Secrets Management Platform Engineer

Job not on LinkedIn

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of True Zero Technologies, LLC

True Zero Technologies, LLC

11 - 50 employees

💼 Consulting

🏥 Healthcare

📦 Logistics

Consulting • Healthcare • Logistics

True Zero Technologies, LLC is a veteran-owned company specializing in cybersecurity solutions. The company offers a range of services including security engineering and architecture, emerging technology adoption, cyber operations, cyber threat intelligence, penetration testing, and information assurance. True Zero is also recognized for its managed services and cloud security capabilities. The company partners with technology leaders such as Tanium, Splunk, Cribl, and Zscaler to deliver high-impact, high-value solutions that help organizations innovate while enhancing their security and operational programs. True Zero is committed to empowering organizations with actionable insights to secure their IT environments effectively.

📋 Description

• Onboard applications, services, users, and machine identities into a centralized secrets management platform such as CyberArk or HashiCorp Vault • Design and implement secure processes for credential provisioning, storage, retrieval, rotation, revocation, and retirement • Integrate AWS Secrets Manager and AWS Systems Manager Parameter Store with enterprise applications and cloud-native workloads • Develop and enforce least-privilege IAM policies for secrets, credentials, encryption keys, and privileged services • Automate secrets-management workflows using Python, Terraform, Ansible, and approved infrastructure-as-code technologies • Integrate secrets management into CI/CD pipelines and DevSecOps workflows • Design and support secrets integration for containers, Kubernetes workloads, cloud services, virtual machines, and application platforms • Implement and maintain PKI and certificate management processes • Eliminate hard-coded credentials, static passwords, embedded API keys, and unmanaged secrets • Implement FIPS 140-2/3 cryptographic controls and integrate solutions with AWS KMS in AWS GovCloud where required • Configure authentication methods and access policies for users, applications, workloads, and machine identities • Implement dynamic or short-lived credentials • Maintain centralized auditing, logging, monitoring, and alerting for secrets access and policy violations • Develop and enforce governance standards for secret ownership, access, rotation, expiration, and lifecycle management • Partner with application, cloud, platform, cybersecurity, and DevSecOps teams • Troubleshoot authentication, authorization, credential rotation, certificate, API, and platform integration issues • Maintain technical documentation, onboarding procedures, platform standards, runbooks, and governance processes • Continuously improve platform availability, scalability, automation, security controls, onboarding efficiency, and operational resilience

🎯 Requirements

• Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Information Systems, or a related technical discipline • Demonstrated experience implementing or administering CyberArk or HashiCorp Vault • Experience with AWS Secrets Manager, AWS Systems Manager Parameter Store, and AWS KMS • Strong understanding of Identity and Access Management, role-based access control, policy-based access, and least-privilege principles • Hands-on automation experience using Python, Terraform, and/or Ansible • Experience integrating secrets-management solutions with CI/CD pipelines, DevSecOps workflows, and automated deployment processes • Experience with PKI, certificate management, encryption, key management, and certificate lifecycle automation • Understanding of container and cloud security, including Kubernetes and cloud-native workloads • Experience designing credential rotation, dynamic secrets, machine identity, and privileged-access workflows • Familiarity with FIPS 140-2/3 validated cryptography and cryptographic requirements for government or regulated environments • Experience identifying and eliminating hard-coded credentials and unmanaged secrets • Strong understanding of Zero Trust principles • Experience with centralized logging, monitoring, auditing, compliance reporting, and security-event integration • Strong troubleshooting, documentation, governance, automation, and cross-functional collaboration skills • Experience supporting AWS GovCloud, government, defense, or other regulated cloud environments is preferred • Preferred certifications: AWS Certified Security – Specialty; AWS Certified Solutions Architect – Associate; HashiCorp Certified: Vault Associate or applicable CyberArk Defender/Sentry certification; CISSP or CISM

🏖️ Benefits

• Competitive salary, paid twice per month • Best in class medical coverage • 100% of medical premiums covered by True Zero • Company wide new business incentive programs • Contribution Incentives (i.e. white papers, blog posts, internal webinars, etc.) • 3 weeks of PTO starting + 11 Paid Holidays Annually • 401k Program with 100% company match on the first 4% • Monthly reimbursement of Cell Phone and Home Internet costs • Paternity/Maternity Leave • Investment in training and certifications to broaden and deepen your technical skills

Apply Now

Similar Jobs

🔥 20 minutes ago

MKS2 Technologies

201 - 500

💼 Consulting

🏥 Healthcare

📦 Logistics

Databricks Platform Engineer building secure, automated Lakehouse environments for MKS2 Technologies’ federal data initiatives. Optimizing provisioning, monitoring, governance, CI/CD, and platform performance.

🔥 20 minutes ago

SmarterDx

11 - 50

🏥 Healthcare

💼 Consulting

⚖️ Legal

Senior platform engineer building AWS, Kubernetes, Terraform, and CI/CD foundations for SmarterDx’s clinical AI platform. Improving secure deployments, monitoring, data segregation, and developer workflows.

🇺🇸 United States – Remote

💵 $190k - $220k / year

💰 $6M Seed Round on 2022-04

⏰ Full Time

🟠 Senior

🏗️ Platform Engineer

🔥 22 hours ago

Launch Potato

51 - 200

📣 Marketing

📱 Media

👥 B2C

Senior Salesforce Platform Engineer enhancing Salesforce CRM and cloud integrations for Skechers, a global footwear company. Automating deployments, platform operations, scalable architecture, and engineering quality across Salesforce products.

🔥 22 hours ago

SandboxAQ

51 - 200

🤖 Artificial Intelligence

🔒 Cybersecurity

💊 Pharmaceuticals

Platform Engineer building compliant infrastructure for SandboxAQ’s AI-powered medical-device products. Owning Linux fleet operations, AWS systems, CI/CD, observability, and regulated release tooling.

🔥 23 hours ago

Limble CMMS

51 - 200

🏭 Manufacturing

🍽️ Food & Beverage

🏥 Healthcare

Salesforce Platform Engineer owning architecture and development of Limble’s maintenance-management revenue systems. Integrating CPQ, CRM, billing, finance, and AI-assisted tools across the Salesforce ecosystem.

🇺🇸 United States – Remote

💵 $120k - $140k / year

💰 $16M Venture Round on 2022-09

⏰ Full Time

🟡 Mid-level

🟠 Senior

🏗️ Platform Engineer