
Lead Security Engineer
Primary stack
Nice to have's
Job description
About the Position
We are looking for a Lead Security Engineer to join our team. The Security Engineer plays a key role in designing, deploying, and operating secure privileged access management solutions aligned with organizational needs. This position drives operational innovation and provides security expertise to strengthen the firm's overall security posture. The role concentrates on deploying and sustaining Endpoint Privilege Manager (EPM) capabilities across the enterprise while fostering secure and efficient privileged access practices.
Responsibilities
- Operate with a high degree of independence, requiring minimal daily supervision
- Design, roll out, and maintain CyberArk Endpoint Privilege Manager (EPM) solutions
- Support enterprise-wide transitions away from PowerBroker and other legacy privilege management tools
- Collaborate with application and infrastructure teams to pinpoint, address, and verify privileged access requirements
- Develop and sustain EPM policies, application control rules, and privilege elevation configurations
- Address EPM-related challenges and deliver operational support for critical business applications
- Support teams in revising workflows and hard-coded privileged tasks affected by migration initiatives
- Identify areas for enhancing security processes and refining privilege management practices
- Monitor advancements in privileged access management technologies, industry trends, and emerging threats
- Work with offshore and nearshore teams to facilitate seamless knowledge sharing and operational transitions
Requirements
- A minimum of 5 years of relevant experience supporting Privileged Access Management (PAM) technologies
- At least one year of experience leading and managing development teams
- Hands-on experience with CyberArk Endpoint Privilege Manager (EPM), including implementation, configuration, policy management, deployment, monitoring, and continued support
- Experience addressing endpoint privilege elevation, application control, and least-privilege enforcement challenges
- Knowledge of Windows operating systems, Active Directory, endpoint security controls, and enterprise authentication mechanisms
- Experience assessing application privilege requirements and partnering with technical teams to deploy secure solutions
- Strong analytical, troubleshooting, and communication capabilities
- Experience operating in enterprise environments involving multiple stakeholders and cross-functional teams
- Strong written and spoken English proficiency at a B2 level or higher
Nice to Have
- Experience with additional CyberArk products, including Privileged Session Manager (PSM), Vault, and Central Policy Manager (CPM)
- Familiarity with session monitoring, privileged account management, and access governance concepts
- Experience supporting migrations from PowerBroker or similar endpoint privilege management platforms
- Scripting or automation skills using PowerShell or related tools
- Experience working within financial services or other tightly regulated sectors
We Offer
- Opportunity to work remotely in Mexico
- Be part of a team that drives innovation in security practices
- Competitive compensation package
About the Company
[Company description if present]
© EPAM. This job description was sourced from the employer's public career page. TheJob is not the employer — we index the posting and route candidates to the source. All content rights and hiring decisions belong to the employer.
EPAM helps organizations innovate their business processes and rethink the way they manage their businesses so they can remain competitive in this new digital age.
