GuidePoint Security Logo

GuidePoint Security

Privileged Access Management Engineer - Delinea (Remote in the US)

Posted 4 Days Ago
Be an Early Applicant
Easy Apply
Remote
Hiring Remotely in USA
Mid level
Easy Apply
Remote
Hiring Remotely in USA
Mid level
The PAM Engineer designs, deploys, and manages Privileged Access Management solutions, focusing on account security and compliance, while collaborating with various teams to implement secure practices.
The summary above was generated by AI

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

Position Overview

We are growing!  GuidePoint Security is hiring a PAM Engineer to join our implementation team on a full-time basis.  This is a fully remote role where we are looking for relevant experience with Delinea/Thycotic, CyberArk or BeyondTrust. 

The Privileged Access Management (PAM) Engineer is responsible for designing, deploying, administering, and optimizing enterprise-grade PAM solutions with a primary focus on Delinea Secret Server, CyberArk Privileged Cloud, and modern PAM practices. This role ensures secure management of privileged accounts, service accounts, credentials, secrets, and high-risk access workflows across the organization. The engineer will work closely with security, infrastructure, DevOps, and application teams to implement and maintain advanced PAM controls and best practices.

Key Responsibilities

  • Deploy, configure, manage, and support Delinea Secret Server (On-Prem/Cloud) and CyberArk Privileged-Cloud environments.
  • Manage vaulting, onboarding, and lifecycle governance for privileged, shared, and service accounts.
  • Maintain password rotation policies, session management, access workflows, and security controls.
  • Implement and oversee privileged session monitoring, session recording, and behavioral alerts.
  • Ensure adherence to least-privilege and Zero-Trust principles for all privileged identities.

Modern PAM & Non-Human Identity Management (NHIM)

  • Support modern PAM capabilities such as:
    • Just-in-Time (JIT) privilege elevation
    • Ephemeral and dynamic credentials
    • Secrets management APIs / integrations
    • Cloud-native privileged access management
    • Credential discovery, scanning, and risk classification
    • Hybrid identity governance for machine accounts
  • Assist in building automated credential workflows for CI/CD pipelines and DevOps systems.

Technical Implementation & Engineering

  • Integrate PAM platforms with AD/LDAP, Azure AD, SSO/IDP, SIEM, MFA, ticketing systems, and cloud services (AWS/Azure/GCP).
  • Onboard new systems, servers, applications, databases, and network devices to Delinea and CyberArk.
  • Configure connectors, distributed engines, secrets management API endpoints, and credential plugins.
  • Develop automation for onboarding, rotation, and monitoring using PowerShell, Python, or REST APIs.

Minimum Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or related field — or equivalent work experience.
  • 3-5+ years of experience in Privileged Access Management engineering or Consulting
  • Hands-on experience with Delinea Secret Server (on-prem or cloud) including password rotation, connectors, RBAC, and auditing.
  • Experience in implementing CyberArk Privileged Cloud (or CyberArk CorePAS)
  • Strong understanding of privileged account governance, password rotation, service account automation, and session management.
  • Experience with Windows/Linux server administration and Active Directory.
  • Familiarity with scripting (PowerShell, Python) and REST APIs.
  • Knowledge of common security frameworks and access control principles.

Preferred Qualifications

  • 3-5 years of IT Professional services and consulting experience
  • Professional certifications such as:
    • Delinea Certified Engineer
    • CyberArk Defender / CyberArk Sentry / Guardian
    • CISSP, CISM, Security+, CCSP, or similar
  • Exposure to modern PAM capabilities:
    • Ephemeral access
    • Credential-less access
    • Cloud secrets management
    • Certificate lifecycle management
  • Experience integrating PAM with DevOps pipelines (Jenkins, GitHub, Azure DevOps, GitLab).
  • Background in cloud security for AWS, Azure, and/or GCP.
  • Experience in NHIM/Machine Identity Governance tools.
  • Ability to design PAM architectures and drive enterprise-wide PAM programs.

The Team

Coming to the PAM team means working on the leading edge in the PAM space. As a PAM Engineer, you will be partnering with other engineers and architects to help some of the largest companies in the US implement their own PAM programs. From participating in assessments to full delivery of a PAM platform, you can expect to be involved at all levels of interaction with our customers. Your leadership and expertise are critical to providing our customers with the guidance they need, and the excellence they expect from GuidePoint Security. 

We partner with the largest vendors in the space to ensure that the latest training is always available to our team. High level communication and collaboration are the standard. Mentorship at all levels, from Senior Architects to Junior Engineers, is foundational to our culture. We don’t just talk about work life balance; we facilitate it with a flexible time off (FTO) benefit. 

We understand that in order to retain our talented team, leadership must provide regular feedback and coaching. We recruit new members to the team with the understanding that opportunities for growth are important. Whether your goals include future leadership opportunities, becoming an Architect or even moving to another discipline within security in time, the leadership team is focused on partnering with you to help achieve them.


We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.


Why GuidePoint?
GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1000 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 4,200 customers.

Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.  

This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.
Some added perks….

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family) and GPS will contribute in one lump sum: ($500 per EE annually / $1000 per family annually (includes spouse/children/family options)
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option

Top Skills

Active Directory
AWS
Azure
Azure Ad
Beyondtrust
Cyberark
Delinea Secret Server
GCP
Powershell
Python
Rest Apis

Similar Jobs

An Hour Ago
Remote or Hybrid
New Hampshire, USA
Junior
Junior
AdTech • Digital Media • Marketing Tech
Develops and maintains local client relationships for advertising, analyzes market research, generates ad sales revenue, and provides marketing support.
Top Skills: AdvertisingClient Relationship ManagementDigital ToolsMarket ResearchMedia Sales
2 Hours Ago
In-Office or Remote
Washington, DC, USA
172K-271K Annually
Senior level
172K-271K Annually
Senior level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
The Account Executive is responsible for managing strategic accounts, nurturing customer relationships, and leading cross-functional teams to enhance Atlassian's presence in the public sector, particularly within the Defense Industrial Base.
Top Skills: Analytic ToolsCRMPipeline Management
2 Hours Ago
Remote or Hybrid
UT, USA
20-29 Hourly
Mid level
20-29 Hourly
Mid level
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
Provide technical customer support, train customers on products, resolve technical issues, document inquiries, and ensure high customer satisfaction.
Top Skills: Crm Case LoggingGenesys Pure CloudSalesforce

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account