PIM/PAM Engineer

Wood River Federal

$110K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field
  • 6+ years of progressive IT experience, including 2-3+ years in Identity and Access Management (IAM)
  • Strong focus on PIM/PAM engineering is highly desired
  • CompTIA Security+ CE certification or ability to obtain within 30 days
  • U.S. Citizenship required
  • Ability to obtain and maintain a DoD Secret Security Clearance

Responsibilities

  • Design, deploy, configure, and maintain PIM/PAM solutions in various environments
  • Manage the lifecycle of privileged accounts, including automated vaulting and password rotation
  • Integrate PIM/PAM tools with identity ecosystems using APIs and scripts
  • Implement least-privilege access policies and role/attribute-based access control
  • Conduct audits to identify unmanaged privileged accounts and ensure centralized management
  • Provide technical support for complex identity infrastructure issues
  • Generate compliance reports and support audit readiness under security frameworks

Benefits

  • Opportunity to work in a cutting-edge security domain
  • Involvement in a range of technologies (cloud, hybrid environments)
  • Support for ongoing professional development through certifications
  • Collaborative and innovative team environment
  • Engagement with compliance and federal security standards
Full Job Description
Position Summary

We are seeking a highly skilled and motivated PIM/PAM Engineer to join our team. In this role, you will be responsible for the architecture, design, implementation, and administration of enterprise-level Privileged Identity Management (PIM) and Privileged Access Management (PAM) solutions.

Key Responsibilities
  • Design, deploy, configure, and maintain robust PIM/PAM solutions across enterprise, cloud, and hybrid environments.
  • Manage the lifecycle of privileged accounts, including automated vaulting, password rotation, privileged session management, and just-in-time (JIT) access.
  • Integrate PIM/PAM tools with broader identity ecosystems (IdPs, IGA, SIEM, and ticketing systems like ServiceNow) using APIs and custom scripting.
  • Define, implement, and enforce least-privilege access policies, role-based access control (RBAC), and attribute-based access control (ABAC).
  • Conduct regular discovery audits to identify unmanaged privileged accounts, service accounts, and secrets, bringing them under centralized management.
  • Provide tier-3 technical support for complex identity infrastructure issues, system upgrades, patches, and disaster recovery drills.
  • Support continuous monitoring and audit readiness by generating compliance reports and ensuring adherence to federal and DoD security frameworks.
  • Deep understanding of session recording, credential vaulting, secrets management, and delegation of authority.
  • Strong foundational knowledge of Windows Active Directory, Linux/Unix administration, Group Policy Objects (GPOs), and basic networking protocols.
  • Proficiency in scripting languages (e.g., PowerShell, Python, Bash) for automation and API integrations.


Qualifications & Skills
  • Degree: Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related technical field is required.
  • 6+ of progressive IT experience required with 2-3+ years of dedicated experience in Identity and Access Management (IAM), with a strong focus on PIM/PAM engineering highly-desired.
  • Must have CompTIA Security+ CE (Current)/ IAT Level II certification or ability to obtain within 30 days.
  • Must be a U.S. Citizen.
  • Must currently possess, or have the clear ability to obtain and maintain, a DoD Secret Security Clearance.

Similar Jobs

More Jobs at Wood River Federal

More Information Technology Jobs

Find similar PIM/PAM Engineer jobs: