HashiCorp Vault and CyberArk Engineer

Austin, TX, US • Posted 1 day ago • Updated 10 hours ago
Full Time
Part Time
On-site
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Storage
  • LDAP
  • OIDC
  • Database
  • API
  • Jenkins
  • GitLab
  • GitHub
  • ServiceNow
  • SIEM
  • Workflow
  • Backup
  • Capacity Management
  • Performance Tuning
  • Authorization
  • ITIL
  • Root Cause Analysis
  • Knowledge Transfer
  • IT Management
  • Design Review
  • Training
  • Mentorship
  • Microsoft Windows
  • Hardening
  • CyberArk
  • Critical Path Method
  • PSM
  • Onboarding
  • Lifecycle Management
  • Identity Management
  • RBAC
  • PKI
  • TLS
  • Encryption
  • Management
  • Hierarchical Storage Management
  • Authentication
  • High Availability
  • Disaster Recovery
  • Backup Administration
  • Failover
  • Replication
  • Recovery
  • Terraform
  • Ansible
  • Configuration Management
  • Kubernetes
  • Docker
  • Linux
  • Unix
  • Microsoft Windows Server
  • Microsoft Operating Systems
  • Computer Networking
  • Dragon NaturallySpeaking
  • DNS
  • Proxies
  • Firewall
  • Secure Shell
  • Continuous Integration
  • Continuous Delivery
  • Cloud Computing
  • Amazon Web Services
  • Microsoft Azure
  • Google Cloud
  • Google Cloud Platform
  • Scripting
  • Python
  • Bash
  • Windows PowerShell
  • Grafana
  • Splunk
  • Auditing
  • SANS
  • Stakeholder Communications

Summary

Key Responsibilities:

  • Design, deploy, configure, and maintain HashiCorp Vault and CyberArk services across production and non-production environments.
  • Engineer secure secrets management patterns for applications, human administrators, service accounts, workloads, APIs, CI/CD pipelines, and cloud-native platforms.
  • Implement HashiCorp Vault Enterprise capabilities, including namespaces, integrated storage, performance and disaster recovery replication, high availability, auto-unseal, Sentinel policies, and audit devices.
  • Configure Vault authentication methods and secrets engines, including AppRole, Kubernetes, LDAP/OIDC, cloud authentication, KV, database dynamic credentials, PKI, SSH, Transit encryption, and cloud secrets, as applicable.
  • Administer and engineer CyberArk PAM components, including Digital Vault, PVWA, CPM, PSM/PSMP, Safes, Platforms, account discovery, onboarding, credential rotation, reconciliation, session management, and audit controls.
  • Design integration and coexistence patterns between HashiCorp Vault and CyberArk, with clear ownership for human privileged credentials, application secrets, machine identities, API keys, certificates, and service accounts.
  • Integrate secrets management platforms with AWS, Azure, Google Cloud Platform, Kubernetes, Docker, Terraform, Ansible, Jenkins, GitLab CI, GitHub Actions, ServiceNow, SIEM platforms, and enterprise identity providers.
  • Develop Infrastructure as Code (IaC), scripts, APIs, reusable modules, and automated workflows using Terraform, Python, Bash, PowerShell, or Go.
  • Perform platform upgrades, patching, certificate renewal, backup and recovery validation, capacity management, health checks, performance tuning, and vulnerability remediation.
  • Troubleshoot complex authentication, authorization, connectivity, replication, unseal, policy, token, certificate, password rotation, reconciliation, and privileged session issues.
  • Drive incident, problem, change, and release activities in accordance with enterprise ITIL and security processes.
  • Lead root-cause analysis (RCA) for recurring issues and implement sustainable remediation strategies.
  • Create and maintain HLDs, LLDs, SOPs, runbooks, operational standards, support procedures, architecture diagrams, and knowledge-transfer materials.
  • Provide technical leadership through design reviews, engineering guidance, training, and mentoring for operations teams and junior engineers.
  • Participate in US time-zone meetings, planned maintenance windows, technical escalations, and on-call support as agreed upon for the engagement.

Required Qualifications:

  • Hands-on enterprise experience with HashiCorp Vault architecture, implementation, administration, security hardening, and troubleshooting.
  • Hands-on experience with CyberArk PAM engineering and administration, including Vault, PVWA, CPM, PSM/PSMP, Safes, Platforms, onboarding, credential rotation, reconciliation, and session controls.
  • Strong understanding of secrets lifecycle management, Privileged Access Management (PAM), least privilege, Zero Trust, machine identity, RBAC, Policy-as-Code, and separation of duties.
  • Practical knowledge of PKI, TLS/mTLS, certificates, encryption, tokenization, key management, HSM/KMS concepts, authentication methods, and identity federation.
  • Experience building high-availability (HA) and disaster recovery (DR) architectures, including validating backups, failover, replication, and recovery procedures.
  • Proficiency in Terraform and working knowledge of Ansible or equivalent configuration management/IaC tooling.
  • Experience with Kubernetes, Docker, Linux/Unix, Windows Server, networking fundamentals, DNS, proxies, firewalls, load balancers, SSH, and REST APIs.
  • Experience integrating security platforms into CI/CD pipelines and cloud environments such as AWS, Azure, or Google Cloud Platform.
  • Scripting and automation capabilities in at least two of the following: Python, Bash, PowerShell, or Go.
  • Experience with monitoring and observability tools such as Prometheus, Grafana, Splunk, or equivalent, including alerting and audit-log integration.
  • Ability to independently own engineering deliverables, production issues, and stakeholder communications.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10236892
  • Position Id: OOJ - 5884-4885-1790778489
  • Posted 1 day ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Austin, Texas

•

Today

Easy Apply

Third Party, Contract

Depends on Experience

Austin, Texas

•

3d ago

Easy Apply

Third Party, Contract

Depends on Experience

Austin, Texas

•

Today

Easy Apply

Third Party, Contract

Depends on Experience

Austin, Texas

•

20d ago

Easy Apply

Contract

Depends on Experience

Search all similar jobs