Brazilian company hires for hybrid or remote position
Location: Brazil (any location)
- ️ Only candidates already based in Brazil will be considered
Work Model: Hybrid for candidates living in state capitals and Remote for candidates living in countryside/cities outside the state capitals
️ Language Requirements: English C1/C2 (Advanced/Fluent) – Mandatory (there will be direct contact with an international client)
Seniority: Senior (6+ years)
Compensation: Please inform your salary expectations when applying.
- ️ Instructions: Please send your CV in English and make sure to include all skills and experience that match the requirements of the opportunity. This will significantly increase your chances of success.
We are looking for an experienced CyberArk SME to lead the engineering, implementation, customization, automation, and continuous evolution of enterprise Privileged Access Management (PAM) environments.
You will play a key role in securing privileged identities, designing scalable PAM architectures, developing integrations, automating operational processes, and supporting mission-critical enterprise environments.
If you enjoy solving complex identity security challenges while working with enterprise-scale CyberArk platforms, this opportunity is for you.
We are seeking a highly experienced CyberArk specialist with deep technical expertise in Privileged Access Management, platform engineering, automation, and enterprise integrations.
The ideal candidate combines advanced CyberArk administration with scripting, troubleshooting, connector development, and security best practices, while collaborating with multidisciplinary teams in an international environment.
You should be comfortable leading technical initiatives, designing secure PAM solutions, and continuously improving enterprise CyberArk infrastructures.
You will be responsible for:
-
Act as the CyberArk Subject Matter Expert (SME), leading engineering, implementation, customization, automation, and platform evolution initiatives.
-
Administer, configure, and support CyberArk EPV/Vault, PVWA, CPM, PSM, PSMP, and Conjur.
-
Implement and maintain enterprise Privileged Access Management (PAM) solutions.
-
Manage privileged accounts, service accounts, non-human identities, and enterprise secrets.
-
Develop integrations between CyberArk and ServiceNow, Active Directory, cloud platforms, databases, and enterprise applications.
-
Build automation using CyberArk REST APIs, PowerShell, Python, and related technologies.
-
Design, customize, and troubleshoot CPM Connectors, PSM Connectors, Custom Platforms, WebApps, AutoIt, and Process & Prompt configurations.
-
Support application onboarding and privileged account onboarding.
-
Manage Session Monitoring, Session Isolation, and Session Recording capabilities.
-
Perform production support, root cause analysis, troubleshooting, and continuous platform improvements.
- ️ All requirements below are mandatory and eliminatory. Candidates who cannot clearly demonstrate these qualifications in their CV are unlikely to proceed in the recruitment process.
Education
✔ Bachelor's Degree in:
-
Information Technology
-
Computer Science
-
Information Systems
-
Computer Engineering
-
Software Engineering
-
Information Security
-
or a related field
-
English C1/C2 (Advanced/Fluent) for communication with international stakeholders.
-
Proven experience as a CyberArk Subject Matter Expert (SME).
-
Strong hands-on experience in CyberArk engineering, customization, automation, scalability, and troubleshooting.
-
Advanced knowledge of:
-
CyberArk EPV/Vault
-
PVWA
-
CPM
-
PSM
-
PSMP
-
Conjur
-
Strong experience with Privileged Access Management (PAM).
-
Management of privileged accounts.
-
Service Accounts.
-
Non-Human Identities.
-
Secrets Management.
-
Integration with:
-
ServiceNow
-
Active Directory
-
Cloud platforms
-
Databases
-
Enterprise applications
-
Automation using:
-
CyberArk REST APIs
-
PowerShell
-
Python
-
Experience developing and troubleshooting:
-
CPM Connectors
-
PSM Connectors
-
Custom Platforms
-
WebApps
-
AutoIt
-
Experience with:
-
Session Management
-
Session Monitoring
-
Session Isolation
-
Session Recording
-
Hands-on experience with application onboarding.
-
Production support.
-
Root cause analysis.
-
Incident troubleshooting.
-
Continuous improvement of complex CyberArk environments.
The following qualifications will be considered a strong advantage:
-
Enterprise Identity & Access Management (IAM) experience.
-
Cloud Security.
-
Zero Trust Architecture.
-
DevSecOps.
-
Kubernetes Secrets Management.
-
Financial Services industry experience.
-
Wealth Management.
-
Asset Management.
-
Strategic role within a global cybersecurity organization.
-
Enterprise-scale Privileged Access Management initiatives.
-
Advanced CyberArk engineering and automation projects.
-
Complex cloud and enterprise integrations.
-
Opportunity to influence security architecture and operational excellence.
-
Collaboration with international multidisciplinary teams.
-
Modern, innovation-driven cybersecurity environment.
✅ Do I have proven experience as a CyberArk SME, rather than simply administering CyberArk environments?
✅ Does my CV clearly demonstrate hands-on expertise with EPV/Vault, PVWA, CPM, PSM, PSMP, Conjur, and enterprise PAM implementations?
✅ Have I developed CyberArk automations, REST API integrations, PowerShell/Python scripts, and customized CPM/PSM Connectors?
✅ Have I worked with ServiceNow integrations, Active Directory, cloud platforms, privileged account onboarding, and Session Management?
✅ Am I fluent in English (C1/C2) and comfortable leading technical discussions with international teams?
If you answered "No" to one or more of these questions, we recommend carefully reviewing your fit before applying.
This position is intended for a Senior CyberArk Subject Matter Expert with extensive experience in enterprise Privileged Access Management engineering.
Candidates whose experience is primarily focused on infrastructure administration, general cybersecurity, or IAM without deep hands-on expertise in CyberArk engineering, customization, automation, connector development, and enterprise PAM environments are unlikely to meet the expectations for this role.
CyberArk SME, CyberArk Engineer, CyberArk Administrator, Privileged Access Management, PAM, CyberArk EPV, Enterprise Password Vault, Vault, PVWA, CPM, PSM, PSMP, Conjur, Secrets Management, Privileged Accounts, Service Accounts, Non-Human Identities, Identity Security, CyberArk REST API, PowerShell, Python, Automation, CyberArk Automation, CPM Connectors, PSM Connectors, Custom Platforms, WebApps, AutoIt, Session Management, Session Monitoring, Session Isolation, Session Recording, Application Onboarding, Active Directory, ServiceNow, Cloud Security, Enterprise Security, IAM, Identity & Access Management, Root Cause Analysis, Incident Troubleshooting, Zero Trust, Financial Services, Wealth Management, Asset Management
#EY BR