearly with technical and business teams.
Preferred Qualifications - Industry certifications: CISSP, CISM, CRISC, Security+, CEH, GIAC, SC-300, AZ-500.
- Experience in cloud security (Azure/AWS/GCP) and cloud IAM/PAM models.
- Familiarity with Zero Trust, identity threat detection & response (ITDR).
- IAM/PAM migrations or large-scale onboarding experience.
- Experience with SOAR integration and automation playbooks.