Skip to content

[Interim] Privileged Access Management (PAM) Engineer (Remote or Hybrid)

  • Remote, Hybrid
    • Brussels

Job description

Job Title: Privileged Access Management (PAM) Engineer

Location: Hybrid – Based in Brussels (HQ) or Remote from Serbia, Greece or Romania
Contract Type: Interim position
Start Date: ASAP
Duration: Until December 29, 2025 (with extension)

Our client, a leading multinational organisation in the retail sector, is undertaking a major IAM (Identity & Access Management) transformation program across its Belgium and Southeastern Europe (BeSEE) region. A key pillar of this transformation is the implementation of a centralized Privileged Access Management (PAM) solution that supports Zero Trust principles and enhances the organization’s cybersecurity posture across hybrid, multi-cloud, and on-prem environments. 

As a  PAM Engineer, you will play a key role in the deployment, integration, and operational enablement of the PAM platform across the BeSEE region. You will help ensure that privileged access to critical infrastructure is secure, auditable, and compliant by implementing Just-in-Time access, password vaulting, session recording, and real-time monitoring capabilities. You will work closely with the local IAM Transformation team, platform leads, security architects, and application owners to ensure effective and timely onboarding of business-critical assets. 

Key Responsibilities:

  • Configure, integrate, and support the centralized PAM solution across on-prem, hybrid, and multi-cloud infrastructures. 

  • Enable and manage secure privileged access for both personal and non-personal accounts (e.g., service accounts). 

  • Implement core PAM capabilities: 

    • Just-in-Time (JIT) Access with time-bound, role-based provisioning 

    • Session Recording & Real-Time Monitoring with alerting and forensic traceability 

    • Credential Vaulting & Lifecycle Management with automated rotation 

  • Collaborate with application and infrastructure teams to onboard high-risk systems. 

  • Support compliance with regional regulatory and data protection requirements. 

  • Ensure seamless integration with existing IAM components, including IGA and AD/Entra ID. 

  • Maintain documentation on configurations, onboarding processes, and audit controls. 

  • Troubleshoot and resolve PAM-related technical issues and user onboarding blockers. 

  • Provide input to PAM architectural decisions and contribute to continuous improvements. 

Job requirements

  • 4+ years of experience in Privileged Access Management or related cybersecurity engineering roles. 

  • Hands-on experience with leading PAM tools such as CyberArk, BeyondTrust, Delinea (Thycotic), or equivalent. 

  • Experience in configuring password vaulting, session recording, and JIT access. 

  • Solid understanding of IAM concepts, Zero Trust, and secure credential management. 

  • Experience working in large-scale enterprise environments with hybrid or multi-cloud infrastructure. 

  • Familiarity with compliance and audit requirements (e.g., GDPR, ISO 27001). 

  • Strong troubleshooting skills and ability to translate business needs into secure technical configurations. 

  • Experience with scripting (e.g., PowerShell, Python) is a plus. 

  • Fluent in English; Dutch or French is a plus. 

or