Ähnliche Jobs

PAM Engineer

PAM Engineer

PAM Engineer

PAM Engineer

Trust in SODA - Tech Recruitment

Banken, Finanzdienstleistungen

Basel

  • Art der Beschäftigung: Vollzeit
  • 94.500 CHF – 127.000 CHF (von XING geschätzt)
  • Hybrid
  • Aktiv auf der Suche

PAM Engineer

Über diesen Job

Job Type
Contract
Salary
CHF500 - CHF550 per day
PAM Engineer
  • Location: Switzerland - Basel – Remote
  • Duration: 6 months
  • Pay Rate : 500CHF – 550CHF per day

Overview
The role is responsible for establishing robust security controls for privileged identities, ensuring compliance with regulatory requirements, and embedding PAM as a core enterprise security capability.

The PAM SME will act as a technical authority, owning PAM architecture, policy definition, onboarding standards, and operational governance, and will work closely with Cyber Security, Infrastructure, IAM, and Application teams to drive adoption and continuous improvement.

Key Responsibilities
Strategy & Architecture
  • Define and maintain the PAM architecture aligned with enterprise security strategy and Zero Trust principles.
  • Develop and maintain PAM roadmaps, standards, and design patterns.
  • Ensure PAM solutions integrate effectively with IAM, SIEM, directory services, and cloud platforms.
  • Own PAM Tiering models and enforce Tier 0 protections.

Engineering & Implementation
  • Lead PAM deployments and technical onboarding of:
o Domain and directory accounts
o Service accounts
o Local administrator accounts
o Application and DevOps identities
  • Design and configure:
o Credential vaulting and rotation
o Session brokering and recording
o Just-in-Time access
o Secrets management
  • Provide technical leadership for PAM upgrades, migrations, and platform consolidation.

Governance, Risk & Compliance

  • Develop PAM policies, procedures, and control frameworks.
  • Ensure alignment with security standards (e.g. ISO 27001, NIST, CIS Controls, GMP / GxP where applicable).
  • Support audits, internal controls testing, and regulatory inspections.
  • Own risk assessments related to privileged access and remediation planning.

Operations & Continuous Improvement
  • Establish PAM operational models and procedures (runbooks and SOPs).
  • Define service KPIs and performance metrics.
  • Manage incident response activities involving privileged access compromise.
  • Drive onboarding automation and self-service capabilities.
Stakeholder Engagement
  • Act as technical advisor to IT Security leadership and programme sponsors.
  • Collaborate with application owners and infrastructure teams to onboard systems securely.
  • Provide training, coaching, and knowledge transfer to operational teams.
  • Support vendor management and product evaluations.

Essential Skills & Experience
Technical Expertise
  • Deep expertise with at least one enterprise PAM platform (e.g. Delinea, CyberArk, BeyondTrust, One Identity, HashiCorp Vault).
  • Strong Active Directory / Entra ID integration knowledge.
  • Experience with Windows, Linux, Unix privileged account management.
  • Understanding of networking, certificates, and identity security controls.
  • SIEM integration and PAM alerting experience.

Professional Experience
  • Proven experience as a PAM engineer, architect, or SME in a large enterprise environment.
  • Experience designing Tier 0 / Tier 1 controls and identity security frameworks.
  • Experience working with regulated environments (e.g. finance, healthcare, life sciences, manufacturing).
  • Demonstrated ability to lead technical designs and influence stakeholders.

Soft Skills

  • Strong communication and stakeholder management skills.
  • Ability to translate technical controls into business risk language.
  • Structured problem-solving approach.
  • Capable of operating independently and leading workstreams.

Desirable Qualifications

o Vendor certifications (CyberArk Defender, Delinea Specialist, etc.)

Gehalts-Prognose

Unternehmens-Details

company logo

Trust in SODA - Tech Recruitment

Personaldienstleistungen und -beratung

11-50 Mitarbeitende

Berlin, Deutschland

Ähnliche Jobs

Netzwerk & Security Engineer (m/w/d)

ROCKEN

Basel + 0 weitere

80.000 CHF100.000 CHF

Netzwerk & Security Engineer (m/w/d)

Basel + 0 weitere

ROCKEN

80.000 CHF100.000 CHF

Senior Network & Security Engineer (m/w/d)

ROCKEN

Pratteln + 0 weitere

120.000 CHF135.000 CHF

Senior Network & Security Engineer (m/w/d)

Pratteln + 0 weitere

ROCKEN

120.000 CHF135.000 CHF

(Senior) Security Analyst (m/w/d)

ROCKEN

Muttenz + 0 weitere

100.000 CHF130.000 CHF

(Senior) Security Analyst (m/w/d)

Muttenz + 0 weitere

ROCKEN

100.000 CHF130.000 CHF

SOC Incident Specialist (m/w/d)

ROCKEN

Münchenstein + 0 weitere

89.500 CHF123.000 CHF

SOC Incident Specialist (m/w/d)

Münchenstein + 0 weitere

ROCKEN

89.500 CHF123.000 CHF

Senior IT Security Engineer (m/w/d)

ROCKEN

Muttenz + 0 weitere

110.000 CHF130.000 CHF

Senior IT Security Engineer (m/w/d)

Muttenz + 0 weitere

ROCKEN

110.000 CHF130.000 CHF

Network Engineer – Security & Firewalls (m/w/d)

ROCKEN

Basel + 0 weitere

110.000 CHF120.000 CHF

Network Engineer – Security & Firewalls (m/w/d)

Basel + 0 weitere

ROCKEN

110.000 CHF120.000 CHF

System Engineer Infrastruktur (m/w)

BROMsolutions AG

Basel + 0 weitere

88.000 CHF117.000 CHF

System Engineer Infrastruktur (m/w)

Basel + 0 weitere

BROMsolutions AG

88.000 CHF117.000 CHF

Impact Network Expert - International

Roche

Basel + 0 weitere

Impact Network Expert - International

Basel + 0 weitere

Roche

Cloud Security Engineer (m/w)

BROMsolutions AG

Basel + 0 weitere

91.000 CHF125.500 CHF

Cloud Security Engineer (m/w)

Basel + 0 weitere

BROMsolutions AG

91.000 CHF125.500 CHF