Talent.com
PAM Lead Engineer
PAM Lead EngineerCRC Insurance Services, Inc. • Charlotte, NC, United States
PAM Lead Engineer

PAM Lead Engineer

CRC Insurance Services, Inc. • Charlotte, NC, United States
2 days ago
Job type
  • Full-time
Job description

The position is described below. If you want to apply, click the Apply button at the top or bottom of this page. You'll be required to create an account or sign in to an existing one.

If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (careers@crcgroup.com?subject=Accommodation%20request) (accommodation requests only; other inquiries won't receive a response).

Regular or Temporary :

Regular

Language Fluency : English (Required)

Work Shift :

1st Shift (United States of America)

Please review the following job description :

The Privileged Access Management (PAM) Lead Engineer is responsible for the design, implementation, and oversight of the organization’s privileged access management program, ensuring protection and proper management of sensitive accounts and credentials. Collaborates cross-functionally to manage tools, develop / enhance policies, and respond to privileged access security incidents. Serves as subject matter expert and mentor for privileged access management best practices.

KEY RESPONSIBILITIES

Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

Develop and implement strategies, policies, and controls to reduce privileged access and streamline the management of privileged entitlements, including hardening PAM policies to ensure robust controls for critical applications supporting a least privilege model. Track reduction in privileged account incidents and regularly report on improvements in access review completion times to demonstrate measurable progress.

Assess privileged access risks and recommend solutions in partnership with IT, security, and business teams, incorporating Zero Trust framework principles and enforcing least privilege access policies to minimize risk and ensure robust protection of critical assets. Measure compliance rates against audit requirements and report on mitigation effectiveness to ensure accountability.

Lead roadmap development and continuous improvement of PAM frameworks. Design, implement, and manage PAM solutions to safeguard critical systems and data, with regular tracking and reporting on the adoption and effectiveness of new PAM features and controls.

Lead integration of PAM tools with IAM platforms and relevant enterprise applications, measuring successful integration milestones and tracking reductions in access-related incidents post-implementation.

In partnership with IT, define and implement Just-in-Time (JIT) and Role-Based Access Control (RBAC) models related to privileged access and entitlements leveraging IAM automation framework. Monitor and report on the reduction of unnecessary entitlements.

Act as a Subject Matter Expert (SME) and technical lead for PAM initiatives. Provide expert guidance, training, and support for technical teams and end users regarding privileged access and evaluate the effectiveness of training programs through feedback and improvement in compliance metrics.

Align PAM architecture and processes with regulatory frameworks (CFIUS, SOX, HIPAA, GDPR, PCI). Perform regular access reviews of privileged accounts, permissions, and entitlements across environments. Measure and report on access review completion rates and compliance with Cyber policies and audit requirements.

Monitor, audit, and report on privileged account activities for compliance and anomaly detection. Define and implement proactive and / or automated controls when possible and regularly share metrics on detection rates and remediation times.

Respond to and investigate privileged account security incidents, drive root cause analysis and remediation, and track incident response times and reductions in repeat incidents to demonstrate ongoing improvement.

Develop / enhance, document, and enforce privileged account operational lifecycle policies, standards, and procedures, measuring adherence rates and reporting on policy update frequency to ensure continual alignment with organizational needs.

Stay informed on emerging PAM trends, threats, and technologies; implement improvements accordingly and communicate the impact of these enhancements via quarterly progress reports.

Mentor and lead PAM engineers in project and daily operations, monitoring skill development and project success rates to ensure effective team growth and operational excellence.

Continue to maintain a comprehensive approach to privileged access management by regularly reviewing and updating responsibilities to reflect changes in technology, regulations, and organizational needs, and report annually on these updates and their impact on PAM program effectiveness.

EDUCATION AND EXPERIENCE

The requirements listed below are representative of the knowledge, skill and / or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience is required.

5+ years of experience in identity and access management, with a strong emphasis on privileged access and PAM solutions is required.

CERTIFICATIONS, LICENSES, REGISTRATIONS

  • Relevant certifications (CISSP, CISM, vendor-specific PAM) preferred.

FUNCTIONAL SKILLS

Expertise with PAM tools (e.g., CyberArk, Azure PIM (APIM)) and IAM platform integration.

Solid foundation in authentication, authorization, and access control concepts.

Demonstrated experience leading process re-engineering initiatives for PAM operations, implementing automation solutions, and driving data-driven risk remediation across enterprise environments.

Advanced scripting / automation experience for PAM operations using PowerShell, Python, or similar tools such as Ansible or Bash.

Ability to identify and assess privileged access and entitlement risks, and to define and implement effective mitigation strategies.

Experience with regulatory standards (SOX, PCI-DSS, HIPAA) and compliance requirements.

Strong analytical, problem-solving, and communication skills.

Knowledge of securing privileged access in cloud and hybrid / multi-cloud environments.

Demonstrated leadership in managing cross-functional teams and successful delivery of cloud security projects (e.g., overseeing cloud migration initiatives, coordinating with stakeholders across IT and business units, or implementing security automation in multi-cloud environments).

Ability to operate effectively in a dynamic, fast-paced environment.

May require on-call availability and participation in incident response outside regular hours.

Works closely with IT Security, Infrastructure, and Application teams to ensure privileged access security and compliance across the organization.

General Description of Available Benefits for Eligible Employees of CRC Group : At CRC Group, we're committed to supporting every aspect of teammates' well-being – physical, emotional, financial, social, and professional. Our best-in-class benefits program is designed to care for the whole you, offering a wide range of coverage and support. Eligible full-time teammates enjoy access to medical, dental, vision, life, disability, and AD&D insurance; tax-advantaged savings accounts; and a 401(k) plan with company match. CRC Group also offers generous paid time off programs, including company holidays, vacation and sick days, new parent leave, and more. Eligible positions may also qualify for restricted stock units and / or a deferred compensation plan.

CRC Group supports a diverse workforce and is an Equal Opportunity Employer that does not discriminate against individuals on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status or other classification protected by law. CRC Group is a Drug Free Workplace.

EEO is the Law () Pay Transparency Nondiscrimination Provision E-Verify ()

Join CRC Group, a leader in specialty wholesale insurance, and take your career to new heights. We're a dynamic team dedicated to innovation, collaboration, and excellence.

Why CRC Group?

  • Growth : Advance your career with our learning and leadership development programs.
  • Innovation : Work in a forward-thinking environment that values new ideas.
  • Community : Be part of a supportive team that celebrates success together.
  • Benefits : Enjoy competitive compensation, health benefits, and retirement plans.
  • Who We’re Looking For

    We seek passionate individuals who thrive in a fast-paced, collaborative environment. If you value integrity and are driven to succeed, CRC Group is the place for you.

    Create a job alert for this search

    Lead Engineer • Charlotte, NC, United States

    Related jobs
    Shift Leader

    Shift Leader

    Papa Johns • China Grove, NC, US
    Full-time
    The Shift Leader supervises shifts and / or work areas in the operation of a Papa John’s restaurant to ensure high quality products and customer service are delivered to ensure restaurant profi...Show more
    Last updated: 14 days ago • Promoted
    Controls Automation Engineer

    Controls Automation Engineer

    US0767 Prysmian Cables and Systems Usa LLC • Claremont, NC, US
    Full-time
    Prysmian is the world leader in the energy and telecom cable systems industry.Each year, Prysmian manufacturers.We also produce a comprehensive range of. We are 30,000 employees, across 50+ countrie...Show more
    Last updated: 30+ days ago • Promoted
    Lead the Team, Rule the Day Shift

    Lead the Team, Rule the Day Shift

    Southern Health Partners • Mount Ulla, NC, US
    Full-time
    Lead with Integrity – RN Medical Team Administrator.Southern Health Partners (SHP).Our nurses are the foundation of our success, making life-and-death decisions every day with integrity, compassion...Show more
    Last updated: 9 hours ago • Promoted • New!
    EHS Engineer

    EHS Engineer

    Commscope • Catawba, North Carolina, US
    Full-time
    In our 'always on' world, we believe it's essential to have a genuine connection with the work you do.Our EHS team is growing, and we are adding an Environmental, Health & Safety (EH&S) Engineer on...Show more
    Last updated: 30+ days ago • Promoted
    Lead Generation Specialist

    Lead Generation Specialist

    Finexio • Charlotte, NC, US
    Full-time
    AP Payments as a Service, the leading embedded payments approach for business-to-business payments.Finexio simplifies the way businesses process and receive B2B payments by integrating electronic p...Show more
    Last updated: 30+ days ago • Promoted
    Technician, Process Engineering

    Technician, Process Engineering

    Commscope • Catawba, North Carolina, US
    Full-time
    In our ‘always on’ world, we believe it is essential to have a genuine connection with the work you do.Together we are manufacturing the future! We are looking for extraordinarily hardworking and f...Show more
    Last updated: 1 day ago • Promoted
    Rope Ascender Technical and Training Specialist

    Rope Ascender Technical and Training Specialist

    Staffmark Group • Clover, SC, United States
    Full-time
    Staffmark is seeking an experienced Rope Ascender Technical & Training Specialist to sell powered rope ascender solutions. Compensation : $110,000 - $130,000 annually + bonus plan.Schedule : Monday - ...Show more
    Last updated: 6 days ago • Promoted
    Diesel Reefer Techs - Start at $35 / Hour - Up to $5k Sign-On + Benefits

    Diesel Reefer Techs - Start at $35 / Hour - Up to $5k Sign-On + Benefits

    Sysco • Clover, SC, US
    Full-time
    Sysco is Now Hiring Reefer Technicians in Concord, NC!.Hour + Up to $5,000 Sign-On Bonus •.Plus a $600 Annual Tool Allowance + Boot Allowance. We offer our colleagues the opportunity to grow personal...Show more
    Last updated: 12 hours ago • Promoted • New!
    Technical Delivery Lead

    Technical Delivery Lead

    TEKsystems • Fort Mill, SC, United States
    Full-time
    Project Overview • This role supports a •brand-new development team • established for the onboarding of •a strategic client •, a critical workstream tied to a major acquisition.The Delivery Enablement...Show more
    Last updated: 8 days ago • Promoted
    Lead Generation Specialist - Statesville Area

    Lead Generation Specialist - Statesville Area

    ARS-Rescue Rooter • Statesville, NC, US
    Full-time +1
    Part-time and full-time opportunities available.Join Brothers, the nation's largest provider of residential HVAC, plumbing, and electrical services with 7,000+ professionals and over 45 years o...Show more
    Last updated: 30+ days ago • Promoted
    CMA -Ambulatory Clinics - Float

    CMA -Ambulatory Clinics - Float

    Duke Clinical Research Institute • Mooresville, NC, United States
    Full-time
    At Duke Health, we're driven by a commitment to compassionate care that changes the lives of patients, their loved ones, and the greater community. No matter where your talents lie, join us and disc...Show more
    Last updated: 30+ days ago • Promoted
    Mechanical Engineer

    Mechanical Engineer

    Solenis LLC • Fort Mill, SC, United States
    Full-time
    Solenis is a leading global producer of specialty chemicals focused on delivering sustainable solutions for water-intensive industries, including consumer, industrial, institutional, food and bever...Show more
    Last updated: 30+ days ago • Promoted
    Manufacturing Engineer

    Manufacturing Engineer

    Atlas Copco • Rock Hill, SC, US
    Full-time
    Our solutions are a key part of most industries - electronics, medical research, renewable energy, food production, infrastructure and many more. Working with us means working with the latest techno...Show more
    Last updated: 30+ days ago • Promoted
    Senior Mechanical Design Engineer

    Senior Mechanical Design Engineer

    IFABCORP • Gastonia, NC, US
    Full-time
    Design, validate, and document devices, tooling, and.APQP and PPAP framework, to support production and painting processes at Ifab. Technical, technological, or professional degree in Mechanical Des...Show more
    Last updated: 30+ days ago • Promoted
    Lead Transmission Line Engineer

    Lead Transmission Line Engineer

    Leidos Inc • Charlotte, NC, United States
    Full-time
    Leidos is a Fortune 500 company aimed at embracing and solving some of the world's most pressing challenges.Through science and technology,. Leidos makes the world safer, healthier and more efficien...Show more
    Last updated: 30+ days ago • Promoted
    Data Engineering Team Lead (Hybrid)

    Data Engineering Team Lead (Hybrid)

    Selective Insurance • Charlotte, NC, United States
    Full-time
    At Selective, we don't just insure uniquely, we employ uniqueness.Selective's unique position as both a leading insurance group and an employer of choice is recognized in a wide variety of awards a...Show more
    Last updated: 27 days ago • Promoted
    Manager, PLM-Global FOJP

    Manager, PLM-Global FOJP

    Commscope • Virtual, North Carolina, US
    Full-time
    In our ‘always on’ world, we believe it’s essential to have a genuine connection with the work you do.Shakopee, MN or North Carolina. This is a high-impact role responsible for leading the strategy,...Show more
    Last updated: 30+ days ago • Promoted
    Med Tech Team Lead

    Med Tech Team Lead

    KA Recruiting Inc. • Mooresville, NC, US
    Full-time
    Full, comprehensive benefits package (PTO, health insurance, life insurance, 401k, etc).MT ASCP certification required.Prior lab experience and knowledge. Supports Teammates in the execution of the ...Show more
    Last updated: 30+ days ago • Promoted