Principal Engineer, Privileged Access Management

AIG InsuranceCharlotte, NC
Onsite

About The Position

The Identity and Access Management (IAM) team at AIG is seeking a highly skilled IAM engineer with expertise in the Idira (CyberArk) vaulting solutions and strong system integration skills. As the IAM Principal Privileged Access Engineer, you will play a critical role in designing, implementing, and maintaining our enterprise IAM infrastructure for Privileged Access Management (PAM) solutions. You will own the PAM technical architecture, platform standards, and engineering roadmap — defining how the PAM solution and complementary technologies are deployed, integrated, and evolved across the enterprise. This includes architecting integrations between the PAM solution stack and adjacent systems such as Entra ID / Active Directory, SIEM/ITDR platforms, cloud IAM (AWS, Azure, GCP), ticketing systems (ServiceNow), and CI/CD pipelines. You will also evaluate and recommend emerging PAM, ISPM, and NHI tooling to inform investment decisions and platform strategy. The role involves collaborating with cross-functional teams to gather IAM requirements and translate them into technical solutions, as well as being responsible for the configuration and deployment of vault, safes, platforms, workflows, connectors, automations, and other components to support account lifecycle protection and compliance with regulations. You will manage integrations from the PAM solution with various systems and applications, including but not limited to Active Directory, servers, databases, mainframes, and other applications. Additionally, you will implement and maintain password policies and platforms and corresponding account password management within the PAM solution. Collaboration with infrastructure, application, and development teams is key to ensure smooth integration of IAM solutions via API protocols. You will conduct integration testing to verify the functionality, performance, and security of IAM solutions and stay current with industry best practices and emerging trends in IAM, contributing to the continuous improvement of IAM processes and technologies.

Requirements

  • 10+ years of in-depth IT experience with designing, developing, and supporting PAM solutions with several years focused on IAM solutions (specifically Idira, CyberArk).
  • 10+ years of experience deploying and configuring common Idira PAM (CyberArk) connectors and plug-ins, including Active Directory (AD), Azure AD, servers, databases, mainframe, and other applications as well as creating custom connectors.
  • Familiar with software development lifecycles (SDLC) and Agile development methodologies.
  • Intellectual curiosity about the evolving NHI, agentic AI, and cloud identity security landscape — and a bias toward building program capability ahead of the threat.
  • Candidates must possess excellent verbal communication, decision making and customer service skills.
  • Ability to work in a team environment, adapt quickly to change and learn new applications or environments is required.
  • Must be highly organized and maintain quality work while meeting deadlines.
  • Extreme attention to detail is necessary due to audit and regulatory requirements.
  • Proven experience in integration testing, ensuring the seamless integration of IAM solutions with various systems and applications.
  • Strong analytical and problem-solving skills with the ability to troubleshoot complex technical issues.
  • Excellent communication skills and the ability to collaborate effectively with cross-functional teams.
  • Proactive and self-motivated with the ability to work independently and manage multiple tasks simultaneously.
  • Bachelor's degree in a Cybersecurity, Information Technology, or related field, such as Computer Science or Information Technology.

Nice To Haves

  • Valid Guardian certification in Idira (CyberArk) preferred

Responsibilities

  • Own the PAM technical architecture, platform standards, and engineering roadmap — defining how the PAM solution and complementary technologies are deployed, integrated, and evolved across the enterprise.
  • Architect integrations between the PAM solution stack and adjacent systems: Entra ID / Active Directory, SIEM/ITDR platforms, cloud IAM (AWS, Azure, GCP), ticketing systems (ServiceNow), and CI/CD pipelines.
  • Evaluate and recommend emerging PAM, ISPM, and NHI tooling to inform investment decisions and platform strategy.
  • Collaborate with cross-functional teams to gather IAM requirements and translate them into technical solutions.
  • Responsible for the configuration and deployment of vault, safes, platforms, workflows, connectors, automations, and other components to support account lifecycle protection and compliance with regulations.
  • Manage integrations from the PAM solution with various systems and applications, including but not limited to Active Directory, servers, databases, mainframes, and other applications.
  • Implement and maintain password policies and platforms and corresponding account password management within the PAM solution.
  • Collaborate with infrastructure, application, and development teams to ensure smooth integration of IAM solutions via API protocols.
  • Conduct integration testing to verify the functionality, performance, and security of IAM solutions.
  • Stay current with industry best practices and emerging trends in IAM and contribute to the continuous improvement of IAM processes and technologies.

Benefits

  • Volunteer Time Off and Matching Grants Programs
  • Total Rewards Program, a comprehensive benefits package that extends beyond time spent at work to offer benefits focused on your health, wellbeing and financial security—as well as your professional development
  • US Benefits Overview
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service