Job Description & Summary
As organisations increasingly adopt cloud-first architectures and automated deployment pipelines, effectively managing non-human identities - including service accounts, application credentials, certificates and secrets - has become increasingly critical. We are looking for someone who has experience with IAM/PAM concepts and solutions but also has hands-on DevOps experience or a development background, particularly related to the secure management of non-human identities and their associated credentials. The ideal candidate will bridge traditional IAM concepts with modern DevOps practices to enhance the capabilities we deliver to our clients.
Key Responsibilities
- Architecture & Design: Develop comprehensive strategies and architectures for securely managing non-human identities and their associated credentials in hybrid (on-premises/cloud) environments.
- Policy & Standards: Work with clients to define and enforce lifecycle management policies for service accounts, secrets management and application credentials.
- Automation & Tooling: Advise on and implement secrets management solutions (e.g., HashiCorp Vault, CyberArk Conjur, AWS Secrets Manager, Azure Key Vault) to streamline security processes.
- Compliance & Governance: Ensure our clients' IAM practices adhere to internal and external compliance standards, proactively addressing risks associated with non-human identities.
- Collaboration: Act as a bridge between traditional IAM/PAM teams and DevOps/Development teams, fostering collaborative approaches to security challenges.
Preferred Skills & Experience
- Demonstrated practical experience with IAM solutions and frameworks, particularly focused on non-human identity management.
- Experience with secrets management tools and processes (e.g., HashiCorp Vault, AWS Secrets Manager, Azure Key Vault, CyberArk Conjur).
- Strong background in DevOps, CI/CD pipelines, and automation (e.g., Terraform, Jenkins, GitLab, GitHub Actions).
- Proficiency in scripting/automation languages (e.g., Python, PowerShell, Bash).
- Familiarity with cloud service providers (AWS, Azure, GCP) and their IAM and Secrets Management capabilities.
- Knowledge of security best practices and frameworks.