IAM Secrets Management Senior Engineer
2 weeks ago
This role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office.
Who We Are
Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today's complex world. Our culture thrives on finding new and better ways to accelerate what's next. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE.
Job Description
HPE Global IT is a dynamic organization enabling the enterprise to innovate and lead the industry with our consumption-based IT transformation and our consulting, financial, educational, and operational support services. Join us as we develop innovative solutions that revolutionize how we help customers by simplifying their operations and move the world forward.
About Our Cybersecurity Team
Are you ready to make an impact with one of the world's leading technology companies? HPE's Cybersecurity team is where you can do just that. We're looking for a skilled and motivated Senior Engineer – Secrets Management (HashiCorp Vault) to join our global Cybersecurity organization. If you're passionate about securing credentials, automating access control, and building scalable enterprise solutions, this is the role for you.
What You'll Do
About the Role
As a Senior Secrets Management PAM Engineer, you will play a key role in designing, deploying, and managing enterprise-wide secrets management solutions — with a primary focus on HashiCorp Vault. You will work closely with Cybersecurity Architects, IAM, PAM, and DevSecOps teams to deliver secure, scalable, and automated credential management across HPE's hybrid infrastructure.
You will serve as a technical SME and hands-on implementer, ensuring seamless integration of secrets management with privileged access and identity platforms, while strengthening the company's overall security posture.
Key Responsibilities
Implementation & Engineering
- Deploy, configure, and manage HashiCorp Vault Enterprise clusters, including replication, DR, namespaces, secrets engines, and authentication methods
- Implement dynamic and static secrets, short-lived credentials, and automated rotation for accounts, APIs, and services
- Integrate secrets management with PAM platforms (e.g., CyberArk, BeyondTrust) and CI/CD pipelines (Jenkins, GitHub, GitLab, Azure DevOps)
- Build and maintain Vault policies, AppRoles, OIDC/JWT integrations, and RBAC models
- Automate secrets onboarding and lifecycle management using APIs, Terraform, and scripting languages (Python, PowerShell, Bash)
- Ensure secure integration of Vault with cloud workloads (AWS, Azure, GCP) and container platforms (Kubernetes, Docker)
- Support migration from legacy key stores or password vaults to centralized secrets management platforms
- Maintain secure configurations, audit logging, and event forwarding to SIEM/SOAR systems
- Ensure Vault operational health, monitoring, and performance tuning
- Perform upgrades, patching, and disaster recovery operations for secrets management platforms
- Troubleshoot authentication, access, and vault replication issues
Security & Compliance
- Enforce least-privilege access, policy-based control, and segregation of duties for secrets and credentials
- Maintain compliance with corporate and regulatory standards (SOX, FedRAMP, ISO 27001, NIST
- Partner with cybersecurity and audit teams to ensure effective logging, monitoring, and attestation of secrets management activities
- Conduct periodic reviews of Vault policies, ACLs, and access models to ensure continuous compliance
Collaboration & Continuous Improvement
- Collaborate with IAM, PAM, and DevSecOps teams to align secrets management with enterprise identity strategy
- Identify and implement automation and efficiency improvements in secrets management and PAM processes
- Contribute to engineering documentation, knowledge articles, and operational runbooks
- Support training and knowledge transfer to operations and development teams
About You
What you need to bring:
You are a hands-on cybersecurity engineer with deep expertise in secrets management, privileged access, and identity operations. You enjoy building secure, automated, and resilient systems and thrive in complex enterprise environments. You're detail-oriented, collaborative, and driven to continuously improve security and operational maturity.
Education & Experience Requirements
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
- 10+ years of experience in IT or cybersecurity, with 6+ years focused on secrets management, PAM
- Hands-on experience with HashiCorp Vault Enterprise, including configuration, replication, DR, policies, and secrets engines
- Experience integrating Vault with PAM tools (CyberArk, BeyondTrust) and DevOps toolchains (Jenkins, GitHub, GitLab, Azure DevOps, Kubernetes)
- Strong scripting and automation skills (Python, PowerShell, Bash, Terraform, REST APIs)
- Experience with cloud identity and secrets services (AWS Secrets Manager, Azure Key Vault, GCP Secret Manager)
- Working knowledge of authentication standards (OIDC, JWT, LDAP, Kerberos, SAML, OAuth2)
- Experience implementing Zero Trust and Just-in-Time access models
- Understanding of security compliance frameworks (SOX, FedRAMP, ISO 27001, NIST
- Preferred certifications: HashiCorp Certified Vault Associate, CyberArk Defender/Sentry, CISSP, or equivalent
Additional Skills
Accountability, Accountability, Action Planning, Active Learning, Active Listening, Agile Methodology, Bias, Business, Coaching, Creativity, Critical Thinking, Cybersecurity, Data Analysis Management, Data Collection Management (Inactive), Data Controls, Design Thinking, Development Methodologies, Empathy, Follow-Through, Growth Mindset, Implementation Methodologies, Infrastructure Design, Intellectual Curiosity (Inactive), Long Term Planning, Managing Ambiguity {+ 4 more}
What We Can Offer You
Health & Wellbeing
We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing.
Personal & Professional Development
We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach any career goals you have — whether you want to become a knowledge expert in your field or apply your skills to another division.
Unconditional Inclusion
We are unconditionally inclusive in the way we work and celebrate individual uniqueness. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good.
Let's Stay Connected
Follow @HPECareers on Instagram to see the latest on people, culture and tech at HPE.
globalIT
Job
Information Technology
Job Level
TCP_04
HPE is an Equal Employment Opportunity/ Veterans/Disabled/LGBT employer. We do not discriminate on the basis of race, gender, or any other protected category, and all decisions we make are made on the basis of qualifications, merit, and business need. Our goal is to be one global team that is representative of our customers, in an inclusive environment where we can continue to innovate and grow together. Please click here: Equal Employment Opportunity.
Hewlett Packard Enterprise is EEO Protected Veteran/ Individual with Disabilities.
HPE will comply with all applicable laws related to employer use of arrest and conviction records, including laws requiring employers to consider for employment qualified applicants with criminal histories.
No Fees Notice & Recruitment Fraud Disclaimer
It has come to HPE's attention that there has been an increase in recruitment fraud whereby scammer impersonate HPE or HPE-authorized recruiting agencies and offer fake employment opportunities to candidates. These scammers often seek to obtain personal information or money from candidates.
Please note that Hewlett Packard Enterprise (HPE), its direct and indirect subsidiaries and affiliated companies, and its authorized recruitment agencies/vendors
will never charge any candidate a registration fee, hiring fee, or any other fee in connection with its recruitment and hiring process.
The credentials of any hiring agency that claims to be working with HPE for recruitment of talent should be verified by candidates and candidates shall be solely responsible to conduct such verification. Any candidate/individual who relies on the erroneous representations made by fraudulent employment agencies does so at their own risk, and HPE disclaims liability for any damages or claims that may result from any such communication.
-
IAM Secrets Management Senior Engineer
2 weeks ago
Bengaluru, Karnataka, India Hewlett Packard Enterprise Full time ₹ 10,00,000 - ₹ 2,50,00,000 per yearIAM Secrets Management Senior EngineerThis role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office Who We Are: Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and...
-
IAM Secrets Management Senior Engineer
2 weeks ago
Bengaluru, Karnataka, India Hewlett Packard Enterprise | HPE Full time ₹ 25,00,000 - ₹ 62,50,000 per yearIAM Secrets Management Senior EngineerThis role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office.Who We Are:Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications...
-
Senior IAM Engineer
2 weeks ago
Bengaluru, Karnataka, India Rubrik Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout the Team:The Enterprise Applications team at Rubrik enables business processes, employee experience, and technologies to scale our organization to $1B+. This team is responsible for all the enterprise applications used at Rubrik and the relevant business processes (Lead to Opportunity, Quote to Cash, Hire to Retire, Customer Support, Legal, &...
-
Senior IAM Engineer
4 days ago
Bengaluru, Karnataka, India Rubrik Full timeAbout the Team:The Enterprise Applications team at Rubrik enables business processes, employee experience, and technologies to scale our organization to $1B+. This team is responsible for all the enterprise applications used at Rubrik and the relevant business processes (Lead to Opportunity, Quote to Cash, Hire to Retire, Customer Support, Legal, &...
-
Senior IAM Engineer
4 days ago
Bengaluru, Karnataka, India Rubrik Full timeAbout The TeamThe Enterprise Applications team at Rubrik enables business processes, employee experience, and technologies to scale our organization to $1B+. This team is responsible for all the enterprise applications used at Rubrik and the relevant business processes (Lead to Opportunity, Quote to Cash, Hire to Retire, Customer Support, Legal, &...
-
Senior IAM Operations Engineer
2 days ago
Bengaluru, Karnataka, India ThoughtFocus Full timeJob SummaryThe Senior IAM Operations Engineer is responsible for leading and overseeing the end-to-end identity lifecycle, ensuring secure, efficient, and compliant access across the enterprise. This role involves advanced troubleshooting, platform optimization, stakeholder coordination, and driving improvements in IAM processes, automation, and governance....
-
Senior Manager IAM
2 weeks ago
Bengaluru, Karnataka, India Vidpro Consultancy Services Full time ₹ 45,00,000 - ₹ 81,00,000 per yearLocation: Bangalore , Mumbai Experience: Years Work Mode: HybridPosition SummaryWe are seeking an experienced IAM Manager to lead our Identity and Access Managementprogram. This critical role involves developing, implementing, and maintaining the strategies,policies, and technologies that secure our digital identities and control access to...
-
IAM & OKTA Engineer
1 week ago
Bengaluru, Karnataka, India Sonata Software Full time ₹ 6,00,000 - ₹ 12,00,000 per yearJob Description:The IAM Identity & Okta Engineer will be responsible for implementing and managing identity and access management solutions within the organization. This role includes designing and optimizing workflows within Okta, ensuring seamless integration with various business applications, and maintaining security standards. The engineer will...
-
IAM Engineer
2 days ago
Bengaluru, Karnataka, India Tradeweb Full timeCompany DescriptionJOB DESCRIPTIONTradeweb Markets is a world leader in the evolution of electronic trading. A fintech company serving approximately 2,500 clients – including the world's largest banks, asset managers, hedge funds, insurance companies, wealth managers and retail clients -- in more than 65 countries across the globe. Since our first trade in...
-
IAM Engineer
2 days ago
Bengaluru, Karnataka, India Tradeweb Markets Full timeDescriptionCompany Description Tradeweb Markets is a world leader in the evolution of electronic trading. A fintech company serving approximately 2,500 clients – including the world's largest banks, asset managers, hedge funds, insurance companies, wealth managers and retail clients -- in more than 65 countries across the globe. Since our first trade in...