hirly

Verisign

PAM Engineer - BeyondTrust

Reston,Virginia,United States

Apply through hirly

hirly scores this role against your resume, shows its reasoning, then writes a resume and cover letter for it and fills the application with you. Free to start — no card required.

hirly's read of this role

Seniority
Mid level
Stated salary
$135,800 – $183,800 per year
Country
US
Work mode
On-site / unstated
First seen by hirly
13 Sept 2026

Derived automatically from the posting. Sign up to see how the role scores against your own resume.

the posting

Verisign helps enable the security, stability, and resiliency of the internet. We are a trusted provider of internet infrastructure services for the networked world and deliver unmatched performance in domain name system (DNS) services.

We are a mission focused, values driven company where each individual can contribute to building a stronger, more secure internet. We offer a dynamic and flexible work environment with competitive benefits and the ability to grow your career.

Verisign is seeking an experienced Privileged Access Management (PAM) Engineer to design, implement, administer, and enhance enterprise privileged access and identity security solutions. This hands-on technical role will focus on PAM engineering, Microsoft Entra ID administration, automation, application integrations, and operational support.

The ideal candidate has deep experience with enterprise PAM technologies such as BeyondTrust, strong Microsoft Entra ID expertise, and a solid understanding of IAM, identity governance, authentication, and access security. This individual will partner with security, infrastructure, application, and architecture teams to deliver secure, scalable, and reliable identity solutions.

Responsibilities

Design, implement, configure, administer, and maintain enterprise PAM solutions, in BeyondTrust

Administer and enhance Microsoft Entra ID, including enterprise applications, authentication, Conditional Access, role-based access control (RBAC), Privileged Identity Management (PIM), MFA, and SSO

Onboard applications, privileged accounts, service accounts, and other identities into PAM platforms

Configure and maintain privileged account policies, credential management, password rotation, session management, and access controls

Integrate PAM solutions with enterprise applications, directories, identity platforms, and infrastructure

Engineer and support integrations across PAM, IAM, IGA, MFA, and SSO technologies

Develop scripts and automation to streamline account onboarding, provisioning, testing, monitoring, and other identity-related processes

Implement automated testing and validation where appropriate to improve reliability and deployment efficiency

Support privileged access reviews, access certifications, and remediation activities to meet security, audit, and compliance requirements

Partner with security architects and engineering teams to develop technical designs and implement security controls based on least privilege and Zero Trust principles

Evaluate new PAM and identity technologies and recommend improvements that strengthen security and operational efficiency

Develop and maintain technical documentation, including system configurations, architecture diagrams, integration designs, operational procedures, and troubleshooting guides

Participate throughout the solution lifecycle, including design, development, testing, deployment, production support, upgrades, and ongoing maintenance

Qualifications

Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field, or equivalent experience

8+ years of experience in PAM, IAM, identity security, security engineering, or related technologies

2+ years of hands-on experience implementing and administering enterprise PAM platforms in BeyondTrust

Experience administering Microsoft Entra ID in an enterprise environment

Experience with Entra ID capabilities including Conditional Access, RBAC, PIM, MFA, SSO, enterprise applications, and identity/access management

Strong understanding of PAM concepts, including privileged account management, credential vaulting, password rotation, session management, least privilege, and privileged access controls

Experience integrating PAM solutions with directories, applications, servers, cloud platforms, and other enterprise technologies

Experience with scripting and automation using technologies such as PowerShell, Python, REST APIs, or similar tools

Strong understanding of authentication, authorization, identity lifecycle management, and security best practices

Experience supporting audit and compliance requirements, including Sarbanes-Oxley (SOX) controls, preferably in a high-tech environment

This position is based in our Reston, VA office and offers a hybrid work schedule.

The pay range is $135,800 - $183,800.

The anticipated annual base salary range for this position is noted above, however, base pay offered may vary depending on job-related knowledge, skills, experience. Verisign offers a discretionary bonus which is based on individual and company performance, and certain roles may be eligible for discretionary stock awards.

Verisign is an equal opportunity employer. That means we recruit, hire, compensate, train, promote, transfer, and administer all terms and conditions of employment without regard to their race, color, religion, national origin, sex, sexual orientation, gender identity, age, protected veteran status, disability, or other protected categories under applicable law.

  • Additional Information:
  • Our Careers Page
  • Our Benefits Summary
  • Verisign in the Community
  • Our EEO Statement
  • Our Privacy Notice for Job Applicants/Candidates
  • Reasonable Accommodations

Staffing agency policy: No fees will be paid for unsolicited resumes submitted to Verisign or our employees by third parties.

Is this role actually a fit for you?

hirly answers with a score and its reasoning, then writes the resume and cover letter if you decide to go for it.

Score it against my resume
PAM Engineer - BeyondTrust at Verisign — hirly