- Company Name
- TalentBurst, an Inc 5000 company
- Job Title
- Platform Engineer
- Job Description
-
Job Title: Platform Engineer – Privileged Access Management (PAM)
Role Summary: Design, deploy, and manage enterprise‑wide Privileged Access Management infrastructure using BeyondTrust solutions, ensuring secure privileged access across Windows, macOS, and Linux environments, and driving full lifecycle ownership of password vaults, endpoint privilege management, and session control.
Expectations: Lead large‑scale PAM implementations, maintain compliance with PCI‑DSS and other security standards, integrate PAM with ITSM, SIEM, identity, and cloud platforms, and continuously enhance platform performance and security posture.
Key Responsibilities
• Serve as the primary PAM technical expert—architecture, deployment, configuration, optimization of password vaults and endpoint privilege management systems.
• Design and execute large‑scale PAM deployments across multiple OS platforms, ensuring seamless integration with existing infrastructure.
• Develop and maintain privileged elevation policies, credential rotation schedules, access request workflows, and governance rules in alignment with security and compliance requirements.
• Integrate PAM solutions with ITSM, SIEM, vulnerability scanners, directory services, and other security tools to establish comprehensive privileged access workflows.
• Provide expert‑level troubleshooting, performance optimization, privileged account onboarding, and user access support.
• Ensure audit trails, session recording, monitoring, and privileged account governance meet PCI‑DSS and other regulatory standards.
• Create technical documentation and training materials for internal teams and end users.
• Monitor platform performance, evaluate new features, and implement best practices for continuous improvement.
Required Skills
• 4–6+ years of experience with BeyondTrust PAM at the enterprise level; BeyondTrust certifications a plus.
• Deep knowledge of privileged account discovery, credential management, password rotation, session management, and access request workflows.
• Strong Windows Server administration, Active Directory, Group Policy, and PowerShell scripting.
• Linux/Unix administration and shell scripting for cross‑platform PAM deployments.
• Networking fundamentals—protocols, ports, certificates, load balancing, and security hardening.
• Experience with AWS, Azure, Docker, Kubernetes, and identity protocols (SAML, OIDC, OAuth, SCIM, LDAP).
• Optional: DevOps/CI‑CD, IaC (Terraform, Ansible), ITSM (ServiceNow, Jira) integration, SIEM (Splunk, QRadar), zero‑trust and least privilege concepts, secrets management (HashiCorp Vault, AWS Secrets Manager, Azure Key Vault).
Required Education & Certifications
• Bachelor’s degree in Computer Science, Information Systems, or related field (or equivalent experience).
• Certifications: CISSP, CISM, cloud security‐specific credentials, and BeyondTrust platform certification highly desired.