PAM and Secrets Management Engineer
amat · Bangalore
Job description
About the role
Join Applied Materials as a PAM & Secrets Management Engineer to lead privileged access management and secrets management initiatives across our global enterprise infrastructure. You will architect and operate enterprise‑scale PAM solutions (CyberArk) and HashiCorp Vault, working at the intersection of security, DevOps, and cloud platforms to protect critical systems and enable secure development.
Key responsibilities
- Design, implement, and manage enterprise PAM solutions at scale (500+ concurrent sessions, 2K+ daily logins, 2.5K+ targets).
- Operate and maintain a self‑hosted CyberArk environment and evaluate alternatives such as Delinea, BeyondTrust, and CyberArk Privilege Cloud.
- Architect privileged session management (PSM) for RDP and SSH with native client support and password‑less credential injection.
- Implement automated account discovery and onboarding workflows for Windows local, AD, and Linux/Unix accounts.
- Configure session recording, monitoring, and alerting to meet compliance and security requirements.
- Architect, deploy, and operate HashiCorp Vault Enterprise across multi‑cloud environments, including KV v2, dynamic secrets, PKI, and transit engines.
- Design and implement Vault authentication methods such as OIDC/JWT, Kubernetes, AppRole, AWS IAM, and Azure AD.
- Integrate Vault with CI/CD pipelines (Jenkins, GitLab, GitHub Actions, Azure DevOps) for secure secret injection.
- Manage Vault high‑availability, disaster‑recovery, auto‑unseal with cloud KMS, and performance tuning.
- Lead cross‑functional collaboration with CI/CD, Network, Cloud, and Platform teams and drive incident response for privileged access or secret exposure events.
Required profile
- 5+ years hands‑on experience with enterprise privileged access management solutions in large global environments (10,000+ employees).
- 3+ years experience operating HashiCorp Vault Enterprise in production across multi‑cloud infrastructures.
- Strong understanding of account lifecycle management, least‑privilege principles, and privilege elevation workflows.
- Proven ability to design high‑availability, disaster‑recovery, and horizontally scalable PAM and Vault architectures.
- Experience automating PAM and secret‑management workflows using scripting (Python, Bash, PowerShell) and IaC tools (Terraform, Ansible).
Required skills
- CyberArk (PAS, PVWA, CPM, PSM) and alternative PAM platforms.
- HashiCorp Vault Enterprise, including secrets engines and authentication methods.
- Cloud platforms: AWS, Azure, GCP.
- Kubernetes and container secret injection (sidecar, CSI driver).
- Scripting languages: Python, Bash, PowerShell, Go.
- Infrastructure‑as‑Code: Terraform, Ansible.
- Directory services: Active Directory, LDAP.
- CI/CD tools: Jenkins, GitLab, GitHub Actions, Azure DevOps.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in India.
Salaries by job title
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
Published 5 hours ago
Expires 1 month from now
1 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
amat
Bangalore
Related job offers
-
Senior Software Technologist - Embedded (Linux Kernel, BSP & Yocto)
philips Bangalore -
Data and Software Application Engineer
philips Bangalore -
Senior Embedded Software Engineer – Linux Kernel, BSP & Yocto
philips Bangalore -
Key User – Planning – D365
alfalaval Pune -
Lead Software Technologist – .Net Fullstack
philips Bangalore