Systems Engineer - BeyondTrust

VERISIGN

Reston (VA)

Hybrid

USD 136,000 - 184,000

Full time

13 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Hybrid work schedule
Discretionary bonus
Stock awards (potential)

Job summary

Verisign in Reston, VA is seeking an experienced Privileged Access Management (PAM) Engineer to design, implement, administer, and optimize enterprise PAM and identity security solutions. The role focuses on BeyondTrust PAM, Microsoft Entra ID administration, automation, and integration with applications and directories.

You will partner with security, infrastructure, and architecture teams to deliver scalable, least-privilege driven controls, perform ongoing maintenance, and support audits.

Qualifications

  • Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field, or equivalent experience.
  • 8+ years of experience in PAM, IAM, identity security, security engineering, or related technologies.
  • 2+ years of hands-on experience implementing and administering enterprise PAM platforms in BeyondTrust.
  • Experience administering Microsoft Entra ID in an enterprise environment.
  • Experience with Entra ID capabilities including Conditional Access, RBAC, PIM, MFA, SSO, enterprise applications, and identity/access management.
  • Strong understanding of PAM concepts, including privileged account management, credential vaulting, password rotation, session management, least privilege, and privileged access controls.
  • Experience integrating PAM solutions with directories, applications, servers, cloud platforms, and other enterprise technologies.
  • Experience with scripting and automation using technologies such as PowerShell, Python, REST APIs, or similar tools.
  • Strong understanding of authentication, authorization, identity lifecycle management, and security best practices.
  • Experience supporting audit and compliance requirements, including Sarbanes-Oxley (SOX) controls, preferably in a high-tech environment.

Responsibilities

  • Design, implement, configure, administer, and maintain enterprise PAM solutions, in BeyondTrust.
  • Administer and enhance Microsoft Entra ID, including enterprise applications, authentication, Conditional Access, role-based access control (RBAC), Privileged Identity Management (PIM), MFA, and SSO.
  • Onboard applications, privileged accounts, service accounts, and other identities into PAM platforms.
  • Configure and maintain privileged account policies, credential management, password rotation, session management, and access controls.
  • Integrate PAM solutions with enterprise applications, directories, identity platforms, and infrastructure.
  • Engineer and support integrations across PAM, IAM, IGA, MFA, and SSO technologies.
  • Develop scripts and automation to streamline account onboarding, provisioning, testing, monitoring, and other identity-related processes.
  • Implement automated testing and validation where appropriate to improve reliability and deployment efficiency.
  • Support privileged access reviews, access certifications, and remediation activities to meet security, audit, and compliance requirements.
  • Partner with security architects and engineering teams to develop technical designs and implement security controls based on least privilege and Zero Trust principles.
  • Evaluate new PAM and identity technologies and recommend improvements that strengthen security and operational efficiency.
  • Develop and maintain technical documentation, including system configurations, architecture diagrams, integration designs, operational procedures, and troubleshooting guides.
  • Participate throughout the solution lifecycle, including design, development, testing, deployment, production support, upgrades, and ongoing maintenance.

Skills

PAM concepts
IAM security
PowerShell
Python
REST APIs
MFA
RBAC
Zero Trust

Education

Bachelor's degree (CS/Engineering/IT/Cybersecurity)

Tools

BeyondTrust
Microsoft Entra ID

Job description

Verisign is seeking an experienced Privileged Access Management (PAM) Engineer to design, implement, administer, and enhance enterprise privileged access and identity security solutions. This hands-on technical role will focus on PAM engineering, Microsoft Entra ID administration, automation, application integrations, and operational support.

The ideal candidate has deep experience with enterprise PAM technologies such as BeyondTrust, strong Microsoft Entra ID expertise, and a solid understanding of IAM, identity governance, authentication, and access security. This individual will partner with security, infrastructure, application, and architecture teams to deliver secure, scalable, and reliable identity solutions.

Responsibilities
  • Design, implement, configure, administer, and maintain enterprise PAM solutions, in BeyondTrust
  • Administer and enhance Microsoft Entra ID, including enterprise applications, authentication, Conditional Access, role-based access control (RBAC), Privileged Identity Management (PIM), MFA, and SSO
  • Onboard applications, privileged accounts, service accounts, and other identities into PAM platforms
  • Configure and maintain privileged account policies, credential management, password rotation, session management, and access controls
  • Integrate PAM solutions with enterprise applications, directories, identity platforms, and infrastructure
  • Engineer and support integrations across PAM, IAM, IGA, MFA, and SSO technologies
  • Develop scripts and automation to streamline account onboarding, provisioning, testing, monitoring, and other identity-related processes
  • Implement automated testing and validation where appropriate to improve reliability and deployment efficiency
  • Support privileged access reviews, access certifications, and remediation activities to meet security, audit, and compliance requirements
  • Partner with security architects and engineering teams to develop technical designs and implement security controls based on least privilege and Zero Trust principles
  • Evaluate new PAM and identity technologies and recommend improvements that strengthen security and operational efficiency
  • Develop and maintain technical documentation, including system configurations, architecture diagrams, integration designs, operational procedures, and troubleshooting guides
  • Participate throughout the solution lifecycle, including design, development, testing, deployment, production support, upgrades, and ongoing maintenance
Qualifications
  • Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field, or equivalent experience
  • 8+ years of experience in PAM, IAM, identity security, security engineering, or related technologies
  • 2+ years of hands-on experience implementing and administering enterprise PAM platforms in BeyondTrust
  • Experience administering Microsoft Entra ID in an enterprise environment
  • Experience with Entra ID capabilities including Conditional Access, RBAC, PIM, MFA, SSO, enterprise applications, and identity/access management
  • Strong understanding of PAM concepts, including privileged account management, credential vaulting, password rotation, session management, least privilege, and privileged access controls
  • Experience integrating PAM solutions with directories, applications, servers, cloud platforms, and other enterprise technologies
  • Experience with scripting and automation using technologies such as PowerShell, Python, REST APIs, or similar tools
  • Strong understanding of authentication, authorization, identity lifecycle management, and security best practices
  • Experience supporting audit and compliance requirements, including Sarbanes-Oxley (SOX) controls, preferably in a high-tech environment

This position is based in our Reston, VA office and offers a hybrid work schedule.

The pay range is $135,800 - $183,800.

The anticipated annual base salary range for this position is noted above, however, base pay offered may vary depending on job-related knowledge, skills, experience. Verisign offers a discretionary bonus which is based on individual and company performance, and certain roles may be eligible for discretionary stock awards.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

PAM Engineer - BeyondTrust
PAM Engineer - BeyondTrust

Verisign • Reston (VA)

Hybrid
USD 136,000 - 184,000
PAM Engineer - BeyondTrust
PAM Engineer - BeyondTrust

Verisign Inc. • Reston (VA)

Hybrid
USD 136,000 - 184,000
Hybrid work schedule
Discretionary bonus
Stock awards
Senior PAM Engineer: BeyondTrust & Entra ID Expert
Senior PAM Engineer: BeyondTrust & Entra ID Expert

VERISIGN • Reston (VA)

Hybrid
USD 136,000 - 184,000
Hybrid work schedule
Discretionary bonus
Stock awards (potential)
Hybrid PAM Engineer: BeyondTrust & Entra ID Expert
Hybrid PAM Engineer: BeyondTrust & Entra ID Expert

Verisign • Reston (VA)

Hybrid
USD 136,000 - 184,000
PAM Engineer - Identity Security & Automation
PAM Engineer - Identity Security & Automation

Verisign Inc. • Reston (VA)

Hybrid
USD 136,000 - 184,000
Hybrid work schedule
Discretionary bonus
Stock awards
Beyond Trust Engineer - PAM
Beyond Trust Engineer - PAM

TekWissen ® • Seattle (WA)

Hybrid
Identity and Access Management Engineer (Hybrid)
Identity and Access Management Engineer (Hybrid)

AbbVie • North Chicago (IL)

On-site
USD 140,000 - 190,000
Identity and Access Management Engineer (Hybrid)
Identity and Access Management Engineer (Hybrid)

Allergan • Chicago (IL), Northern (KY)

Hybrid
USD 130,000 - 190,000
Pam Engineer (Beyond Trust)
Pam Engineer (Beyond Trust)

Experis • New York (NY)

Hybrid
Medical and Prescription Drug Plans
Dental Plan
Vision Plan
+3
Privileged Access Management (PAM) Engineer
Privileged Access Management (PAM) Engineer

Veriipro • New York (NY)

On-site
USD 120,000 - 180,000