PIM/PAM Engineer

CapgeminiSan Antonio, TX
$110,000 - $135,000Remote

About The Position

Capgemini Government Solutions (CGS) LLC is seeking a PIM/PAM Engineer to support mission‑critical government clients. The ideal candidate will collaborate with a high‑performing team, engage with a broad range of stakeholders, and play a key role in expanding CGS capabilities while continuing to grow their technical and consulting expertise. The PIM/PAM Engineer is responsible for the architecture, design, implementation, and administration of enterprise-level Privileged Identity Management (PIM) and Privileged Access Management (PAM) solutions. This role ensures the secure management of privileged identities within the framework by maintaining a hardened appliance posture and enforcing the Principle of Least Privilege across the enterprise. The ideal candidate is a technical specialist who understands that identity is the new perimeter. You will act as the primary administrator for our PAM vaulting solutions, working closely with Infrastructure, DevOps, and Security Operations teams to integrate vaulting into every layer of our tech stack.

Requirements

  • Ability to obtain and maintain a DoD Secret Clearance. U.S. Citizenship is required.
  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related technical field is required.
  • 6+ of progressive IT experience required with 2-3+ years of dedicated experience in Identity and Access Management (IAM), with a strong focus on PIM/PAM engineering highly desired.
  • Deep understanding of session recording, credential vaulting, secrets management, and delegation of authority.
  • Strong foundational knowledge of Windows Active Directory, Linux/Unix administration, Group Policy Objects (GPOs), and basic networking protocols.
  • Proficiency in scripting languages (e.g., PowerShell, Python, Bash) for automation and API integrations.

Nice To Haves

  • CompTIA Security+ CE (Current) is highly desired.

Responsibilities

  • Design, deploy, configure, and maintain robust PIM/PAM solutions across enterprise, cloud, and hybrid environments.
  • Manage the lifecycle of privileged accounts, including automated vaulting, password rotation, privileged session management, and just-in-time (JIT) access.
  • Integrate PIM/PAM tools with broader identity ecosystems (IdPs, IGA, SIEM, and ticketing systems like ServiceNow) using APIs and custom scripting.
  • Define, implement, and enforce least-privilege access policies, role-based access control (RBAC), and attribute-based access control (ABAC).
  • Conduct regular discovery audits to identify unmanaged privileged accounts, service accounts, and secrets, bringing them under centralized management.
  • Provide tier-3 technical support for complex identity infrastructure issues, system upgrades, patches, and disaster recovery drills.
  • Support continuous monitoring and audit readiness by generating compliance reports and ensuring adherence to federal and DoD security frameworks.

Benefits

  • paid time off
  • medical/dental/vision insurance
  • 401(k)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service