×
Register Here to Apply for Jobs or Post Jobs. X

Secrets Management Platform Engineer (R-00196

Job in Philadelphia, Philadelphia County, Pennsylvania, 19117, USA
Listing for: Socket.dev
Full Time position
Listed on 2026-08-18
Job specializations:
  • IT/Tech
    Cybersecurity, Cloud Computing: Infrastructure & Operations
Salary/Wage Range or Industry Benchmark: 120000 - 180000 USD Yearly USD 120000.00 180000.00 YEAR
Job Description & How to Apply Below
Position: Secrets Management Platform Engineer (R-00196)

True Zero Technologies, a veteran-owned small business, was founded on the principle that the purposeful enablement of people and technology in an organization directly ties to the quality of its outcomes. True Zero recognizes that those outcomes begin and end with our people, and that is what we have built a community of like-minded, driven, and passionate individuals and innovators who are aligned in a common goal of delivering top-tier services to our customers.

Our culture and commitment have been recognized through numerous accolades, including being named one of the
Best Places to Work
in 2023 in two categories ("Prosperous and Thriving" ($5MM–$50MM in gross revenue) and "Mid-Atlantic Region" (DC, DE, MD, NC, VA, WV)), and again in 2025 as a
Best Places to Work
honoree. In addition, True Zero earned coveted spots on the
Inc. 5000
list of fastest-growing companies in America in
2022, 2023, and 2025
, a testament to our sustained growth driven by our people-first approach and unwavering dedication to excellence.

The Secrets Management Platform Engineer designs, implements, and operates a centralized enterprise secrets management platform that securely manages credentials, keys, certificates, tokens, and other sensitive authentication material across applications, services, cloud environments, and CI/CD workflows.

This role is responsible for onboarding thousands of applications and services into the secrets management platform; automating credential provisioning, retrieval, and rotation; integrating secrets management into Dev Sec Ops  and cloud-native workloads; enforcing least-privilege access; and maintaining compliance through auditing, monitoring, policy enforcement, and lifecycle governance.

The engineer will support AWS Gov Cloud and Zero Trust requirements by eliminating hard-coded credentials, implementing strong identity-based access controls, using FIPS 140-2/3 validated cryptography, and integrating with AWS KMS and approved secrets-management services.

Job Responsibilities
  • Onboard applications, services, users, and machine identities into a centralized secrets management platform such as Cyber Ark or Hashi Corp Vault, based on the selected enterprise platform.
  • Design and implement secure processes for credential provisioning, storage, retrieval, rotation, revocation, and retirement.
  • Integrate AWS Secrets Manager and AWS Systems Manager Parameter Storewith enterprise applications and cloud-native workloads.
  • Develop and enforce least-privilege Identity and Access Management policies for access to secrets, credentials, encryption keys, and privileged services.
  • Automate secrets management workflows using

    Python, Terraform, Ansible, and approved infrastructure-as-code technologies.
  • Integrate secrets management intoCI/CD pipelines and Dev Sec Ops  workflows to eliminate manually managed or embedded credentials.
  • Design and support secrets integration for containers, Kubernetes-based workloads, cloud services, virtual machines, and application platforms.
  • Implement and maintainPKI and certificate management processes, including certificate issuance, renewal, rotation, revocation, and expiration monitoring.
  • Eliminate hard-coded credentials, static passwords, embedded API keys, and unmanaged secrets from source code, configuration files, scripts, pipelines, and application deployments.
  • ImplementFIPS 140-2/3 validated cryptographic control sand integrate secrets-management solutions withAWS KMS in AWS Gov Cloud where required.
  • Configure authentication methods and access policies for users, applications, workloads, and machine identities.
  • Implement dynamic or short-lived credentials where supported to reduce reliance on long-lived static secrets.
  • Maintain centralized auditing, logging, monitoring, and alerting for secrets access, administrative activity, credential rotation, and policy violations.
  • Develop and enforce governance standards for secret ownership, naming, classification, access, rotation frequency, expiration, and lifecycle management.
  • Partner with application, cloud, platform, cybersecurity, and Dev Sec Ops  teams to integrate secrets-management capabilities into enterprise architectures and development…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary