PAM Engineer

LeidosTampa, FL
5h

About The Position

Leidos has an immediate need for a PAM Engineer to join our team executing Wave 2 of the USSOCOM Zero Trust Integration effort. This role is critical to Line of Effort 2, focusing on the deployment and operationalization of an enterprise-wide Privileged Access Management (PAM) solution to secure the NIPR, SIPR, and Top-Secret network enclaves. The ideal candidate will be responsible for vaulting privileged credentials, enforcing Just-In-Time (JIT) access, and integrating the PAM architecture with the broader Zero Trust ecosystem. TO BE CONSIDERED YOU MUST HAVE AN ACTIVE TOP SECRET CLEARANCE WITH SCI ELIGIBILITY. Key Responsibilities PAM Solution Deployment: Lead the installation, configuration, and technical implementation of the enterprise PAM solution (Delinea focus) across multiple network enclaves. Credential Vaulting: Discover, inventory, and onboard all known privileged user, administrator, and service accounts into the secure PAM vault. Policy Enforcement: Design and configure policies for Just-In-Time (JIT) access, session recording, and privileged session monitoring to ensure zero standing privileges. Infrastructure Integration: Develop scripts and API integrations to connect the PAM solution with the existing Splunk SIEM for centralized logging and the Identity Governance (IGA) platform for lifecycle management. Security Compliance: Support the RMF accreditation process by developing Low-Level Design (LLD) documents, System Security Plans (SSP), and Standard Operating Procedures (SOPs) to achieve Authority to Operate (ATO). Enterprise Rollout: Manage the expansion of PAM policies from initial pilot groups to full enterprise enforcement for all privileged users. Required Qualifications DoD 8570 Compliance: Must hold an IAT Level II certification (e.g., Security+ CE, CCNA Security) or higher. Specific Certifications: Delinea Certified Administrator is highly preferred/required. Technical Skills: Deep expertise in Privileged Access Management (PAM) architectures and "Zero Standing Privileges" concepts. Experience implementing Just-In-Time (JIT) access workflows. Proficiency in integrating PAM tools with Active Directory, SIEM (Splunk), and IGA tools. Labor Category Description Function: Applies a set of disciplines for planning, analyzing, engineering, and designing information systems, including specialized engineering of security solutions. Responsibilities: Develops analytical and computational techniques and methodology for problem solutions. Performs enterprise-wide strategic systems planning, business information planning, and business analysis. Analyze and recommendation of security/privacy products and services. Assessment of security/privacy policies and procedures. Applies process improvement practices to reengineer methodologies and principles and business process modernization projects. Applies reverse engineering and re-engineering disciplines to develop migration strategic and planning documents. Education and Experience Education: BA/BS or MA/MS Years Exp: 3-10 A Journeyman level candidate has 3 to 10 years of experience and a BA/BS or MA/MS degree and typically performs all functional duties independently. If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares. Original Posting: January 27, 2026 For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above. Pay Range: Pay Range $87,100.00 - $157,450.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Requirements

  • TO BE CONSIDERED YOU MUST HAVE AN ACTIVE TOP SECRET CLEARANCE WITH SCI ELIGIBILITY
  • DoD 8570 Compliance: Must hold an IAT Level II certification (e.g., Security+ CE, CCNA Security) or higher.
  • Technical Skills: Deep expertise in Privileged Access Management (PAM) architectures and "Zero Standing Privileges" concepts.
  • Experience implementing Just-In-Time (JIT) access workflows.
  • Proficiency in integrating PAM tools with Active Directory, SIEM (Splunk), and IGA tools.
  • Education: BA/BS or MA/MS
  • Years Exp: 3-10

Nice To Haves

  • Specific Certifications: Delinea Certified Administrator is highly preferred/required.

Responsibilities

  • PAM Solution Deployment: Lead the installation, configuration, and technical implementation of the enterprise PAM solution (Delinea focus) across multiple network enclaves.
  • Credential Vaulting: Discover, inventory, and onboard all known privileged user, administrator, and service accounts into the secure PAM vault.
  • Policy Enforcement: Design and configure policies for Just-In-Time (JIT) access, session recording, and privileged session monitoring to ensure zero standing privileges.
  • Infrastructure Integration: Develop scripts and API integrations to connect the PAM solution with the existing Splunk SIEM for centralized logging and the Identity Governance (IGA) platform for lifecycle management.
  • Security Compliance: Support the RMF accreditation process by developing Low-Level Design (LLD) documents, System Security Plans (SSP), and Standard Operating Procedures (SOPs) to achieve Authority to Operate (ATO).
  • Enterprise Rollout: Manage the expansion of PAM policies from initial pilot groups to full enterprise enforcement for all privileged users.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service