Staff Security Engineer - Privileged Access Management (PAM)
hace 3 días
Arvada
Job Description Staff Security Engineer - Privileged Access Management (PAM) Location: Remote - USA (Must be based in the United States) Salary Range: $137,000 - $183,500 Experience Level: Senior / Staff Employment Type: Direct Hire - W2 Only This position requires: • ✓ US work authorization (no visa sponsorship available), • ✓ Must be located in the United States, • ✓ Direct hire only (no third-party agencies, contractors, or C2C arrangements), • ✓ W2 employment relationship About This Opportunity Join a leading healthcare technology organization as a Staff Security Engineer and become the go-to expert for Privileged Access Management across our global infrastructure. This isn't just another security role—you'll be architecting enterprise-wide solutions, mentoring talented engineers, and directly influencing executive-level security strategy. We're looking for a security-minded problem solver who thinks like a hacker, loves automation, and has the technical chops to lead complex PAM initiatives from concept to production. If you want to make a measurable impact on enterprise security while working with cutting-edge tools and brilliant teammates, keep reading. What You'll Do Lead & Influence • Serve as the company's thought leader and subject matter expert for Privileged Access Management (PAM), • Present PAM roadshows and strategy initiatives to Executive leadership, • Lead global PAM security engineering projects, tool evaluations, and deployments, • Design and implement security architecture using best-in-class engineering principles and MITRE standards, • Lead design and architecture strategy for PAM solutions across the entire organization, • Build, maintain, optimize, and configure PAM tools across endpoint, server, and cloud environments, • Create security metrics and automation frameworks to improve PAM processes using data-driven insights, • Measure and monitor PAM effectiveness, then optimize based on historical data, • Achieve measurable gains in efficiency and accuracy through process automation, • Work directly with Security Architecture, Security Operations, Cyber Risk Governance, Tech Infrastructure, and Network teams, • Support enterprise cybersecurity tabletop exercises across cross-functional teams, • Document runbooks for production deployments, • Assist with cybersecurity forensics and investigations What You Bring Required Experience • 8+ years of security engineering experience with a focus on PAM, IAM, or security architecture, • 10+ years of IT experience, • Hands-on operational knowledge of the security tool landscape, • Proven track record of optimizing and automating security processes, • IAM & PAM Tools: CyberArk, SailPoint, Okta, BeyondTrust, • Security Frameworks: MITRE ATT&CK, TTPs, threat modeling, • Security Tools: Endpoint PAM, server PAM, cloud PAM, EPM solutions, • Architecture: Security architecture and engineering concepts, privileged access security design, • Active contributor to the threat intelligence community, • Plugged into industry sources and security trends, • Understand what it means to "think like a hacker" and take the attacker viewpoint, • CISSP certification or equivalent, • Security operations and threat intelligence experience, • Experience with cybersecurity forensics and incident response, • Strategic Communicator: You can partner internationally with senior security and application team members, translating technical concepts into business value, • Self-Starter: You take initiative with strong conviction and don't wait for permission to drive improvements, • Problem Solver: You see security challenges as opportunities to innovate and optimize, • Team Builder: You mentor others and elevate the capabilities of everyone around you, • Data-Driven: You use metrics and measurements to prove impact and guide decisions Why Join Our Team? Competitive Compensation & Benefits • Base Salary: $137,000 - $183,500 (based on experience), • Health Coverage: Medical, vision, and dental insurance, • Financial Security: 401(k) matching, accident and life insurance, • Work-Life Balance: Generous paid time off, • Career Growth: Education reimbursement program, • Protect critical healthcare technology infrastructure, • Influence security strategy at the highest levels, • Work with cutting-edge PAM and IAM technologies, • Build solutions that scale across a global organization, • Shape the future of enterprise security About Us We are a leading healthcare technology organization committed to improving supply chain efficiency and patient care. Our security team protects the critical infrastructure that healthcare providers depend on every day. Employment Details • Work Authorization: Must be legally authorized to work in the United States, • Visa Sponsorship: Not available for this position, • Third-Party Recruiters: Please do not contact us. Direct applicants only., • Employment Type: W2 Full-Time Employee (no Corp-to-Corp, 1099, or contract arrangements), • Location Requirement: Must reside in the United States Keywords for ATS Privileged Access Management, PAM, CyberArk, SailPoint, Okta, BeyondTrust, IAM, Identity and Access Management, Security Engineering, Security Architecture, CISSP, MITRE ATT&CK, Threat Intelligence, Security Operations, SecOps, Cloud Security, Endpoint Security, Security Automation, Cybersecurity, Information Security, Access Control, Zero Trust, Security Metrics, Forensics, Incident Response, Risk Management, Compliance, SOC, Security Tools, Remote, Staff Engineer, Senior Security Engineer, US Citizen, Work Authorization, Direct Hire, W2 Ready to Apply? If you're passionate about security, love solving complex problems, and want to make a real impact, we want to hear from you. Apply today and let's talk about how you can help us build world-class security. We are an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. Note to Staffing Agencies & Third-Party Recruiters: We are not accepting candidate submissions from agencies or third-party vendors for this position. Direct applicants only. #LI-Remote #DirectHire #W2Only