-
Privilege Access Management Engineer
- Navy Federal Credit Union (Vienna, VA)
-
Overview
The Privileged Access Management (PAM) Engineer is responsible for the installation, operations, and maintenance of the Navy Federal PAM solution infrastructure. The PAM engineer will analyze, develop, and build processes and technology to ensure timely delivery of PAM services. The PAM engineer will be expected to contribute to overall design and long term strategy of the Privileged Access and Identity Management program. The PAM Engineer will work closely with internal teams such as information security, service desk, systems engineering, network security, audit, application developers, and other administrators in delivering PAM services. This will include managing the life cycle of users in the PAM system, creating and maintaining credentials and secrets, and implementing least privilege storage and delegation of access to secured objects. The PAM engineer will be expected to monitor and ensure the health of the systems providing PAM services. They will also develop and support the automation of PAM services and it's integration with IT service catalog and other identity systems.
Responsibilities
• Operation of the Privileged Access Management (PAM) technologies, including accounts management, secrets management, and software and systems patching.
• Lead projects to develop and deliver new security features and or software currency.
• Work with PAM team to implement and automate processes for administration and integration with external services.
• Contribute to PAM Security Strategy, including provisioning, password management and access policies, SSH key management, API key management, and reporting.
• Design, configure, and maintain PAM solutions for AIX, RHEL, Windows, and Mainframe systems.
• Integrate the PAM solution with various technologies such as Service Now, VMWare, SailPoint or other top IDM solutions
• Provide security consultation on internal projects focusing on business needs and how data is transmitted internally and externally.
• Authoring and maintaining documentation procedures, inventories, and diagrams for PAM systems and processes.
• Monitors and responds to capacity and performance needs of the PAM infrastructure.
• Provides regular reports to leadership regarding security, capacity, usage, and licensing
• Provide rotational on-call support for production PAM infrastructure systems and processes.
Qualifications
• Bachelor's Degree in Information Technology, Computer Science or other related fields
• Industry certifications in cyber or identity security attesting to broad knowledge of security best practices and design.
• 5-7+ years administering and maintaining Privileged Access Management (PAM) solutions, such as CyberArk, BeyondTrust, Thycotic or Lieberman
• Experience working in large security access system upgrades/projects using the Scaled Agile Framework (SAFe)
• Significant experience working in a large IT organization with responsibility for supporting the technology and processes in the Privileged Access Management domain and controls
program, preferably in a financial services organization
• Considerable experience with Identity and Access Management vendors like Microsoft, CyberArk, ForgeRock, ServiceNow, RSA, etc.
• Significant experience in working with all levels of staff, management, stakeholders, vendors
• Significant experience administering tier zero identity infrastructure that provides AAA services such as Active Directory, Azure Active Directory, and RSA.
• Advanced knowledge of Service Life Cycle or Agile Frameworks
• Advanced verbal and written communication skills
• Advanced research, analytical, and problem-solving skills
• Effective in producing desired results and achieving goals and objectives
• Practical skill presenting findings, conclusions, alternatives, and information clearly and concisely
• Experience in developing automated solutions and processes using PowerShell for Windows and BASH for UNIX/Linux.
• Demonstrates an understanding of how PAM integrates with common resources such as Windows, Linux/UNIX, VMWare, Azure, SQL/Oracle/DB2 database systems, Network appliances, and Mainframe.
About Us
Navy Federal provides much more than a job. We provide a meaningful career experience, including a culture that is energized, engaged and committed; and fierce appreciation for our teams, who are rewarded with highly competitive pay and generous benefits and perks.
Our approach to careers is simple yet powerful: Make our mission your passion.
• Fortune 100 Best Companies to Work For 2025
• Yello and WayUp Top 100 Internship Programs
• Computerworld® Best Places to Work in IT
• Newsweek Most Loved Workplaces
• Fortune Best Workplaces for Women ™ 2024
• 2025 PEOPLE® Companies That Care
• Newsweek Most Trustworthy Companies in America
• Military Times 2024 Best for Vets Employers
• Best Companies for Latinos to Work for 2025
• Forbes® 2025 America's Best Large Employers
• Forbes® 2025 America's Best Employers for New Grads
• Forbes® 2025 America's Best Employers for Tech Workers
• 2025 RippleMatch Campus Forward Award Winner for Overall Excellence
• Military.com Top Military Spouse Employers 2025
• 2025 Handshake Early Talent Award
From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of, Navy Federal Credit Union.
Equal Employment Opportunity: All qualified applicants will receive consideration for employment without regard to age, race, sex, color, religion, national origin, disability, veteran status, pregnancy, sexual orientation, genetic information, gender identity or any other basis protected by applicable law.
Disclaimers: Navy Federal reserves the right to fill this role at a higher/lower grade level based on business need. An assessment may be required to compete for this position. Job postings are subject to close early or extend out longer than the anticipated closing date at the hiring team’s discretion based on qualified applicant volume. Navy Federal Credit Union assesses market data to establish salary ranges that enable us to remain competitive. You are paid within the salary range, based on your experience, location and market position. For additional details regarding compensation and benefits, review the Benefits page (https://fa-etbx-saasfaprod1.fa.ocs.oraclecloud.com/hcmUI/CandidateExperience/en/sites/nfcu/pages/employee-benefits) of the Navy Federal Career Site.
Protect Yourself from Job Scams: Navy Federal Credit Union jobs are posted on our career site, jobs.navyfederal.org and reputable job boards (e.g., LinkedIn, Indeed). We do not post jobs on social media marketplaces, messaging apps or unverified websites. We will never ask candidates for payment, bank details or personal financial information during the hiring process.
Bank Secrecy Act: Remains cognizant of and adheres to Navy Federal policies and procedures, and regulations pertaining to the Bank Secrecy Act. REQNUMBER: 27410
-
Recent Jobs
-
Privilege Access Management Engineer
- Navy Federal Credit Union (Vienna, VA)
-
Senior Splunk Engineer
- Leidos (Arlington, VA)