Capgemini

PIM/PAM Engineer

Capgemini$110K — $135K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Ability to obtain and maintain a DoD Secret Clearance; U.S. Citizenship is required.
  • Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related technical field.
  • 6+ years of progressive IT experience, with 2-3 years focused on Identity and Access Management (IAM), particularly in PIM/PAM engineering.
  • CompTIA Security+ CE certification is highly desired.

Responsibilities

  • Design, deploy, configure, and maintain PIM/PAM solutions across enterprise, cloud, and hybrid environments.
  • Manage lifecycle of privileged accounts, including automated vaulting and JIT access.
  • Integrate PIM/PAM tools with identity ecosystems using APIs and custom scripts.
  • Define and enforce least-privilege access policies and RBAC/ABAC.
  • Conduct audits to identify and centralize unmanaged privileged accounts and secrets.
  • Provide tier-3 technical support for identity infrastructure issues and upgrades.
  • Support compliance monitoring and audit readiness with reporting.

Benefits

  • Paid time off
  • Medical/dental/vision insurance
  • 401(k)
  • Eligibility for variable compensation, bonuses, or commissions.
Full Job Description
The PIM/PAM Engineer is responsible for the architecture, design, implementation, and administration of enterprise-level Privileged Identity Management (PIM) and Privileged Access Management (PAM) solutions. This role ensures the secure management of privileged identities within the framework by maintaining a hardened appliance posture and enforcing the Principle of Least Privilege across the enterprise. The ideal candidate is a technical specialist who understands that identity is the new perimeter. You will act as the primary administrator for our PAM vaulting solutions, working closely with Infrastructure, DevOps, and Security Operations teams to integrate vaulting into every layer of our tech stack.

Key Responsibilities :
  • Design, deploy, configure, and maintain robust PIM/PAM solutions across enterprise, cloud, and hybrid environments.
  • Manage the lifecycle of privileged accounts, including automated vaulting, password rotation, privileged session management, and just-in-time (JIT) access.
  • Integrate PIM/PAM tools with broader identity ecosystems (IdPs, IGA, SIEM, and ticketing systems like ServiceNow) using APIs and custom scripting.
  • Define, implement, and enforce least-privilege access policies, role-based access control (RBAC), and attribute-based access control (ABAC).
  • Conduct regular discovery audits to identify unmanaged privileged accounts, service accounts, and secrets, bringing them under centralized management.
  • Provide tier-3 technical support for complex identity infrastructure issues, system upgrades, patches, and disaster recovery drills.
  • Support continuous monitoring and audit readiness by generating compliance reports and ensuring adherence to federal and DoD security frameworks.
  • Deep understanding of session recording, credential vaulting, secrets management, and delegation of authority.
  • Strong foundational knowledge of Windows Active Directory, Linux/Unix administration, Group Policy Objects (GPOs), and basic networking protocols.
  • Proficiency in scripting languages (e.g., PowerShell, Python, Bash) for automation and API integrations.

Required Qualifications:
  • Ability to obtain and maintain a DoD Secret Clearance. U.S. Citizenship is required.
  • Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related technical field is required.
  • 6+ of progressive IT experience required with 2-3+ years of dedicated experience in Identity and Access Management (IAM), with a strong focus on PIM/PAM engineering highly-desired.
  • CompTIA Security+ CE (Current) is highly desired.


Capgemini discloses salary range information in compliance with state and local pay transparency obligations. The disclosed range represents the lowest to highest salary we, in good faith, believe we would pay for this role at the time of this posting, although we may ultimately pay more or less than the disclosed range, and the range may be modified in the future. The disclosed range takes into account the wide range of factors that are considered in making compensation decisions including, but not limited to, geographic location, relevant education, qualifications, certifications, experience, skills, seniority, performance, sales or revenue-based metrics, and business or organizational needs. At Capgemini, it is not typical for an individual to be hired at or near the top of the range for their role. The base salary range for the tagged location is $110k - $135k.

This role may be eligible for other compensation including variable compensation, bonus, or commission. Full time regular employees are eligible for paid time off, medical/dental/vision insurance, 401(k), and any other benefits to eligible employees.

Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, or any other form of compensation that are allocable to a particular employee remains in the Company's sole discretion unless and until paid and may be modified at the Company's sole discretion, consistent with the law.

About Capgemini

Capgemini is a global leader in consulting, digital transformation, technology and engineering services. The company is headquartered in Paris, France and operates in over 50 countries. Capgemini provides a range of services including strategy and transformation, application services, technology services, and engineering services. The company serves clients in a variety of industries including automotive, consumer products, financial services, healthcare, and retail.
Learn more about Capgemini
Industry
Founded
1967
NASDAQ

Similar Jobs

More Jobs at Capgemini

More Information Technology Jobs

Find similar PIM/PAM Engineer jobs: