We help organizations make smarter cybersecurity decisions that minimize risk.
Senior PAM Engineer – CyberArk
Location
United States
Posted
3 days ago
Salary
0
Seniority
Senior
Job Description
Senior PAM Engineer – CyberArk
GuidePoint Security
• Lead end-to-end CyberArk implementations, upgrades, and migrations across diverse client environments (on-prem, hybrid, and cloud) • Design and deploy core CyberArk components: Vault, CPM, PVWA, PSM, PSMP, and PTA • Conduct discovery workshops with client stakeholders to gather requirements and define PAM strategy and architecture • Develop and execute onboarding plans for privileged accounts (Windows, Unix/Linux, databases, network devices, cloud platforms) • Integrate CyberArk with adjacent systems (SIEM, ITSM, IAM, ticketing tools, AD/LDAP) via REST APIs and connectors • Create platform configurations, custom connectors, and PSM plugins/recordings for non-standard target systems • Produce clear, client-ready documentation: solution designs, runbooks, architecture diagrams, and knowledge transfer materials • Manage project timelines, scope, and client communications, often across multiple concurrent engagements • Troubleshoot complex production issues and provide escalation support • Mentor junior engineers and contribute to internal methodology, accelerators, and best-practice playbooks • Stay current on CyberArk product roadmap, releases, and emerging PAM/identity security trends • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes
Job Requirements
- 5+ years of hands-on CyberArk experience, including at least 2+ years in a professional services, consulting, or systems integrator environment
- Demonstrated experience leading or playing a key role in multiple full-lifecycle CyberArk implementations for different clients
- Deep technical knowledge of CyberArk PAS suite (Vault, CPM, PVWA, PSM, PSMP, PTA/PTA-EPM)
- Experience with platform onboarding across varied target types (Windows, Unix/Linux, databases, network/security devices, cloud IAM)
- Strong scripting skills (PowerShell, Python, or similar) for automation and custom integrations
- Familiarity with REST APIs and experience building or supporting CyberArk integrations
- Excellent client-facing communication skills — comfortable presenting to both technical teams and executive stakeholders
- Ability to manage ambiguity, shifting priorities, and multiple client engagements simultaneously
- Strong documentation skills and attention to detail
- CyberArk certifications (CDE, Sentry, Defender, or equivalent) (Preferred)
- Experience with CyberArk cloud offerings (Privilege Cloud, Identity Security Platform) (Preferred)
- Exposure to other IAM/PAM tools (BeyondTrust, Delinea, SailPoint, Okta) for comparative or migration context (Preferred)
- Experience with DevOps/Secrets Manager use cases (CyberArk Conjur, AAM) (Preferred)
- Background in regulated industries (finance, healthcare, government) and associated compliance frameworks (SOX, HIPAA, PCI-DSS) (Preferred)
Benefits
- Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
- Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
- Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
- 12 corporate holidays and a Flexible Time Off (FTO) program
- Healthy mobile phone and home internet allowance
- Eligibility for retirement plan after 2 months at open enrollment
- Pet Benefit Option
Related Guides
Related Categories
Related Job Pages
More Engineer Jobs
Role Description You are an engineer who happens to be exceptionally good at working with AI. Not an ML researcher, not a prompt engineer — a builder. You will spend your days in the codebase, shipping production features across the full stack: a schema migration, the backend service that reads from it, and the typed frontend that renders it, often in a single PR. You will use AI coding tools as force multipliers — to scaffold, debug, refactor, and ship at a pace that would not otherwise be possible. The work is yours end to end. You own the features you build and their failure modes, from the database row to the screen an operator depends on during a turnover. This is a senior individual-contributor role with no people management and no direct reports. You will influence the codebase the way the strongest senior engineers do — through the quality of what you ship, sharp code review, and architectural decisions that hold up over time — not by managing a team. The surface area is significant, and you will own a meaningful share of it. What You'll Do - Ship full vertical slices across a TypeScript monorepo — schema migration, backend service, frontend component — in a single PR, with end-to-end types holding the slice together. - Drive the rebuild through its remaining phases, including the web dashboard, admin surface, mobile app, and a public API. - Build for a multi-region, data-residency-sensitive product from day one — a deliberate architectural commitment, made early because our operators run real operations at scale. - Integrate with the messy real world: property management systems, smart locks, payments, and a high-frequency telemetry pipeline. - Raise the quality bar by example — through the code you ship, the reviews you give, and the patterns you leave behind for the next engineer. - Shape how we work with AI: the workflows, guardrails, and standards that make AI-assisted development reliable and repeatable, not lottery-ticket development. Qualifications - 5+ years writing production TypeScript / JavaScript. - True full-stack range: you can write a schema migration, a backend service, and a typed frontend component in the same afternoon. - Demonstrated fluency with AI coding tools — you can articulate where they accelerate you and where they quietly mislead you. - Strong relational database instincts: schema design, migrations, indexes, query plans. - Sound architectural judgment — knowing when to build, buy, refactor, or ship as-is. - A high bar for engineering hygiene — an untyped boundary or logic that leaked into a controller should bother you. - Clear written communication. We are async-first; decisions happen in writing, and you can own a hard call in a thread rather than a meeting. - Comfort working autonomously and remotely — you organize your own time, unblock yourself, and overlap with the team when it matters. Nice to Have - Modern full-stack TypeScript framework experience (Nest-style backends, App-Router-style frontends). - Offline-first mobile architectures. - Schema-first stacks with end-to-end type safety. - High-frequency event pipelines or IoT telemetry. - Multi-region or data-residency-sensitive systems. - Vertical SaaS with deep integration surface area. Our Stack - TypeScript end to end, in a strict monorepo. - A modular backend, a modern App-Router web app, an offline-first mobile app, and an edge layer for public-facing surfaces. - Managed Postgres with row-level security and an ORM that owns the schema. - Background jobs on a managed queue. - End-to-end type safety from database row to frontend form, validated by a single shared schema layer. - We deliberately favor managed platforms over primitives, so the team spends its time on product rather than infrastructure. How We Work - Small team, high ownership. You own features end to end, including their failure modes. - AI-first development, structurally. The codebase is deliberately built for AI comprehension: narrow module boundaries, strict types, schema-first data flow. AI tooling is part of the dev loop, not a side project. - Types over tests, but tests where it counts. End-to-end type safety catches most bugs at compile time. When we test, it is integration tests against real infrastructure — no mocked databases. - Real engineering hygiene. No `any`, no silenced warnings, no logic in controllers, no auto-save forms. The rules exist because they keep the codebase legible to humans and agents alike. - Async-first. Decisions happen in writing so they outlast the meeting, and so strong engineers can do their best work on their own schedule. Why Now You would join mid-rebuild, the most consequential moment in the company's lifecycle. The clean-room architecture is being laid down right now. You will not inherit a legacy system; you will help build the one that replaces it — and the product it powers already runs the daily operations of operators managing large portfolios. The patterns you set in the slices you ship — how a migration is structured, how a service is wired, how types flow from the database to the form — become the patterns the next engineer reaches for. This is foundational work, and it carries the kind of influence you earn only by building.
Observability Engineer
Bright Vision TechnologiesBright Vision Technologies is a forward-thinking software development company dedicated to building innovative solutions that help businesses automate and optimize their operations. We leverage cutting-edge technologies to create scalable, secure, and user-friendly applications. We recognize that our people are our strength. We are an equal opportunity employer and place a high value on diversity and inclusion. We do not discriminate on the basis of any protected attribute. We make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Bright Vision Technologies is an Equal Opportunity Employer, including Disability/Veterans.
Role Description We are looking for an Observability Engineer to design and operate the metrics, logging, tracing, and alerting platforms that give engineering teams confidence in the systems they run. The role spans the full observability stack — from collection agents and pipelines to long-term storage, dashboards, and alerting workflows — with a strong focus on usability, signal quality, and operational ROI. The ideal candidate has built and operated observability platforms at scale, understands the trade-offs between open-source and SaaS approaches, and can translate noisy telemetry into actionable insight for both engineers and business stakeholders. Key Responsibilities - Design and operate enterprise-grade observability platforms covering metrics, logs, traces, events, and synthetic monitoring. - Architect Prometheus / Thanos / Mimir, Grafana, Loki, Tempo, OpenTelemetry, and Datadog deployments for high availability and scale. - Develop standards for service instrumentation, including OpenTelemetry adoption, metric naming, label cardinality, and structured logging conventions. - Define and enforce SLOs, SLIs, and error budgets, and build the dashboards and alerts that operationalize them. - Build alerting strategies that minimize noise, surface actionable signals, and integrate cleanly with on-call workflows in PagerDuty, Opsgenie, or similar tools. - Operate large-scale time-series and log storage platforms, balancing retention, query performance, and cost. - Design distributed tracing pipelines and help teams use traces to diagnose latency and reliability issues. - Develop self-service tooling, paved-road libraries, and templates that make adoption of observability standards easy for product teams. - Drive cost management and label-cardinality discipline across the observability estate. - Lead incident response readiness improvements through better dashboards, alerting hygiene, and post-incident analysis tooling. - Partner with SRE and platform teams to integrate observability into deployment pipelines, canary analysis, and progressive delivery workflows. - Evaluate and recommend observability vendors and open-source tools based on cost, capability, and operational maturity. - Mentor engineering teams on observability fundamentals, debugging techniques, and SLO-driven operations. - Maintain documentation, onboarding guides, and runbooks for the observability platform. Qualifications - Bachelor’s degree in Computer Science or a related field. - Five or more years of experience in SRE, platform engineering, or observability roles. - Deep hands-on experience with Prometheus, Grafana, and at least one major commercial observability platform such as Datadog, New Relic, or Splunk. - Strong understanding of OpenTelemetry, distributed tracing, and structured logging. - Proficiency in at least one general-purpose language such as Go, Python, or Java. - Experience operating high-cardinality, high-throughput metrics and log pipelines. - Strong understanding of SLOs, error budgets, and SRE principles. - Experience integrating observability with CI/CD and incident management tooling. - Solid grasp of Linux internals, networking, and container platforms. - Excellent communication and collaboration skills. Preferred Qualifications - Experience with Thanos, Mimir, Cortex, Loki, or Tempo at scale. - Contributions to OpenTelemetry or observability open-source projects. - Familiarity with eBPF-based observability tooling. - Experience driving observability cost optimization initiatives. - Exposure to regulated environments with audit-grade logging requirements. How to Apply Would you like to know more about this opportunity? For immediate consideration, please send your resume to [email protected] or contact us at (908) 505-3545. Learn more about Bright Vision Technologies at www.bvteck.com .
Mid-Level QC Manual Engineer
Lifted, an Upwork CompanyOne solution built for enterprise companies to source, contract, manage, and pay any type of contingent talent.
Role Description We are seeking a Mid-Level QC Manual Engineer to support a live production hiring-event platform used by customers. This role focuses on manual QA, end-to-end workflow validation, regression testing, API validation, backend data verification, production issue troubleshooting, defect documentation, and release validation. Enterprise experience strongly preferred. Key Responsibilities - Analyze and troubleshoot production issues impacting live customer workflows. - Perform functional, regression, and end-to-end testing across hiring-event workflows. - Validate APIs and backend integrations using Postman. - Test REST APIs and verify response behavior, backend integrations, and service interactions. - Use SQL to validate backend data, troubleshoot inconsistencies, and verify test outcomes. - Reproduce, document, and track defects, test results, and workflow issues in Jira. - Support testing of architecture changes, integrations, enhancements, and platform releases. - Investigate frontend and network issues using browser developer tools. - Collaborate with Product, Engineering, Support, and business-facing teams to resolve customer issues. - Monitor production behavior and support incident triage and validation. - Help ensure timely issue resolution while supporting SLA expectations. Qualifications - 3-5 years of strong manual testing experience. - Experience validating end-to-end workflows and user functionality. - Experience with regression testing to ensure platform stability after releases and enhancements. - Hands-on experience using Postman for API testing and response validation. - Experience testing REST APIs and validating backend integrations or services. - Strong SQL skills for backend data validation, troubleshooting, and test verification. - Experience documenting defects, test results, and workflow issues in Jira. - Ability to collaborate effectively with cross-functional teams including Product, Engineering, and Support. - Experience working within Agile/Scrum environments, including sprint cycles, testing ceremonies, and release validation. - Strong understanding of product functionality, user workflows, and business requirements. - Ability to identify, design, and execute relevant test cases based on product requirements and business problems. - Ability to interpret product needs and translate them into effective testing scenarios and validation plans. - Experience with WCAG standards and accessibility tooling. - Experience investigating frontend and network issues using browser developer tools. - Ability to support production issue troubleshooting and incident validation for customer-facing workflows. Requirements - Experience using Datadog for log review, monitoring, and troubleshooting. - Familiarity with Kafka and asynchronous workflow validation. - Exposure to MongoDB or other NoSQL databases for backend data validation. - General understanding of CI/CD pipelines, deployment processes, and release validation activities. - Experience working with SaaS platforms or customer-facing or employer-facing applications. Benefits - Remote role for candidates located in LATAM. - Must be able to support U.S. timezone coverage across PST, MST, CST, or EST. - Full-time contract engagement at 40 hours per week. - 100% allocation expected. - Engagement currently runs through March 31, 2027.
• You will work with service-based architecture and cloud native apps to maintain system efficiency and security • You will use Cursor and Claude to build technologies that are AI-first • You will code! A lot! • You will do code reviews • You will ship a ton of applications to k8s and have fun with building telemetry and watching their dashboards • You will design software serving traffic originating from millions of users


