JUNIOR IAM Security Engineer

Il y a 1 jour

Zoeterwoude, Belgique V-IT Cronos Temps plein

Description

  • Seeking a IAM Security Engineer with strong expertise in securing and managing enterprise environments.
  • The ideal candidate will have hands-on experience with HashiCorp Vault, Terraform, RHEL, and Ansible, and will be expected to maintain, support and enhance the on-premises Swift Secrets Management Service (= SSMS) that is based upon HashiCorp Vault - Enterprise edition (Vault), tools, processes, and technologies including but not limited to:
  • Develop, test and perform OS and software upgrades, prepare for and perform business continuity activities and address vulnerabilities for our Hashicorp Vault Enterprise infrastructures
  • Interact with Vendor and Swift internal teams to ensure availability of, maintenance, enhancements to, and integrated with all the Swift ecosystems (MS-AD, monitoring, backup, SIEM, …) of SSMS /Vault infrastructure
  • Investigate and resolve issues that impacts or could potentially impact the availability of SSMS and its Vault infrastructure
  • Troubleshoot and monitor performance and security of HashiCorp Vault
  • Assist application team(s) with onboarding digital secrets to the Secret Management including reviewing environment for authentication method, secrets engine to onboard secrets, assist in developing compliance reporting, policy review/enforcement, end to end lifecycle management activities
  • Work with team to expand services and visibility by continuing to review offering, speaking with stakeholders and assisting new application teams to adopt and automate
  • Develop and maintain automation workflows using ansible.
  • Develop and maintain Terraform modules for secure infrastructure provisioning.
  • Enhance and provide regular reporting and accountability on key metrics and agreed upon deliverables and ensure that the team is performing according to them
  • Maintain a customer guide that can be reused by the application team(s) for future onboarding actions
  • Maintain a runbook for the Secret Management service infrastructure and work with the administrators to maintain and enhance the administrators guide
  • On-call on a rotational basis
  • On-site presence for at least 2 days a week (Hybrid mode)