Santander US

finance

PAMCYBERARKENGINEER

Oaxaca, Mexico FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior candidates.

The Brief

“PAM CYBERARK ENGINEER at Santander US. Skills: CyberArk Privileged Access Security (PAS), CyberArk Engineering & Administration, Security Architecture & Governance, Automation & Continuous Improvement. architecting, deploying, and maintaining privileged access security solutions using the CyberArk suite. ensuring the protection of critical systems, credentials, and privileged accounts”

What You'll Achieve.

ensures the protection of critical systems, credentials, and privileged accounts; strengthen security posture

Industry & Context.

finance
Problems you'll solve

analytical, problem-solving, and debugging skills

Eligibility Requirements

on-call rotations, provide escalation-level support

What They're Looking For.

Must Have

5–8+ years of experience in Information Security or Identity and Access Management, 3–5+ years of hands-on CyberArk engineering experience, understanding of privileged access management principles, Proficiency with PowerShell, Python, or equivalent scripting languages, Proficiency with Windows and Linux administration, Proficiency with Active Directory, LDAP, MFA integrations, Proficiency with Networking basics (firewalls, proxies, DNS), Experience supporting large-scale, high-availability PAM environments

Nice to Have

CyberArk Defender, Sentry, or Guardian certifications, Experience with Threat and vulnerability management related to privileged access, Background in regulated industries (finance, healthcare, government)

What You'll Do.

and maintaining privileged access security solutions using the CyberArk suite

ensuring the protection of critical systems

and privileged accounts

aligning with security best practices and regulatory requirements

and maintain the full on-premises CyberArk Privileged Access Security (PAS) suite

Implement and maintain CyberArk safes

Integrate CyberArk with enterprise systems

Build and maintain custom connectors and plugins for applications and infrastructure

Develop and enforce privileged access policies and best practices

Conduct threat modeling

ensure PAM alignment with regulatory frameworks

Review privileged access workflows and recommend improvements

Automate onboarding of privileged accounts

Tune CPM/PSM performance

optimize vault operations

improve automated credential rotation processes

Implement continuous monitoring

and reporting mechanisms

Serve as a subject matter expert (SME) for CyberArk-related issues

Troubleshoot complex vaulting

and session management issues

Perform CyberArk upgrades

Provide escalation-level support

Provide guidance and mentorship to junior engineers

Develop documentation

and best practice guides

How You'll Work.

Team & Collaboration

Work closely with IAM, security operations, risk, and compliance stakeholders; Provide guidance and mentorship to junior engineers; Serve as a subject matter expert (SME) for CyberArk-related issues across infrastructure, development, and security teams

Communication Scope

Excellent communication and documentation abilities

Process & Methodology

Ability to lead complex projects with minimal supervision

Full Job Description

PAM CYBERARK ENGINEER Country: Mexico **Santander US – Privileged Access Management (PAM) Senior CyberArk Engineer** **Overview** The Senior CyberArk Engineer is responsible for architecting, deploying, and maintaining privileged access security solutions using the CyberArk suite. This role ensures the protection of critical systems, credentials, and privileged accounts while aligning with security best practices and regulatory requirements. The ideal candidate possesses deep hands-on expertise with CyberArk Privileged Access Security (PAS), strong security engineering skills, and experience operating in large, complex environments. **Key Responsibilities** **CyberArk Engineering & Administration** * Design, deploy, configure, and maintain the full on-premises CyberArk Privileged Access Security (PAS) suite, including: * Enterprise Password Vault (EPV) * Privileged Session Manager (PSM) * Privileged Session Manager for SSH (PSM-SSH) * Central Policy Manager (CPM) * Privileged Threat Analytics (PTA) * Implement and maintain CyberArk safes, platforms, policies, and connectors. * Integrate CyberArk with enterprise systems, including LDAP/AD, and SIEM ticketing systems, and cloud platforms (AWS, Azure, GCP). * Build and maintain custom connectors and plugins for applications and infrastructure. **Security Architecture & Governance** * Develop and enforce privileged access policies and best practices. * Conduct threat modeling and ensure PAM alignment with regulatory frameworks (SOX, GLBA, NYDFS, etc.). * Review privileged access workflows and recommend improvements to strengthen security posture. **Automation & Continuous Improvement** * Automate onboarding of privileged accounts, systems, and applications using REST APIs, PowerShell, Python, or similar tools. * Tune CPM/PSM performance, optimize vault operations, and improve automated credential rotation processes. * Implement continuous monitoring, alerting, and reporting mechanisms. **Operations & Support** * Serve a

Free ATS check

Applying for this PAM CYBERARK ENGINEER role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Santander US?

Real rants from real employees. Read before you apply.

Read Company Rants →