Senior Security Vault Engineer
REMOTE
As businesses build and adopt AI agents at an accelerating pace, every connection those agents make to internal systems — APIs, cloud services, collaboration tools, and data stores — generates a machine identity that must be provisioned, monitored, and governed.
These credentials proliferate quickly, operate autonomously, and fall outside traditional governance models built for human users.
We are seeking a Senior Engineer to own this space end-to-end. This is a high-visibility role that sits at the intersection of Identity, Cloud, Enterprise Applications, and Cybersecurity.
This individual will lead the rollout and operationalization of a non-human identity (NHI) governance platform, build workflows that enable lines of business to move quickly with appropriate guardrails, and establish the operational foundation that supports a broader AI governance program.
This is not a policy-writing role - it is an engineering and operations role with real cross-functional ownership and meaningful impact on securing an AI-enabled future.
Responsibilities:
NHI Governance Platform Rollout & Operationalization
Lead the end-to-end deployment of an NHI governance platform across the environment, including integration with cloud platforms, identity providers, SaaS tools, and internal systems
Partner with Identity Management to define and build the operational model for NHI discovery, classification, ownership assignment, and lifecycle management
Develop dashboards, alerting, and reporting to provide real-time visibility into machine identity posture
Machine Identity Governance
Establish intake, assessment, and approval workflows for new machine identities and agent credentials across lines of business
Partner on lifecycle management processes - provisioning, rotation, access reviews, and decommissioning - for secrets, service accounts, API keys, and OAuth tokens
Identify ungoverned or orphaned credentials and drive remediation in collaboration with Cloud, Identity, and Engineering teams
Cross-Functional Partnership
Serve as the operational connective tissue between Identity Management, Cloud Operations, Enterprise Applications, and Cybersecurity
Partner with Cybersecurity to translate policy into enforceable, automated controls
Collaborate with AI teams and business units to enable governed adoption of agentic AI - governance as an enabler, not a bottleneck
Represent the organization in cross-functional forums related to AI governance and machine identity strategy
Program Development
Build and maintain runbooks, standards, and documentation for machine identity operations
Track metrics that demonstrate risk reduction and operational maturity over time
Stay current on the evolving NHI and agentic AI threat landscape and bring relevant practices back to the organization
Qualifications:
Required Qualifications:
5+ years in infrastructure, identity, or security engineering with demonstrated ownership of complex, cross-functional initiatives
Hands-on experience with secrets management platforms (e.g., HashiCorp Vault, AWS Secrets Manager, Azure Key Vault) and/or non-human identity tooling
Strong working knowledge of cloud environments (AWS, Azure, or Google Cloud Platform) and how machine identities are created and used within them
Familiarity with OAuth, OIDC, SAML, and API key-based authentication patterns
Experience integrating security or identity tooling across enterprise environments - from new platform implementation to operational program
Ability to work across organizational boundaries - comfortable in both technical deep dives and stakeholder discussions
Strong communication, documentation, and problem-solving skills
Preferred Qualifications:
Experience with NHI governance or secrets security platforms (e.g., Entro Security, Astrix, Elimity, or similar)
Exposure to agentic AI frameworks and how AI agents authenticate to services
Relevant certifications (CISSP, CCSP, or cloud provider security certifications)
Experience in data-sensitive industries