IT Engineer, Privileged Access Management (PAM)
ArchWell Health
IT Engineer, Privileged Access Management (PAM) Job Summary The Privileged Access Management (PAM) Engineer reports to the Information Security Manager and is responsible for designing, implementing, and operating enterprise PAM capabilities using Microsoft Security technologies and related platforms. This role secures privileged identities and access to critical systems, enforces least-privilege and Zero Trust principles, and supports regulatory and audit requirements. The PAM Engineer collaborates closely with IAM, Security Operations, Infrastructure, and Application teams to reduce organizational risk while maintaining a secure and user-friendly access model. The role may support security operations and incident response activities when privileged access is involved. Duties/Responsibilities Core PAM Engineering
Policy Implementation Timely implementation and maintenance of PAM policies and controls Incident Reduction Reduction in privileged account-related security incidents Audit Compliance Compliance with internal and external audit requirements Integration Success Successful integration of Microsoft Security Suite components Stakeholder Feedback Positive feedback from stakeholders on PAM processes and support Education & Experience
At ArchWell Health, we're creating a community of caring designed to help our members stay healthy and engaged. By focusing on a strong provider-patient relationship, routine wellness, and staying active, our members enjoy a higher level of care and better quality of life after the age of 60. Everything we do is for seniors. We believe seniors should be heard, listened to, and given ample time by their physicians to live well later in life.
Our value-based care model is designed to prevent illnesses while keeping members healthy and happy in every aspect of their life. We deliver best-in-class primary care at comfortable, accessible neighborhood centers where older adults can feel at home and become part of a vibrant, wellness-focused community. We're passionate about caring for older adults and united by the belief that caring has the power to change everything for our members.
ArchWell Health is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to their race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other protected classification.
- Design, implement, and maintain PAM solutions across cloud and hybrid environments using Microsoft Entra ID, Privileged Identity Management (PIM), Conditional Access, and related Microsoft security tooling
- Onboard and manage privileged user, service, and application accounts, including credential vaulting, rotation, and lifecycle management
- Configure and maintain Just-In-Time (JIT) access and privileged role workflows
- Ensure all in-scope systems, applications, vendors, and integrations are protected by PAM controls
- Ensure availability, reliability, and security of PAM platforms and services
- Monitor PAM-related alerts and logs using Microsoft Sentinel and Defender XDR
- Support investigation and response to incidents involving privileged account misuse or compromise
- Collaborate with Security Operations and MSSPs to enhance PAM monitoring and detection use cases
- Support periodic access reviews and privileged role attestations
- Maintain PAM documentation, standards, runbooks, and operational procedures
- Provide input to security policies, standards, and annual review processes under the guidance of IT and Security leadership
- Support audits and compliance reporting related to privileged access
- Integrate PAM controls with IAM, endpoint, cloud, SIEM, and application platforms
- Partner with application owners and business stakeholders to define privileged access roles and requirements
- Provide technical guidance and training to stakeholders on PAM processes and best practices
- Develop automation and scripting for PAM account management, reporting, and operational efficiency
- Track PAM KPIs and apply metric driven improvements to reduce risk and operational friction
- Evaluate emerging Microsoft security features and recommend roadmap enhancements
- Hands-on experience with Microsoft Entra ID, Privileged Identity Management (PIM), Conditional Access, and Microsoft Defender products
- Strong understanding of privileged access models, least-privilege principles, and Zero Trust security architecture
- Experience managing identities and access within Microsoft 365 and Azure environments
- Experience with Windows platforms, Active Directory, and authentication/authorization concepts
- Scripting or automation experience (PowerShell preferred)
- Familiarity with SIEM/XDR platforms (Microsoft Sentinel and Defender XDR preferred)
- Technical documentation and runbook development skills
- Strong communication skills with the ability to explain technical concepts to non-technical audiences
- Proven ability to collaborate across security, IT, and business teams
- Strong analytical, troubleshooting, and problem-solving skills
- Ability to operate effectively in fast-paced and regulated environments
- Continuous-learning mindset with adaptability to evolving security technologies
Policy Implementation Timely implementation and maintenance of PAM policies and controls Incident Reduction Reduction in privileged account-related security incidents Audit Compliance Compliance with internal and external audit requirements Integration Success Successful integration of Microsoft Security Suite components Stakeholder Feedback Positive feedback from stakeholders on PAM processes and support Education & Experience
- Bachelor's degree in computer science, Information Technology, or a related field preferred
- 3+ years of experience in Microsoft Windows and Microsoft 365 environments with direct responsibility for identity or security controls
- 2+ years of hands-on experience with Microsoft Azure, Entra ID, Defender, and Purview portals
- Experience supporting hybrid (cloud and on-premises) environments
- Experience with application authentication (IdP) and authorization (IdM) concepts
- Experience working across multiple concurrent projects in a dynamic environment
- Microsoft Certified: Identity and Access Administrator Associate
- Microsoft Certified: Security Operations Analyst Associate
- CISSP or equivalent security certification
- Additional Microsoft Security certifications
- Experience with IAM, Active Directory, Windows Server, SQL Server, or networking fundamentals (DNS, DHCP, LAN/WAN)
At ArchWell Health, we're creating a community of caring designed to help our members stay healthy and engaged. By focusing on a strong provider-patient relationship, routine wellness, and staying active, our members enjoy a higher level of care and better quality of life after the age of 60. Everything we do is for seniors. We believe seniors should be heard, listened to, and given ample time by their physicians to live well later in life.
Our value-based care model is designed to prevent illnesses while keeping members healthy and happy in every aspect of their life. We deliver best-in-class primary care at comfortable, accessible neighborhood centers where older adults can feel at home and become part of a vibrant, wellness-focused community. We're passionate about caring for older adults and united by the belief that caring has the power to change everything for our members.
ArchWell Health is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to their race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other protected classification.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the IT Engineer, Privileged Access Management (PAM) in Nashville, TN vacancy
$65k - $75k
...primarily within HubSpot for ticket management and collaborate with engineering teams through Jira escalations... .../or to receive other benefits and privileges of employment, please contact ****@*****.***... .... California residents may access Vaco by Highspring HR Notice at Collection...SuggestedPermanent employmentWork at officeLocal areaRemote work$25.5 per hour
...Schedule Full Time Located Remotely? N Position Type Non-Management Pay Range: $25.50-$25.50 per hour POSITION SUMMARY... ...problems or issues related to computer hardware, software, internet access, and peripheral equipment. Provide technical guidance and...SuggestedHourly payFull timeRemote workShift work$71k - $100k
...serves as the primary point of contact for users of a DoD financial management application, providing responsive support, clear communication, and operational coordination to ensure users can effectively access and use the system. In addition to user support, the role...SuggestedH1bWork at office- ...Specialist based in Tennessee to support user access and Microsoft 365 administration for a... .... Key responsibilities include managing access requests, providing Level 1 support... ...with an interest in building a career in IT operations. Standard schedule is Monday through...SuggestedRemote workMonday to Friday
$71k - $100k
...serves as the primary point of contact for users of a DoD financial management application, providing responsive support, clear communication, and operational coordination to ensure users can effectively access and use the system. In addition to user support, the role...SuggestedContract workWork experience placementH1bWork at office- Position Overview The Senior Projects Support Engineer provides highly visible remote technical... ...supports TAC and MI Service with the management, execution, and administration of... ...vendor credentialing as part of gaining access to hospitals and facilities to perform assigned...Local areaRemote workNight shift
- A leading IT solutions provider is seeking a Service Desk Support Analyst to provide first-level technical support and customer service... ...emphasizes troubleshooting Windows, Microsoft 365, and cloud access scenarios in a supportive team atmosphere. Competitive salary and...
$79.2k - $178.1k
...Job Description As a Senior Software Engineer within Oracle Cloud Infrastructure (OCI... ...next-generation data center lifecycle management — including planning, design, deployment... ...the employment process. If you require accessibility assistance or accommodation for a disability...Temporary workFlexible hours$75k - $100k
...WHO WE ARE: We are asset managers with an insurance twist - we manage... ...and customer-focused Support Engineer to join our Infrastructure... ...first line of support for all IT-related queries via ticketing... ...Assist with user account setup, access requests, and permissions in line...Work at office- ...large Oncology based healthcare company is hiring for a Senior IT Project Engineer to be based in Southeast Florida or Nashville TN. This role... ...refresh initiatives at existing practice locations. Manage ISP vendor quotes, procurement, and installation scheduling....Remote workWeekend work
$76.6k - $88.9k
...now and into the future. Your Role The IT Support Engineer is responsible for providing advanced technical... ...Functions of the IT Support Engineer Manage ticket intake and triage by reviewing,... .... Manage system and application access by provisioning, modifying, and deprovisioning...Temporary workImmediate start- ...processes that support the meaningful work of independent physicians and the patients they serve. Job Description: The IT Project Manager is responsible for the successful delivery of IT infrastructure and deployment projects supporting organizational growth...Work experience placementRemote work
- ...workforce in Brentwood, Tennessee. This full-time role focuses on user access, Microsoft 365 administration, and hardware logistics, crucial... .... The ideal candidate is reliable, detail-oriented, and can manage a high volume of requests. Flexibility during weekend shifts is...Full timeRemote workShift workWeekend work
$71k - $100k
...SMX is seeking a dedicated user support contact for a DoD financial management application in Nashville, TN. The role involves responding to inquiries, monitoring user requests, and improving processes based on user feedback. Ideal candidates will have at least two years...$30.87 - $67.88 per hour
...As a Principal Support Engineer, you will offer... ..., BS Computer Science/Management Information Systems/Science... ...features (such as Roles, Privileges, Auditing, TDE,... ...Security and general IT Security issues Maintain... ...process. If you require accessibility assistance or...Hourly payTemporary workFlexible hours- A leading staffing agency is seeking an Associate IT Specialist in Nashville, TN. This role focuses on mobile device lifecycle management, ensuring technology readiness for new expansions within a growing healthcare enterprise. Responsibilities include performing usage...
$84.9k - $154.5k
...leadership for the company’s service desk functions. This role manages weekly day-to-day service desk operations, leads shift teams, ensures... ...metrics Required Qualifications Bachelor's degree in IT, Business Administration, or related field 6+ years of experience...Contract workWork at officeShift work- ...CUSTOMER SUPPORT TECHNICIAN III The Customer Support Technician III provides advanced design, planning and management of desktop and telecom services, business-need specific software programs, network/desktop policies, security and enforcement...Relocation
- The Senior Desktop Engineer provides systems support to Premise managed health centers, corporate users, and regional offices... ...new technologies to advance our IT organization in the administration... ...-sponsored wellness program, EAP, access to virtual primary care and...Full timeWork experience placementLocal area
- Do you have the CHOPS ? IT Solutions lives its values: C lient Success is Our Success... ...want you to be a part of a fast-growing Managed Service Provider specializing in providing... ...accounting practices. As a professional services engineer, you will be assisting our clients in...Temporary workWork experience placementWork at officeLocal areaRemote workFlexible hours
$115k - $125k
...Bachelor's degree, 7-10 years of experience, and strong capabilities in sourcing for complex recruitment projects, especially in Executive IT positions. Salary ranges from $115,000 to $125,000, with a chance to work collaboratively across federal civilian and defense markets...Remote work$85k - $116.8k
...all modes of transportation and providing access to technology - we're integrating a... ...today and into tomorrow. At Jacobs, how we manage the flow of technical information to construction... ..., expediting home office/responsible engineer(s) response to meet project needs in a...Full timeFor contractorsFor subcontractorWork at officeRemote workHome office- ...the primary operational liaison for all AB Trading Desks. The team is responsible for overseeing trades within the relevant order management systems, ensuring they are processed correctly downstream. In the event of any issues, ABMO coordinates solutions with Trading,...Work at office
$94.15k - $150k
...GovCIO is currently hiring for a remote IT Automation Engineer to support the US Courts.... ...with detection, response, and incident management workflows Partner with NIOO-OMD leadership... ...here. In addition, our employees have access to a range of perks and benefits to support...Full timeCurrently hiringRemote workFlexible hoursNight shift$132.23k - $176.31k
...us today. The Role The Senior Lead IT Engineer is a technical leadership role... ...strategic direction of Lumen's Software Asset Management (SAM) tools. This role serves as a subject... ...as well as how individuals may request access to or deletion of their personal data....Temporary workRemote work- ...technically skilled and execution-focused Sr. IT Project Engineer with a strong networking background to... ...on the design, deployment, and ongoing management of network infrastructure - including firewalls, managed switches, wireless access points, SD-WAN, redundant internet...Full timeRemote work
- Premise Health Inc. is seeking a Senior Desktop Engineer located in Brentwood, TN. This full-time, hybrid position involves systems support... ...for health centers and corporate users, focusing on endpoint management and automation through tools like Microsoft Endpoint...Full time
- ...deliver best-in-class care at comfortable, accessible neighborhood clinics where seniors can... ...science, computer science or MIS, mathematics, engineering, or related field) preferred. 5+ years of prior experience in Data Management / ETL / ELT / Data Warehousing Experience...
- Vitalsearchgroup is looking for an IT Support Specialist to provide day-to-day technical support for clinical and administrative staff... ...you will assist users with various IT issues, including account access, healthcare applications, EMR/EHR systems, and connectivity problems...
$46.63 - $50.48 per hour
...rotations, collaborate with cross‑functional engineering teams, and continuously improve... ...and coordinates change through the change management process. Supports collaboration across... ...and CJIS adjudication to maintain USME access. Job Specific Skills Ability to identify...Contract workWork at officeRotating shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Engineer, Privileged Access Management (PAM). Be the first to apply!
Related searches
- customer support engineer Nashville, TN
- application support engineer Nashville, TN
- software technical support engineer Nashville, TN
- lab support engineer Nashville, TN
- operations support system engineer Nashville, TN
- line support engineer Nashville, TN
- remote support engineer Nashville, TN
- support escalation engineer Nashville, TN
- IT engineer Nashville, TN
- remote network administrator / IT support engineer Nashville, TN

