Description review

Lead Security Engineer – CyberArk PAM

CRH Talento de IT · Mexico · back to the listing

HR standards

50/100

needs work

Title ↔ description

90/100

strong

Reads as

Security Engineer

100% confident

What this role officially is

ICT security administrator — ESCO, the EU occupation classification

ICT security administrators plan and carry out security measures to protect information and data from unauthorised access, deliberate attack, theft and corruption.

Also known as: network security administrator, system security administrator, ICT security administrators, IT security administrator

How others title the same work

Large employers

  • Security Risk Management Specialist Canonical Ltd.
  • Security Software Engineer Canonical Ltd.
  • Senior Security Operations Engineer Canonical Ltd.
  • Staff Security Operations Engineer Canonical Ltd.
  • Ubuntu Security Engineer Canonical Ltd.

Startups

  • Security Engineer (Bangalore, India) AiPrise
  • Security & Trust Engineer Alex
  • Elucid | Senior Security Engineer | Boston, MA | ONSITE (hybrid) | $130k–$170k Elucid
  • Factory | Security Engineer | ONSITE, San Francisco, CA | Full-Time Factory
  • Factory | Security Engineer | Onsite in San Francisco | Full-time Factory

What the listing never says

  • No section describes what the person would actually do. Scope clarity
  • No pay range published. Candidates cannot tell whether applying is worth their time. Pay transparency
  • No location or timezone policy stated, so a candidate cannot tell where they may work from. Scope clarity

The listing, marked up

Nothing in the wording of this listing tripped a check. The scores above still judge how complete and coherent it is.

Buscamos un Lead Security Engineer especializado en CyberArk PAM, responsable de diseñar, implementar, configurar y mantener soluciones de Privileged Access Management (PAM), con especial enfoque en CyberArk Privileged Session Manager (PSM).

La persona será responsable de administrar y dar soporte a los controles de acceso de cuentas privilegiadas, incluyendo el onboarding de cuentas, administradores, equipos de soporte y cuentas de servicio, así como la configuración de monitoreo y grabación de sesiones privilegiadas.

Trabajará de manera cercana con equipos de infraestructura, servidores, aplicaciones y seguridad para garantizar que los accesos privilegiados sean seguros, controlados y tengan el menor impacto posible en la operación. También deberá atender incidentes y realizar troubleshooting de conectividad, sesiones y componentes de CyberArk.

El rol requiere una persona autónoma, proactiva y con capacidad para resolver problemas técnicos, capaz de trabajar con diferentes stakeholders y equipos multidisciplinarios, incluyendo equipos offshore y nearshore.

Además, participará en iniciativas para fortalecer la gobernanza de accesos privilegiados, monitoreo, cumplimiento y certificación de accesos, manteniéndose actualizada sobre tecnologías PAM, riesgos emergentes y mejores prácticas de seguridad.

Tecnologías y conocimientos clave: CyberArk PSM, Vault, CPM, PVWA, EPM, Windows Server, Active Directory, protocolos de red, administración de endpoints, autenticación empresarial y gestión de cuentas privilegiadas.

Originally posted on Himalayas

How this was produced

Highlights are found by rule, not by a model: each one is a phrase matched at a known position, and every note is a template we wrote. The two scores come from a typed-decision model (Jev) that reads the listing against the official role definition and real listings for the same role, and returns probabilities rather than prose — it never writes any of the words on this page, and never chooses what to highlight.

Deterministic penalty applied to the HR score: 16 points (from 66 before penalties). Reviewed 28 Sep 2026.