Kalles Group · 2 months ago
Consultant - Platform Engineer (BeyondTrust) - PAM
Kalles Group is dedicated to enhancing security for businesses of all sizes. They are seeking a Privileged Access Management (PAM) Platform Engineer with expertise in BeyondTrust to design, implement, and manage enterprise PAM solutions, significantly improving the organization's security posture.
ConsultingCyber SecurityInformation Technology
Responsibilities
Oversee implementation of BeyondTrust
Lead the architecture, deployment, and optimization of PAM solutions, including password vaulting, endpoint privilege management, and session management
Plan and execute enterprise-scale PAM implementations across Windows, macOS, and Linux platforms
Define and maintain privilege elevation policies, credential rotation processes, and governance workflows in alignment with compliance standards
Integrate PAM platforms with ITSM, SIEM, vulnerability management, directory services, and other enterprise security systems
Provide advanced troubleshooting, performance optimization, and support for PAM-related incidents and access requests
Ensure compliance with industry standards by implementing audit trails, session recording, and privileged account governance
Create and maintain technical documentation, standard operating procedures, and training materials
Continuously evaluate new PAM features and best practices to improve security and efficiency
Qualification
Required
Deep experience and expertise in BeyondTrust
4–6+ years of hands-on experience implementing and managing enterprise PAM platforms (pref experience in BeyondTrust)
Vendor certifications for PAM platforms are a plus (e.g., CyberArk Certified Delivery Engineer, BeyondTrust Certified Implementation Engineer, Delinea Certified Professional)
Deep knowledge of privileged account discovery, credential management, password rotation, and session management
Strong skills in Windows Server administration, Active Directory, Group Policy, and PowerShell scripting
Experience with Linux/Unix administration and shell scripting for multi-platform PAM deployment
Understanding of network fundamentals, including protocols, ports, certificates, load balancing, and system hardening
Experience with cloud environments (AWS, Azure) and containerization (Docker, Kubernetes)
Familiarity with identity and access protocols (SAML, OIDC, OAuth, SCIM, LDAP)
Preferred
Experience working with multiple PAM solutions and managing migration/integration projects
Knowledge of DevOps, CI/CD pipelines, and Infrastructure as Code tools (Terraform, Ansible)
Integration experience with ITSM platforms (ServiceNow, Jira) and SIEM systems (Splunk, QRadar)
Understanding of zero trust security principles and least privilege access
Familiarity with secrets management platforms (e.g., HashiCorp Vault, AWS Secrets Manager, Azure Key Vault)
Industry certifications such as CISSP, CISM, or cloud security credentials