Sr. Technical Analyst 16638
Role details
Job location
Tech stack
Job description
We are seeking a Senior Secrets Management Technical Analyst to support enterprise-wide cybersecurity, identity governance, and credential security initiatives. This role is ideal for a professional with deep experience in secrets management, Non-Human Identity (NHI), IAM, and secure credential lifecycle management.
You will serve as a subject matter expert and cross-functional liaison, partnering with security, infrastructure, and application teams to identify, analyze, and remediate exposed credentials while improving enterprise security posture.
This role plays a critical part in ensuring secure secrets handling, regulatory compliance, and rapid remediation of security risks across modern cloud and enterprise environments., * Discover, review, and validate alerts from secret-scanning tools to identify exposed or insecure credentials.
- Analyze and prioritize risks related to credential leaks, hardcoded secrets, and misconfigured access.
- Coordinate remediation efforts to ensure secure storage and handling of secrets., * Support governance and lifecycle management of Non-Human Identities (service accounts, system accounts, API credentials).
- Ensure alignment with enterprise IAM policies and security standards.
- Partner with IAM teams to enforce secure access controls and identity governance frameworks.
Secret Rotation & Compliance
- Monitor and enforce secret rotation policies and compliance requirements.
- Work with application and infrastructure teams to implement automated credential rotation workflows.
- Ensure adherence to regulatory and internal security standards.
Incident Response & Remediation
- Collaborate with security and engineering teams to investigate exposed credentials and security incidents.
- Track findings end-to-end, ensuring timely remediation and ownership accountability.
- Support root cause analysis and continuous improvement efforts.
Monitoring, Metrics & Reporting
- Develop and maintain security dashboards and metrics, including:
- Mean time to detect (MTTD)
- Mean time to remediate (MTTR)
- Credential exposure trends
- Provide actionable insights to improve enterprise security posture.
Process Improvement & Automation
- Enhance secret discovery, scanning accuracy, and remediation pipelines.
- Create and maintain runbooks, documentation, and standard operating procedures (SOPs).
- Drive improvements in security operations, automation, and efficiency.
Requirements
- Bachelor's degree in Information Technology, Cybersecurity, or related field, or equivalent experience.
Experience
- 10+ years of experience in cybersecurity, IAM, identity governance, or security operations.
- Hands-on experience with secrets management, credential security, or secret-scanning tools.
Technical Skills
- Strong understanding of:
- Identity & Access Management (IAM)
- Non-Human Identity (NHI) / service account management
- Authentication, Authorization, and Accounting (AAA)
- Zero Trust security principles
- Experience with:
- Secret scanning tools / credential discovery platforms
- Incident response and security remediation workflows
- Cloud environments (AWS, Azure, OCI)
- Knowledge of enterprise security policies, controls, and governance frameworks.
Professional Skills
- Strong analytical and problem-solving skills.
- Ability to translate technical findings into business-friendly insights.
- Excellent communication and cross-functional collaboration skills.
- Detail-oriented with a proactive and security-first mindset., * Experience with Privileged Access Management (PAM) tools such as CyberArk.
- Background in security metrics, audit support, and risk mitigation.
- Experience working in regulated environments (financial services, healthcare, etc.).
- Familiarity with DevSecOps, automation, and cloud-native security practices.
- Proven ability to influence stakeholders and act as a trusted security advisor.