Overview
Skills
Job Details
Reference: SWI001273
Title : Security Mgt Specialist
Location : Culpepper, VA
Description
As a member of the Identity and Access Engineering team you will be expected to maintain, support and enhance the on-premises Swift Secrets Management Service (= SSMS) that is based upon HashiCorp Vault - Enterprise edition (Vault), tools, processes, and technologies including but not limited to:
- Develop, test and perform OS and software upgrades, prepare for and perform business continuity activities and address vulnerabilities
- Interact with Vendor and Swift internal teams to ensure availability of, maintenance, enhancements to, and integrated with all the Swift ecosystems (MS-AD, monitoring, backup, SIEM, ) of SSMS /Vault infrastructure
- Investigate and resolve issues that impacts or could potentially impact the availability of SSMS and its Vault infrastructure
- Work with team to expand services and visibility by continuing to review offering, speaking with stakeholders and assisting new application teams to adopt and automate
- Assist application team(s) with onboarding digital secrets to the Secret Management including reviewing environment for authentication method, secrets engine to onboard secrets, assist in developing compliance reporting, policy review/enforcement, end to end lifecycle management activities
- Work with the vendors delivery teams, maintaining a detailed design, request the pre-requisites and deploy the selected solutions/features in a highly available, resilient and secure configuration. Ensure the solution is integrated with all the Swift ecosystems (MS-AD, monitoring, backup, SIEM, )
- Enhance and provide regular reporting and accountability on key metrics and agreed upon deliverables and ensure that the team is performing according to them
- Maintain a customer guide that can be reused by the application team(s) for future onboarding actions
- Maintain a runbook for the Secret Management service infrastructure and work with the administrators to maintain and enhance the administrators guide
- On-call on a rotational basis
Specific Skills
Experience in Engineering/Operating solution in full HA across multiple data centers
Experience with HashiCorp Vault Enterprise edition
Experience on Infrastructure and Configuration Management as Code (Terraform)
Experience with DevOps and DevOps tooling (Jira, Git, Jenkins, etc.)
Experience with Python
Experience with REST-API
Experience with SELINUX
Experience with Splunk and Splunk Query Creator
RHEL 8 System Administration
RHEL 9 System Administration