- Design, develop, and implement secure secrets management and privileged access solutions using HashiCorp Vault, supporting enterprise security and DevSecOps initiatives.
- Collaborate with application, infrastructure, cloud, and security teams to integrate Vault with business applications, CI/CD pipelines, cloud services, and enterprise authentication platforms.
- Develop automation, APIs, custom integrations, and reusable solutions to enhance credential management, access control, and security operations across hybrid environments.
- Produce technical documentation, solution designs, architecture diagrams, implementation guides, and operational procedures while supporting project delivery and platform enhancements.
|
- Strong experience implementing and managing HashiCorp Vault Enterprise/Open Source, including authentication methods, secrets engines, policies, namespaces, replication, and access control models.
- Hands-on experience developing integrations with HashiCorp Vault using REST APIs, Vault SDKs, CLI tools, and automation frameworks.
- Strong programming and scripting skills in Python, Java, Go, PowerShell, Shell Scripting, or JavaScript.
- Experience developing custom solutions for application secrets management, dynamic secrets, token management, certificate lifecycle management, and encryption services.
- Strong understanding of authentication and federation protocols including OAuth 2.0, OpenID Connect (OIDC), SAML, LDAP, Active Directory, and JWT-based authentication.
- Experience integrating Vault with enterprise IAM platforms, cloud identity providers, and authentication services.
- Hands-on experience with Terraform, Ansible, Git, Jenkins, GitHub Actions, Azure DevOps, or similar automation and CI/CD tools.
- Experience integrating HashiCorp Vault with Kubernetes, Docker, OpenShift, and containerized environments.
- Strong understanding of cloud platforms including AWS, Microsoft Azure, and Google Cloud Platform (GCP) and their native secrets and identity services.
- Experience implementing secure API authentication, authorization, and secrets injection mechanisms for web, mobile, and enterprise applications.
- Working knowledge of databases such as SQL Server, Oracle, PostgreSQL, MySQL, and experience configuring Vault dynamic database credentials.
- Experience with high availability, disaster recovery, replication, backup strategies, performance tuning, and operational resilience for Vault deployments.
- Strong understanding of cybersecurity principles including least privilege, zero trust, privileged access, secrets management, encryption, PKI, and certificate management.
- Experience supporting the full Software Development Lifecycle (SDLC), including requirements analysis, development, testing, deployment, troubleshooting, and production support.
- Ability to create technical specifications, workflow diagrams, architecture documents, and implementation runbooks.
- Experience troubleshooting complex Vault, authentication, API integration, and secrets management issues in enterprise environments.
- Familiarity with security monitoring, vulnerability assessment, and compliance frameworks such as NIST, CIS, ISO 27001, PCI-DSS, SOX, and GDPR.
|