At a Glance
- Tasks: Lead the design and automation of privileged access management solutions.
- Company: AVEVA, a trusted software provider for leading industrial companies.
- Benefits: Flexible benefits, 28 days annual leave, private medical insurance, and education assistance.
- Other info: Inclusive culture with opportunities for continuous learning and career growth.
- Why this job: Join a dynamic team and make a real impact in cybersecurity.
- Qualifications: Hands-on experience in PAM and strong skills in SailPoint and CyberArk.
The predicted salary is between 60000 - 80000 ÂŁ per year.
AVEVA is creating software trusted by over 90% of leading industrial companies.
AVEVA is seeking Privileged Access Management (PAM) Engineers to lead the delivery of highly automated, enterprise‑grade privileged access controls as part of our IDAM function. This is a senior, hands‑on engineering role with significant responsibility and influence. You will design, build, and operate PAM capabilities with automation as a core principle, integrating SailPoint as the enterprise IGA platform and supporting the current and future adoption of CyberArk (or equivalent). You will act as a senior technical authority, defining standards, patterns, and automation approaches while working closely with Security Architecture, Infrastructure, and Audit teams.
Key responsibilities
- Lead the automation‑first design and engineering of PAM solutions
- Play a senior role in CyberArk (or similar) implementation and expansion
- Engineer fully automated onboarding for privileged user accounts
- Engineer fully automated onboarding for service and application accounts
- Engineer fully automated onboarding for credentials, secrets, and keys
- Integrate PAM with SailPoint for automated governance, lifecycle, and access reviews
- Define PAM standards, onboarding patterns, and automation frameworks
- Automate privileged access requests, approvals, and provisioning via ServiceNow
- Build automated PAM and SailPoint reporting for audits and compliance
- Reduce manual PAM operations through scripting and orchestration
- Secure privileged access across Active Directory environments
- Secure privileged access across Windows and Linux platforms
- Secure privileged access across Azure and cloud services
- Secure privileged access across applications and DevOps pipelines
- Act as senior escalation point for PAM‑related incidents
- Partner with Security Architecture and Audit on control design and evidence automation
- Produce high‑quality architecture diagrams, runbooks, and engineering documentation
- Apply AI‑assisted tooling to enhance troubleshooting and operational insight
Essential requirements
- Significant, hands‑on experience in Privileged Access Management
- Hands‑on SailPoint experience is mandatory
- Strong experience with CyberArk (PAS, PSM, EPM) or equivalent tools
- Proven ability to engineer and automate PAM at scale
- Strong understanding of privileged access risks and threat vectors
- Advanced experience with Active Directory and hybrid identity environments
- Strong automation and scripting skills (PowerShell, Python, APIs)
- Experience supporting audits using automated evidence and reporting
- Ability to operate as a senior engineer, providing technical leadership
Desired skills
- Experience using ServiceNow and/or Jira to automate privileged access workflows
- Broader knowledge of IAM, IGA, Zero Trust, or identity security domains
- Experience working with DevOps teams, including securing pipelines and secrets
- Bachelor’s degree in Computer Science, Engineering, Mathematics, or related discipline; or equivalent experience
- Relevant certifications (e.g. CyberArk, SailPoint, Microsoft Security, Cloud Security)
- Strong communication and stakeholder management skills
- Customer‑focused mindset, balancing security with business usability
- Demonstrated growth mindset, passionate about continuous learning
- Experience mentoring or guiding other engineers
UK Benefits include: Flexible benefits fund, emergency leave days, adoption leave, 28 days annual leave (plus bank holidays), pension, life cover, private medical insurance, parental leave, education assistance program.
AVEVA is an Equal Opportunity Employer. We are committed to being an exemplary employer with an inclusive culture, developing a workplace environment where all our employees are treated with dignity and respect. We value diversity and the expertise that people from different backgrounds bring to our business. AVEVA provides reasonable accommodation to applicants with disabilities where appropriate. If you need reasonable accommodation for any part of the application and hiring process, please notify your recruiter. Determinations on requests for reasonable accommodation will be made on a case‑by‑case basis. AVEVA requires all successful applicants to undergo and pass a drug screening and comprehensive background check before they start employment. Background checks will be conducted in accordance with local laws and may, subject to those laws, include proof of educational attainment, employment history verification, proof of work authorization, criminal records, identity verification, credit check. Certain positions dealing with sensitive and/or third‑party personal data may involve additional background check criteria.
IDAM PAM Engineer in London employer: AVEVA
Contact Detail:
AVEVA Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land IDAM PAM Engineer in London
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your PAM projects and automation scripts. This gives potential employers a tangible look at what you can do and sets you apart from the crowd.
✨Tip Number 3
Prepare for interviews by brushing up on common PAM scenarios and technical questions. Practice explaining your thought process and solutions clearly, as communication is key in senior roles like this one.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at AVEVA.
We think you need these skills to ace IDAM PAM Engineer in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the IDAM PAM Engineer role. Highlight your hands-on experience with Privileged Access Management and any relevant tools like CyberArk or SailPoint. We want to see how your skills match what we're looking for!
Show Off Your Automation Skills: Since automation is key in this role, don’t forget to showcase your scripting skills, especially in PowerShell or Python. Share specific examples of how you've automated processes in previous roles – we love a good success story!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about PAM and how you can contribute to our team. Keep it concise but impactful – we want to feel your enthusiasm for the role!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team at AVEVA!
How to prepare for a job interview at AVEVA
✨Know Your PAM Tools Inside Out
Make sure you’re well-versed in the tools mentioned in the job description, especially CyberArk and SailPoint. Brush up on your hands-on experience and be ready to discuss specific projects where you've implemented or automated PAM solutions.
✨Showcase Your Automation Skills
Since this role emphasises automation, prepare examples of how you've used scripting languages like PowerShell or Python to automate processes. Be ready to explain your thought process and the impact of your automation on previous projects.
✨Understand Privileged Access Risks
Familiarise yourself with the common risks and threat vectors associated with privileged access management. Be prepared to discuss how you’ve mitigated these risks in past roles and how you would approach them in this position.
✨Communicate Effectively
This role requires strong communication skills, so practice articulating your thoughts clearly. Think about how you can convey complex technical concepts to non-technical stakeholders, as collaboration with various teams is key.