This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. We are seeking a hands-on and highly skilled Senior Secrets Manager Engineer to join our Identity and Access Management (IAM) team. This role will focus on the design, deployment, and operational support of enterprise-grade secrets management platforms—primarily Akeyless and HashiCorp Vault—across multi-cloud environments. The ideal candidate will be a subject matter expert (SME) in secrets management, automation, and cloud-native security practices.
Job Responsibility:
Serve as the SME for secrets management platforms such as Akeyless and HashiCorp Vault
Lead the integration of secrets management solutions with CI/CD pipelines, Kubernetes (AKS, GKE), and cloud platforms (Azure, AWS, GCP)
Automate the onboarding and rotation of secrets for applications and machine identities
Collaborate with product managers, architects, and application teams to drive adoption and ensure secure implementation
Develop and maintain scripts and automation tools for secrets lifecycle management
Support the migration of non-person accounts from PAM tools to secrets management platforms
Monitor and remediate risks related to unmanaged credentials and privileged access
Contribute to the development of onboarding guides, SDK integrations, and operational runbooks
Requirements:
5+ years of experience in security engineering with a focus on IAM and PAM
3+ years of hands-on experience with Akeyless, HashiCorp Vault, or CyberArk Conjur in production environments
3+ years of experience with scripting in Python, Bash, or PowerShell
3+ years of experience in integrating secrets management with Jenkins, GitHub Actions, or similar CI/CD tools
Bachelor’s degree or equivalent experience (High School Diploma and 4 years relevant experience)
Nice to have:
Experience with Kubernetes, container orchestration, and service mesh integrations
Deep understanding of cloud-native architectures and secure DevOps practices
Familiarity with API-based secret access, SDKs, and CLI tools
Experience working in large-scale enterprise environments