PAM Engineer - BeyondTrust
VeriSign
- Location
- Reston,Virginia,United States
- Work model
- On-Site
- Level
- Senior
- Salary
- $135.8k – $183.8k/yr
- H-1B history
- 7 approvals (FY2023)
- Posted
- 3h ago
Skills
About this role
Verisign helps enable the security, stability, and resiliency of the internet. We are a trusted provider of internet infrastructure services for the networked world and deliver unmatched performance in domain name system (DNS) services.
We are a mission focused, values driven company where each individual can contribute to building a stronger, more secure internet. We offer a dynamic and flexible work environment with competitive benefits and the ability to grow your career.
Verisign is seeking an experienced Privileged Access Management (PAM) Engineer to design, implement, administer, and enhance enterprise privileged access and identity security solutions. This hands-on technical role will focus on PAM engineering, Microsoft Entra ID administration, automation, application integrations, and operational support.
The ideal candidate has deep experience with enterprise PAM technologies such as BeyondTrust, strong Microsoft Entra ID expertise, and a solid understanding of IAM, identity governance, authentication, and access security. This individual will partner with security, infrastructure, application, and architecture teams to deliver secure, scalable, and reliable identity solutions.
Responsibilities
• Design, implement, configure, administer, and maintain enterprise PAM solutions, in BeyondTrust
• Administer and enhance Microsoft Entra ID, including enterprise applications, authentication, Conditional Access, role-based access control (RBAC), Privileged Identity Management (PIM), MFA, and SSO
• Onboard applications, privileged accounts, service accounts, and other identities into PAM platforms
• Configure and maintain privileged account policies, credential management, password rotation, session management, and access controls
• Integrate PAM solutions with enterprise applications, directories, identity platforms, and infrastructure
• Engineer and support integrations across PAM, IAM, IGA, MFA, and SSO technologies
• Develop scripts and automation to streamline account onboarding, provisioning, testing, monitoring, and other identity-related processes
• Implement automated testing and validation where appropriate to improve reliability and deployment efficiency
• Support privileged access reviews, access certifications, and remediation activities to meet security, audit, and compliance requirements
• Partner with security architects and engineering teams to develop technical designs and implement security controls based on least privilege and Zero Trust principles
• Evaluate new PAM and identity technologies and recommend improvements that strengthen security and operational efficiency
• Develop and maintain technical documentation, including system configurations, architecture diagrams, integration designs, operational procedures, and troubleshooting guides
• Participate throughout the solution lifecycle, including design, development, testing, deployment, production support, upgrades, and ongoing maintenance
Qualifications
• Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field, or equivalent experience
• 8+ years of experience in PAM, IAM, identity security, security engineering, or related technologies
• 2+ years of hands-on experience implementing and administering enterprise PAM platforms in BeyondTrust
• Experience administering Microsoft Entra ID in an enterprise environment
• Experience with Entra ID capabilities including Conditional Access, RBAC, PIM, MFA, SSO, enterprise applications, and identity/access management
• Strong understanding of PAM concepts, including privileged account management, credential vaulting, password rotation, session management, least privilege, and