Apply now: BeyondTrust Security Engineer, Hybrid in Racine WI. Start date is ASAP for this 6+ Month Contract position.
Job Title: BeyondTrust Security Engineer Location-Type: Hybrid in Racine WI Start Date: 2 weeks from offer Duration: 6+ Month Contract Compensation Range:$55-64/hr Benefits: Eligible for Health, Dental, Vision, and 401K Visa Sponsorship: Not eligible for visa sponsorship Job Description:- The client is seeking a hands-on BeyondTrust Security Engineer to lead deployment, configuration, tuning, and operationalization of Endpoint Privilege Management controls across Windows and Linux server environments in support of a ransomware prevention initiative.
Job Summary- Engineer, configure, deploy, and tune BeyondTrust Endpoint Privilege Management controls across Windows and Linux server environments.
- Develop and tune privilege-management policies to enforce least privilege while minimizing disruption to production applications, services, and operational workflows.
- Support a phased wave/ring deployment model, including pre- and post-deployment validation, rollback procedures, and break-glass administration controls.
- Evaluate application and administrative activity to determine appropriate allow, elevate, restrict, or exception policies.
- Troubleshoot BeyondTrust agent, policy, application compatibility, performance, and enforcement issues across server environments.
- Integrate BeyondTrust health, tamper, policy-enforcement, and operational events into the organization's monitoring and SIEM processes.
- Deliver operational runbooks and conduct knowledge-transfer sessions with internal Security Engineering and Operations teams.
Minimum Requirements:- Demonstrated hands-on experience implementing and administering BeyondTrust Endpoint Privilege Management in enterprise environments.
- Strong understanding of BeyondTrust architecture, agents, policies, application rules, privilege elevation, exception handling, and policy enforcement.
- Demonstrated experience implementing and tuning BeyondTrust on both Windows Server and Linux server environments.
- Strong understanding of Windows administrative groups, service accounts, local administrator privileges, Active Directory, Group Policy, and organizational units.
- Understanding of Linux privilege management, sudo/sudoers, service accounts, administrative workflows, and application dependencies.
- Experience implementing security controls in production environments using phased or ring-based deployment approaches.
- Strong change-management, testing, documentation, and troubleshooting skills.
Preferred Qualifications:- Experience with large-scale BeyondTrust deployments covering hundreds or thousands of servers.
- Experience with both on-premises and cloud-hosted Windows and Linux server environments.
- Experience transitioning BeyondTrust policies from monitoring/audit modes into enforced controls.
- Experience designing least-privilege controls for server administrators and application/service accounts.
- Experience developing automated or repeatable deployment processes for security agents.
- Familiarity with Microsoft Defender, CrowdStrike, SIEM platforms, and vulnerability-management technologies.
- Experience developing operational runbooks and integrating privilege-management telemetry with SIEM, monitoring, and incident-response processes.