Back to Jobs

Privileged Access Management Engineer

Not Disclosed

Job Description & Details

This is a hands-on engineering gig focused entirely on modernizing enterprise privilege management using Centrify's Zero Trust platform and Delinea/Secret Server. You will not just be pushing configurations; you will be actively tearing down standing privileges and implementing just-in-time access across complex infrastructure.

What You'll Actually Be Doing

You will spend your days designing, deploying, and maintaining Centrify's PAM solutions while figuring out how to secure everything from service accounts to application-to-application (A2A) secrets. Expect to roll up your sleeves to integrate the PAM infrastructure with ITSM tools like ServiceNow, identity providers like Okta or SailPoint, and SIEM platforms like Splunk. A lot of your time will go into writing solid technical documentation and automating account onboarding processes so security controls actually scale without breaking developer velocity.

The Core Tech Stack

The absolute non-negotiables here are hands-on experience with Centrify's Zero Trust platform and Delinea (Secret Server) — note that CyberArk background won't cut it for this specific team. You need a strong foundation in RBAC, just-in-time access provisioning, password vaulting, and MFA integration. Because you'll be dealing with everything from Windows and Linux operating systems to LDAP directories and databases, deep infrastructure fluency is critical to your daily survival.

Interview Expectations

When they ask you how you would handle migrating a legacy app with hardcoded service credentials to a modern vault, they are secretly testing your pragmatism and whether you understand how to avoid breaking production deployments. Be ready to explain a concrete scenario where you balanced strict security controls against developer friction. They will also drill down into your Centrify implementation experience, specifically looking for how you handle session monitoring, audit logging, and edge cases in multi-tier enterprise environments.

Application Advice

Skip the generic cybersecurity buzzwords on your resume and highlight your exact deployment history with Centrify and Delinea. Use terms straight from the job description like 'just-in-time access,' 'application-to-application (A2A) secrets,' and 'ServiceNow integration' to clear the ATS filters. If you have automated account discovery or built out security monitoring use cases with Splunk, make those bullet points pop right at the top.