Tower Lead - CyberArk PAM, DellOne TPAM
United States
Job Description
Tower Lead - CyberArk PAM, DellOne TPAM
Dallas, Texas

Job Summary

ob Title: IAM L3 Onsite– Delinea & Duo We are looking for an experienced IAM L3 Onsite Specialist with 8–12+ years of hands-on experience in Identity and Access Management implementation, operations, and production support. The role requires strong technical expertise in Access Management, Privileged Access Management, MFA, directory services, application onboarding, and L3 troubleshooting for large-scale enterprise environments. The candidate will work closely with customer stakeholders, global delivery teams, and security teams to support complex IAM solutions, resolve critical incidents, drive root cause analysis, and ensure stable IAM operations. Key Responsibilities: • Provide L3 support for IAM, SSO, MFA, PAM, directory services, and access management platforms in a production environment. • Support, troubleshoot, and administer Delinea or equivalent Privileged Access Management solutions, including vaulting, privileged account management, JIT access, and session-related issues. • Implement, support, and troubleshoot Duo, Azure MFA, or equivalent MFA solutions, including push, OTP, token-based, and FIDO-based authentication methods. • Design, support, and troubleshoot SSO and federation integrations using SAML, OIDC, OAuth, authentication flows, and access policies. • Perform application onboarding and IAM integrations by coordinating with application owners, security teams, and infrastructure teams. • Manage and troubleshoot LDAP and directory services such as Active Directory, Oracle Internet Directory, CA Directory, Sun Directory Server, Tivoli Directory Server, or equivalent platforms. • Handle production incidents, service requests, problem tickets, and change requests while ensuring SLA adherence and operational stability. • Lead technical troubleshooting, log analysis, root cause analysis, and permanent fix implementation for critical IAM issues and escalations. • Configure and manage IAM policies, roles, tasks, workflows, access rules, RBAC models, least privilege controls, and access governance requirements. • Support Joiner-Mover-Leaver processes, provisioning, deprovisioning, reconciliation, bulk operations, and identity lifecycle management activities. • Generate IAM reports, audit data, access review extracts, and operational metrics to support compliance and governance requirements. • Collaborate with global counterparts, customer stakeholders, vendors, and offshore teams for issue resolution, enhancements, and operational handovers. • Participate in change implementation, release support, deployment validation, documentation, and knowledge transfer activities. • Provide technical leadership during escalations and guide junior team members on IAM operations, troubleshooting, and best practices. • Maintain clear operational documentation, runbooks, RCA documents, configuration details, and support procedures. Required Skills and Technologies: • Strong expertise in IAM, Access Management, SSO, federation, authentication flows, RBAC, access governance, and least privilege principles. • Hands-on experience with Delinea or equivalent PAM tools, including privileged account vaulting, session management, JIT access, and privileged access workflows. • Hands-on experience with Duo, Azure MFA, or equivalent MFA platforms, including policy configuration, enrollment, authentication troubleshooting, and user support. • Working knowledge of LDAP, Active Directory, Java/J2EE components, web services/SOAP, and application servers such as WebLogic, WebSphere, or JBoss will be an added advantage. Qualifications and Professional Attributes: • 8–12+ years of IAM implementation, engineering, and L3 production support experience in enterprise environments. • Strong customer-facing experience with excellent oral and written communication skills. • Ability to manage critical incidents

Key Responsibilities

ob Title: IAM L3 Onsite– Delinea & Duo We are looking for an experienced IAM L3 Onsite Specialist with 8–12+ years of hands-on experience in Identity and Access Management implementation, operations, and production support. The role requires strong technical expertise in Access Management, Privileged Access Management, MFA, directory services, application onboarding, and L3 troubleshooting for large-scale enterprise environments. The candidate will work closely with customer stakeholders, global delivery teams, and security teams to support complex IAM solutions, resolve critical incidents, drive root cause analysis, and ensure stable IAM operations. Key Responsibilities: • Provide L3 support for IAM, SSO, MFA, PAM, directory services, and access management platforms in a production environment. • Support, troubleshoot, and administer Delinea or equivalent Privileged Access Management solutions, including vaulting, privileged account management, JIT access, and session-related issues. • Implement, support, and troubleshoot Duo, Azure MFA, or equivalent MFA solutions, including push, OTP, token-based, and FIDO-based authentication methods. • Design, support, and troubleshoot SSO and federation integrations using SAML, OIDC, OAuth, authentication flows, and access policies. • Perform application onboarding and IAM integrations by coordinating with application owners, security teams, and infrastructure teams. • Manage and troubleshoot LDAP and directory services such as Active Directory, Oracle Internet Directory, CA Directory, Sun Directory Server, Tivoli Directory Server, or equivalent platforms. • Handle production incidents, service requests, problem tickets, and change requests while ensuring SLA adherence and operational stability. • Lead technical troubleshooting, log analysis, root cause analysis, and permanent fix implementation for critical IAM issues and escalations. • Configure and manage IAM policies, roles, tasks, workflows, access rules, RBAC models, least privilege controls, and access governance requirements. • Support Joiner-Mover-Leaver processes, provisioning, deprovisioning, reconciliation, bulk operations, and identity lifecycle management activities. • Generate IAM reports, audit data, access review extracts, and operational metrics to support compliance and governance requirements. • Collaborate with global counterparts, customer stakeholders, vendors, and offshore teams for issue resolution, enhancements, and operational handovers. • Participate in change implementation, release support, deployment validation, documentation, and knowledge transfer activities. • Provide technical leadership during escalations and guide junior team members on IAM operations, troubleshooting, and best practices. • Maintain clear operational documentation, runbooks, RCA documents, configuration details, and support procedures. Required Skills and Technologies: • Strong expertise in IAM, Access Management, SSO, federation, authentication flows, RBAC, access governance, and least privilege principles. • Hands-on experience with Delinea or equivalent PAM tools, including privileged account vaulting, session management, JIT access, and privileged access workflows. • Hands-on experience with Duo, Azure MFA, or equivalent MFA platforms, including policy configuration, enrollment, authentication troubleshooting, and user support. • Working knowledge of LDAP, Active Directory, Java/J2EE components, web services/SOAP, and application servers such as WebLogic, WebSphere, or JBoss will be an added advantage. Qualifications and Professional Attributes: • 8–12+ years of IAM implementation, engineering, and L3 production support experience in enterprise environments. • Strong customer-facing experience with excellent oral and written communication skills. • Ability to manage critical incidents

Skill Requirements

ob Title: IAM L3 Onsite– Delinea & Duo We are looking for an experienced IAM L3 Onsite Specialist with 8–12+ years of hands-on experience in Identity and Access Management implementation, operations, and production support. The role requires strong technical expertise in Access Management, Privileged Access Management, MFA, directory services, application onboarding, and L3 troubleshooting for large-scale enterprise environments. The candidate will work closely with customer stakeholders, global delivery teams, and security teams to support complex IAM solutions, resolve critical incidents, drive root cause analysis, and ensure stable IAM operations. Key Responsibilities: • Provide L3 support for IAM, SSO, MFA, PAM, directory services, and access management platforms in a production environment. • Support, troubleshoot, and administer Delinea or equivalent Privileged Access Management solutions, including vaulting, privileged account management, JIT access, and session-related issues. • Implement, support, and troubleshoot Duo, Azure MFA, or equivalent MFA solutions, including push, OTP, token-based, and FIDO-based authentication methods. • Design, support, and troubleshoot SSO and federation integrations using SAML, OIDC, OAuth, authentication flows, and access policies. • Perform application onboarding and IAM integrations by coordinating with application owners, security teams, and infrastructure teams. • Manage and troubleshoot LDAP and directory services such as Active Directory, Oracle Internet Directory, CA Directory, Sun Directory Server, Tivoli Directory Server, or equivalent platforms. • Handle production incidents, service requests, problem tickets, and change requests while ensuring SLA adherence and operational stability. • Lead technical troubleshooting, log analysis, root cause analysis, and permanent fix implementation for critical IAM issues and escalations. • Configure and manage IAM policies, roles, tasks, workflows, access rules, RBAC models, least privilege controls, and access governance requirements. • Support Joiner-Mover-Leaver processes, provisioning, deprovisioning, reconciliation, bulk operations, and identity lifecycle management activities. • Generate IAM reports, audit data, access review extracts, and operational metrics to support compliance and governance requirements. • Collaborate with global counterparts, customer stakeholders, vendors, and offshore teams for issue resolution, enhancements, and operational handovers. • Participate in change implementation, release support, deployment validation, documentation, and knowledge transfer activities. • Provide technical leadership during escalations and guide junior team members on IAM operations, troubleshooting, and best practices. • Maintain clear operational documentation, runbooks, RCA documents, configuration details, and support procedures. Required Skills and Technologies: • Strong expertise in IAM, Access Management, SSO, federation, authentication flows, RBAC, access governance, and least privilege principles. • Hands-on experience with Delinea or equivalent PAM tools, including privileged account vaulting, session management, JIT access, and privileged access workflows. • Hands-on experience with Duo, Azure MFA, or equivalent MFA platforms, including policy configuration, enrollment, authentication troubleshooting, and user support. • Working knowledge of LDAP, Active Directory, Java/J2EE components, web services/SOAP, and application servers such as WebLogic, WebSphere, or JBoss will be an added advantage. Qualifications and Professional Attributes: • 8–12+ years of IAM implementation, engineering, and L3 production support experience in enterprise environments. • Strong customer-facing experience with excellent oral and written communication skills. • Ability to manage critical incidents

Other Requirements

ob Title: IAM L3 Onsite– Delinea & Duo We are looking for an experienced IAM L3 Onsite Specialist with 8–12+ years of hands-on experience in Identity and Access Management implementation, operations, and production support. The role requires strong technical expertise in Access Management, Privileged Access Management, MFA, directory services, application onboarding, and L3 troubleshooting for large-scale enterprise environments. The candidate will work closely with customer stakeholders, global delivery teams, and security teams to support complex IAM solutions, resolve critical incidents, drive root cause analysis, and ensure stable IAM operations. Key Responsibilities: • Provide L3 support for IAM, SSO, MFA, PAM, directory services, and access management platforms in a production environment. • Support, troubleshoot, and administer Delinea or equivalent Privileged Access Management solutions, including vaulting, privileged account management, JIT access, and session-related issues. • Implement, support, and troubleshoot Duo, Azure MFA, or equivalent MFA solutions, including push, OTP, token-based, and FIDO-based authentication methods. • Design, support, and troubleshoot SSO and federation integrations using SAML, OIDC, OAuth, authentication flows, and access policies. • Perform application onboarding and IAM integrations by coordinating with application owners, security teams, and infrastructure teams. • Manage and troubleshoot LDAP and directory services such as Active Directory, Oracle Internet Directory, CA Directory, Sun Directory Server, Tivoli Directory Server, or equivalent platforms. • Handle production incidents, service requests, problem tickets, and change requests while ensuring SLA adherence and operational stability. • Lead technical troubleshooting, log analysis, root cause analysis, and permanent fix implementation for critical IAM issues and escalations. • Configure and manage IAM policies, roles, tasks, workflows, access rules, RBAC models, least privilege controls, and access governance requirements. • Support Joiner-Mover-Leaver processes, provisioning, deprovisioning, reconciliation, bulk operations, and identity lifecycle management activities. • Generate IAM reports, audit data, access review extracts, and operational metrics to support compliance and governance requirements. • Collaborate with global counterparts, customer stakeholders, vendors, and offshore teams for issue resolution, enhancements, and operational handovers. • Participate in change implementation, release support, deployment validation, documentation, and knowledge transfer activities. • Provide technical leadership during escalations and guide junior team members on IAM operations, troubleshooting, and best practices. • Maintain clear operational documentation, runbooks, RCA documents, configuration details, and support procedures. Required Skills and Technologies: • Strong expertise in IAM, Access Management, SSO, federation, authentication flows, RBAC, access governance, and least privilege principles. • Hands-on experience with Delinea or equivalent PAM tools, including privileged account vaulting, session management, JIT access, and privileged access workflows. • Hands-on experience with Duo, Azure MFA, or equivalent MFA platforms, including policy configuration, enrollment, authentication troubleshooting, and user support. • Working knowledge of LDAP, Active Directory, Java/J2EE components, web services/SOAP, and application servers such as WebLogic, WebSphere, or JBoss will be an added advantage. Qualifications and Professional Attributes: • 8–12+ years of IAM implementation, engineering, and L3 production support experience in enterprise environments. • Strong customer-facing experience with excellent oral and written communication skills. • Ability to manage critical incidents

Maximum Salary (US):  100,000
Minimum Salary (US):  90,000
Information at a Glance

Why HCLTech?

At HCLTech, you'll supercharge your potential. You'll find your career. And you'll find your spark. All at a place that knows that helping its customers stay on top starts by putting its people first.

HCLTech is a global technology company, home to more than 223,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for Financial Services, Manufacturing, Life Sciences and Healthcare, Technology and Services, Telecom and Media, Retail and CPG, and Public Services. Consolidated revenues as of 12 months ending June 2026 totaled $14.8 billion. 

 

Compensation and Benefits

A candidate’s pay within the range will depend on their skills, experience, education, and other factors permitted by law. This role may also be eligible for performance-based bonuses subject to company policies. In addition, this role is eligible for the following benefits subject to company policies: medical, dental, vision, pharmacy, life, accidental death & dismemberment, and disability insurance; employee assistance program; 401(k) retirement plan; 10 days of paid time off per year (some positions are eligible for need-based leave with no designated number of leave days per year); and 10 paid holidays per year.