FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Secrets Management Platform Engineer
True Zero Technologies, LLCSecrets management platform engineer securing credentials, identities, and certificates for government and regulated cloud workloads. Automating Vault or CyberArk, AWS, PKI, and DevSecOps integrations in Zero Trust environments.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in secrets management, including the implementation of CyberArk or HashiCorp Vault, AWS Secrets Manager, and automation using Python and Terraform. Proficient in designing secure credential processes, enforcing IAM policies, and integrating solutions within CI/CD and DevSecOps workflows.
Highest-signal resume keywords
CyberArk ImplementationHashiCorp Vault AdministrationAWS Secrets Manager IntegrationPython AutomationIdentity And Access Management
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Credential ProvisioningSecrets ManagementPKI ManagementEncryption Key ManagementDynamic Secrets ImplementationCI/CD IntegrationPolicy-Based Access ControlKubernetes SecurityFIPS 140-2/3 ComplianceTroubleshooting Authentication Issues
Soft Skills
Cross-Functional CollaborationDocumentation SkillsGovernance Standards DevelopmentOperational Resilience ImprovementMonitoring And Alerting
Tools & Technologies
AWS Systems Manager Parameter StoreTerraformAnsibleAWS KMSCentralized Logging ToolsDevSecOps ToolsInfrastructure-As-Code TechnologiesCloud ServicesApplication PlatformsSecrets Management Platforms
Certifications & Qualifications
AWS Certified Security – SpecialtyAWS Certified Solutions Architect – AssociateHashiCorp Certified: Vault AssociateCyberArk Defender CertificationCISSPCISM
Industry Keywords
Cloud SecurityZero Trust PrinciplesRegulated EnvironmentsGovernment CloudDefense Sector
Tech Stack
Tools & technologiesAnsibleAWSCloudCyber SecurityKubernetesPythonTerraformVault
About the role
Key responsibilities & impact- Onboard applications, services, users, and machine identities into a centralized secrets management platform such as CyberArk or HashiCorp Vault
- Design and implement secure processes for credential provisioning, storage, retrieval, rotation, revocation, and retirement
- Integrate AWS Secrets Manager and AWS Systems Manager Parameter Store with enterprise applications and cloud-native workloads
- Develop and enforce least-privilege IAM policies for secrets, credentials, encryption keys, and privileged services
- Automate secrets-management workflows using Python, Terraform, Ansible, and approved infrastructure-as-code technologies
- Integrate secrets management into CI/CD pipelines and DevSecOps workflows
- Design and support secrets integration for containers, Kubernetes workloads, cloud services, virtual machines, and application platforms
- Implement and maintain PKI and certificate management processes
- Eliminate hard-coded credentials, static passwords, embedded API keys, and unmanaged secrets
- Implement FIPS 140-2/3 cryptographic controls and integrate solutions with AWS KMS in AWS GovCloud where required
- Configure authentication methods and access policies for users, applications, workloads, and machine identities
- Implement dynamic or short-lived credentials
- Maintain centralized auditing, logging, monitoring, and alerting for secrets access and policy violations
- Develop and enforce governance standards for secret ownership, access, rotation, expiration, and lifecycle management
- Partner with application, cloud, platform, cybersecurity, and DevSecOps teams
- Troubleshoot authentication, authorization, credential rotation, certificate, API, and platform integration issues
- Maintain technical documentation, onboarding procedures, platform standards, runbooks, and governance processes
- Continuously improve platform availability, scalability, automation, security controls, onboarding efficiency, and operational resilience
Requirements
What you’ll need- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Information Systems, or a related technical discipline
- Demonstrated experience implementing or administering CyberArk or HashiCorp Vault
- Experience with AWS Secrets Manager, AWS Systems Manager Parameter Store, and AWS KMS
- Strong understanding of Identity and Access Management, role-based access control, policy-based access, and least-privilege principles
- Hands-on automation experience using Python, Terraform, and/or Ansible
- Experience integrating secrets-management solutions with CI/CD pipelines, DevSecOps workflows, and automated deployment processes
- Experience with PKI, certificate management, encryption, key management, and certificate lifecycle automation
- Understanding of container and cloud security, including Kubernetes and cloud-native workloads
- Experience designing credential rotation, dynamic secrets, machine identity, and privileged-access workflows
- Familiarity with FIPS 140-2/3 validated cryptography and cryptographic requirements for government or regulated environments
- Experience identifying and eliminating hard-coded credentials and unmanaged secrets
- Strong understanding of Zero Trust principles
- Experience with centralized logging, monitoring, auditing, compliance reporting, and security-event integration
- Strong troubleshooting, documentation, governance, automation, and cross-functional collaboration skills
- Experience supporting AWS GovCloud, government, defense, or other regulated cloud environments is preferred
- Preferred certifications: AWS Certified Security – Specialty; AWS Certified Solutions Architect – Associate; HashiCorp Certified: Vault Associate or applicable CyberArk Defender/Sentry certification; CISSP or CISM
Benefits
Comp & perks- Competitive salary, paid twice per month
- Best in class medical coverage
- 100% of medical premiums covered by True Zero
- Company wide new business incentive programs
- Contribution Incentives (i.e. white papers, blog posts, internal webinars, etc.)
- 3 weeks of PTO starting + 11 Paid Holidays Annually
- 401k Program with 100% company match on the first 4%
- Monthly reimbursement of Cell Phone and Home Internet costs
- Paternity/Maternity Leave
- Investment in training and certifications to broaden and deepen your technical skills