HashiCorp Vault (Enterprise Edition) / IAM Security Engineer

Experis
Culpeper, VA, United States
3 days ago
Apply on www.experis.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$147,680.0 - $158,080.0
Working hours
Regular working hours

Tech stack

Python (Programming Language) Red Hat Enterprise Linux Ansible Systems Integration Scripting Software Modules Selinux Hashicorp Terraform Splunk Ansible Tower Data Pipelines
+2 more
Elk Stack Jenkins

Job description

Seeking a HashiCorp Vault / IAM Security Engineer with strong expertise in securing and managing enterprise environments. The ideal candidate will have hands-on experience with HashiCorp Vault, Terraform, RHEL, and Ansible, and will contribute to the deployment, hardening, and automation of security solutions. This role requires a proactive individual who can troubleshoot complex issues, integrate platforms, and develop automation workflows., + Develop, test and perform OS and software upgrades, prepare for and perform business continuity activities and address vulnerabilities

  • Interact with vendor and internal teams to ensure availability of, maintenance, enhancements to, and integrated with all the company ecosystems (MS-AD, monitoring, backup, SIEM, …) of SSMS /Vault infrastructure
  • Investigate and resolve issues that impacts or could potentially impact the availability of SSMS and its Vault infrastructure
  • Work with team to expand services and visibility by continuing to review offering, speaking with stakeholders and assisting new application teams to adopt and automate
  • Assist application team(s) with onboarding digital secrets to the Secret Management including reviewing environment for authentication method, secrets engine to onboard secrets, assist in developing compliance reporting, policy review/enforcement, end to end lifecycle management activities
  • Work with the vendors’ delivery teams, maintaining a detailed design, request the pre-requisites and deploy the selected solutions/features in a highly available, resilient and secure configuration. Ensure the solution is integrated with all the company ecosystems (MS-AD, monitoring, backup, SIEM, …)
  • Enhance and provide regular reporting and accountability on key metrics and agreed upon deliverables and ensure that the team is performing according to them
  • Maintain a customer guide that can be reused by the application team(s) for future onboarding actions
  • Maintain a runbook for the Secret Management service infrastructure and work with the administrators to maintain and enhance the administrators guide
  • On-call on a rotational basis

Requirements

  • HashiCorp Vault Enterprise administration (deployment in HA, troubleshooting, monitoring, hardening, integrations).
  • Terraform hands-on experience (module development).
  • Red Hat Linux (RHEL 8.x) experience (troubleshooting, monitoring, hardening).
  • RHEL 9 System Administration.
  • Ansible experience (developing roles, playbooks, AWX or Ansible Tower).
  • Python & Scripting Preferred Skills (Differential):

  • Go development (especially for Vault plugin development).
  • Jenkins (pipeline development and automation).
  • Splunk (query creation, dashboards, and alerting).
  • ELK Stack (integration, queries, alerts, dashboards)., + Strong problem-solving and analytical thinking.
  • Excellent communication and documentation skills.
  • Ability to collaborate effectively in cross-functional teams.
  • Adaptability to rapidly changing environments and technologies.
  • Attention to detail and commitment to security best practices. Qualifications: 5+ years of experience in security management and automation 3+ years of experience with Hashicorp Vault Enterprise edition

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.experis.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:24 min

Demonstrating database encryption at rest with HashiCorp Vault

Alex Soto Alex Soto · LIVE

5:44 min

Tightening the security perimeter using SELinux

Dimitrij Klesev +1 · LIVE

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · World Congress 2024

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

9:38 min

Troubleshooting SELinux container permission denials live

Dimitrij Klesev +1 · LIVE

Videos

See all

Related articles

See all