IDAM PAM Engineer in Cambridge

IDAM PAM Engineer in Cambridge

Cambridge Full-Time 60000 - 80000 £ / year (est.) Home office (partial)
AVEVA Denmark

At a Glance

  • Tasks: Lead the design and automation of privileged access management solutions.
  • Company: Join AVEVA, a global leader in industrial software.
  • Benefits: Enjoy flexible benefits, 28 days leave, and education assistance.
  • Other info: Collaborative culture with opportunities for growth and mentorship.
  • Why this job: Make a real impact in cybersecurity while working with cutting-edge technology.
  • Qualifications: Experience in PAM and automation; SailPoint knowledge is a must.

The predicted salary is between 60000 - 80000 £ per year.

AVEVA is seeking Privileged Access Management (PAM) Engineers to lead the delivery of highly automated, enterprise‑grade privileged access controls as part of our IDAM function. This is a senior, hands‑on engineering role with significant responsibility and influence. You will design, build, and operate PAM capabilities with automation as a core principle, integrating SailPoint as the enterprise IGA platform and supporting the current and future adoption of CyberArk (or equivalent).

You will act as a senior technical authority, defining standards, patterns, and automation approaches while working closely with Security Architecture, Infrastructure, and Audit teams.

Key responsibilities
  • Lead the automation‑first design and engineering of PAM solutions
  • Play a senior role in CyberArk (or similar) implementation and expansion
  • Engineer fully automated onboarding for:
  • Privileged user accounts
  • Service and application accounts
  • Credentials, secrets, and keys
  • Integrate PAM with SailPoint for automated governance, lifecycle, and access reviews
  • Define PAM standards, onboarding patterns, and automation frameworks
  • Automate privileged access requests, approvals, and provisioning via ServiceNow
  • Build automated PAM and SailPoint reporting for audits and compliance
  • Reduce manual PAM operations through scripting and orchestration
  • Secure privileged access across:
    • Active Directory environments
    • Windows and Linux platforms
    • Azure and cloud services
    • Applications and DevOps pipelines
  • Act as senior escalation point for PAM‑related incidents
  • Partner with Security Architecture and Audit on control design and evidence automation
  • Produce high‑quality architecture diagrams, runbooks, and engineering documentation
  • Apply AI‑assisted tooling to enhance troubleshooting and operational insight
  • Essential requirements
    • Significant, hands‑on experience in Privileged Access Management
    • Hands‑on SailPoint experience is mandatory
    • Strong experience with CyberArk (PAS, PSM, EPM) or equivalent tools
    • Proven ability to engineer and automate PAM at scale
    • Strong understanding of privileged access risks and threat vectors
    • Advanced experience with Active Directory and hybrid identity environments
    • Strong automation and scripting skills (PowerShell, Python, APIs)
    • Experience supporting audits using automated evidence and reporting
    • Ability to operate as a senior engineer, providing technical leadership
    Desired skills
    • Experience using ServiceNow and/or Jira to automate privileged access workflows
    • Broader knowledge of IAM, IGA, Zero Trust, or identity security domains
    • Experience working with DevOps teams, including securing pipelines and secrets
    • Bachelor’s degree in Computer Science, Engineering, Mathematics, or related discipline; or equivalent experience
    • Relevant certifications (e.g. CyberArk, SailPoint, Microsoft Security, Cloud Security)
    • Strong communication and stakeholder management skills
    • Customer‑focused mindset, balancing security with business usability
    • Demonstrated growth mindset, passionate about continuous learning
    • Experience mentoring or guiding other engineers

    Our global team of 300+ IT professionals is responsible for the systems and platforms that keep AVEVA running. By empowering our colleagues and ensuring the smooth operation of the company, we help keep the business healthy and productivity high. We also provide key support for the transformation and modernisation efforts globally.

    We pride ourselves on a collaborative, inclusive and authentic culture that provides a framework allowing for autonomy, whilst always being available for support and guidance. We respect the differences that each team member brings and seek to include those perspectives in our solutions for our business functions.

    UK Benefits include: Flexible benefits fund, emergency leave days, adoption leave, 28 days annual leave (plus bank holidays), pension, life cover, private medical insurance, parental leave, education assistance program.

    By default, employees are expected to be in their local AVEVA office three days a week, but some positions are fully office-based. Roles supporting particular customers or markets are sometimes remote.

    Interested? Great! Get started by submitting your cover letter and CV through our application portal. AVEVA is committed to recruiting and retaining people with disabilities. Please let us know in advance if you need reasonable support during your application process.

    AVEVA is a global leader in industrial software with more than 6,500 employees in over 40 countries. Our cutting-edge solutions are used by thousands of enterprises to deliver the essentials of life – such as energy, infrastructure, chemicals, and minerals – safely, efficiently, and more sustainably.

    We are committed to embedding sustainability and inclusion into our operations, our culture, and our core business strategy.

    AVEVA requires all successful applicants to undergo and pass a drug screening and comprehensive background check before they start employment. Background checks will be conducted in accordance with local laws and may, subject to those laws, include proof of educational attainment, employment history verification, proof of work authorization, criminal records, identity verification, credit check. Certain positions dealing with sensitive and/or third-party personal data may involve additional background check criteria.

    AVEVA is an Equal Opportunity Employer. We are committed to being an exemplary employer with an inclusive culture, developing a workplace environment where all our employees are treated with dignity and respect. We value diversity and the expertise that people from different backgrounds bring to our business.

    IDAM PAM Engineer in Cambridge employer: AVEVA Denmark

    AVEVA is an exceptional employer, offering a collaborative and inclusive work culture that empowers employees to thrive in their roles. With a strong focus on professional growth, AVEVA provides comprehensive benefits including flexible working arrangements, generous leave policies, and education assistance, all while fostering a sense of purpose and community among its team members. Located in the vibrant cities of Cambridge and London, employees enjoy access to a dynamic tech environment that supports innovation and continuous learning.
    AVEVA Denmark

    Contact Detail:

    AVEVA Denmark Recruiting Team

    StudySmarter Expert Advice 🤫

    We think this is how you could land IDAM PAM Engineer in Cambridge

    ✨Tip Number 1

    Network like a pro! Reach out to folks in the industry, especially those already at AVEVA. A friendly chat can open doors and give you insider info on what they're really looking for.

    ✨Tip Number 2

    Show off your skills! If you’ve got hands-on experience with PAM tools like CyberArk or SailPoint, be ready to discuss specific projects where you automated processes or improved security. Real examples make you stand out!

    ✨Tip Number 3

    Prepare for the technical interview! Brush up on your scripting skills and be ready to tackle some practical problems. They’ll want to see how you think and solve issues on the spot.

    ✨Tip Number 4

    Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining the AVEVA team.

    We think you need these skills to ace IDAM PAM Engineer in Cambridge

    Privileged Access Management (PAM)
    SailPoint
    CyberArk (PAS, PSM, EPM)
    Automation and Scripting (PowerShell, Python, APIs)
    Active Directory
    Hybrid Identity Environments
    ServiceNow
    Jira
    Identity and Access Management (IAM)
    Identity Governance and Administration (IGA)
    Zero Trust Security
    Technical Leadership
    Communication Skills
    Stakeholder Management
    Continuous Learning

    Some tips for your application 🫡

    Tailor Your CV: Make sure your CV is tailored to the IDAM PAM Engineer role. Highlight your hands-on experience with Privileged Access Management and tools like SailPoint and CyberArk. We want to see how your skills match what we're looking for!

    Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about PAM and how your experience aligns with our needs. Keep it engaging and personal – we love to see your personality come through.

    Showcase Your Automation Skills: Since automation is key for this role, make sure to showcase your scripting skills in PowerShell or Python. Share specific examples of how you've automated processes in previous roles – we’re all about that automation-first mindset!

    Apply Through Our Website: Don’t forget to apply through our application portal! It’s the best way to ensure your application gets to us directly. Plus, it makes the whole process smoother for everyone involved.

    How to prepare for a job interview at AVEVA Denmark

    ✨Know Your PAM Tools Inside Out

    Make sure you have a solid understanding of Privileged Access Management tools like CyberArk and SailPoint. Be ready to discuss your hands-on experience with these platforms, as well as any automation techniques you've implemented. This will show that you're not just familiar with the tools, but that you can leverage them effectively.

    ✨Showcase Your Automation Skills

    Since this role emphasises automation, prepare examples of how you've automated PAM processes in the past. Whether it's through scripting in PowerShell or Python, or using APIs, be specific about the challenges you faced and how you overcame them. This will demonstrate your technical prowess and problem-solving abilities.

    ✨Understand the Bigger Picture

    Familiarise yourself with the broader context of IAM, IGA, and Zero Trust principles. Be prepared to discuss how these concepts relate to PAM and how they can enhance security within an organisation. This shows that you’re not just focused on the technical aspects, but also understand the strategic importance of your role.

    ✨Prepare for Scenario-Based Questions

    Expect scenario-based questions that assess your ability to handle real-world PAM challenges. Think about past incidents you've managed, how you approached them, and what the outcomes were. This will help you articulate your experience and decision-making process clearly during the interview.

    IDAM PAM Engineer in Cambridge
    AVEVA Denmark
    Location: Cambridge

    Land your dream job quicker with Premium

    You’re marked as a top applicant with our partner companies
    Individual CV and cover letter feedback including tailoring to specific job roles
    Be among the first applications for new jobs with our AI application
    1:1 support and career advice from our career coaches
    Go Premium

    Money-back if you don't land a job in 6-months

    >