Senior Privileged Access Management Engineer
The Senior Privileged Access Management Engineer is responsible for the architecture, implementation, and ongoing operation of enterprise Privileged Access Management (PAM) capabilities. The incumbent serves as a technical lead for the PAM solution on the Identity & Access Management team to reduce privilege-related risk and strengthen Republic Services' security posture. The Senior Privileged Access Management Engineer is responsible for managing the enterprise Multi-Factor Authentication (MFA) environment, ensuring robust authentication controls are in place to protect sensitive accounts and resources. The incumbent plays a critical role in the lifecycle management of privileged identities, credentials, and access across on-premises, cloud, and hybrid environments, ensuring secure access, strong governance, and operational resilience.
Principal Responsibilities:
- Serves as the technical lead and subject matter expert (SME) for the enterprise PAM program.
- Designs, implements, and administers Delinea Secret Server in a large enterprise environment.
- Engineers PAM integrations with enterprise systems including Active Directory, cloud platforms, databases, and applications.
- Supports and enhances privileged endpoint controls, with preference for experience using Delinea Privilege Manager.
- Partners with IAM teams to align PAM controls with identity lifecycle processes and access governance standards.
- Collaborates with infrastructure, cloud, DevOps, and application teams to design secure privileged access patterns.
- Designs and maintains operational processes for PAM onboarding, exception handling, and emergency access workflows.
- Contributes to the administration and integration of an enterprise-grade Multi-Factor Authentication (MFA) solution.
- Develops and maintains technical documentation, standards, and operating procedures.
- Performs Level 3 / Level 4 support for PAM-related incidents and root cause analysis.
- Leads PAM-related projects, upgrades, and feature rollouts.
- Mentors and provides technical guidance to junior engineers.
- Performs other job-related duties as assigned or apparent.
Qualifications:
- Extensive hands-on experience with Delinea Secret Server in an enterprise environment
- Experience with Delinea Privilege Manager or similar endpoint privilege elevation tools
- Experience supporting or administering an enterprise MFA platform
- Familiarity with PAM in hybrid or cloud environments
- Scripting or automation experience related to security tooling
- Certifications such as Delinea Certified Engineer, CISSP, CCSP, CISM, or SC-300
Minimum Requirements:
- Minimum of 5 years of experience in an information security role with progressive experience in designing and implementing enterprise security solutions.
- Experience implementing and operating Identity & Access Management tools and applications or Vulnerability Management tools and applications.
- Experience administrating application security tools in a DevOps, IAM or other relevant cyber security functions.
Pay Range: $109,500-150,600. DOE
Candidate will be expected to work Arizona hours.
Please note, this position is not sponsorship eligible.
Rewarding Compensation and Benefits
Eligible employees can elect to participate in:
- Comprehensive medical benefits coverage, dental plans and vision coverage.
- Health care and dependent care spending accounts.
- Short- and long-term disability.
- Life insurance and accidental death & dismemberment insurance.
- Employee and Family Assistance Program (EAP).
- Employee discount programs.
- Retirement plan with a generous company match.
- Employee Stock Purchase Plan (ESPP).
- Paid Time Off (PTO)
The statements used herein are intended to describe the general nature and level of the work being performed by an employee in this position, and are not intended to be construed as an exhaustive list of responsibilities, duties and skills required by an incumbent so classified. Furthermore, they do not establish a contract for employment and are subject to change at the discretion of the Company.
EEO STATEMENT: Republic Services is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, protected veteran status, relationship or association with a protected veteran (spouses or other family members), genetic information, or any other characteristic protected by applicable law.