CyberArk Engineer – Secrets Manager / Conjur
As a CyberArk Engineer-Secrets Manager / Conjur, You will be a key member of our Delivery Services Team, responsible for implementing, configuring, and supporting enterprise Privileged Access Management (PAM) and secrets management solutions. This role focuses on hands-on delivery of CyberArk PAM, Secrets Manager, and Conjur On-Prem, including integration with existing CyberArk Vault environments and modern DevSecOps platforms.
Location: USA, Remote
Employment Type: Contract, Immediate Start through March 2027
What You’ll Do:
Design, configure, and maintain CyberArk PAM, Secrets Manager, and Conjur On-Prem environments.
Integrate Secrets Manager/Conjur with existing CyberArk PAM/Vault environments in alignment with the established vault architecture.
Implement PAM and secrets management configurations based on defined architecture, security controls, and access models.
Configure and manage RBAC, policies, credential rotation, Safes, CPM, and secret retrieval workflows.
Integrate Secrets Manager/Conjur with OpenShift/Kubernetes workloads, including service accounts, namespaces, workload identities, and manifests.
Implement GitLab CI/CD secret injection and runtime secret retrieval.
Build and support HA/DR, TLS/certificates, audit logging, backup/recovery, and monitoring configurations.
Onboard applications and implement secure secret management patterns.
Collaborate with infrastructure and security teams across networking, DNS, firewalls, load balancers, Linux/server environments, and enterprise authentication.
Troubleshoot and resolve technical issues, document configurations, and support architects and clients throughout implementation.
Who We’re Looking For:
5+ years of experience in PAM, cybersecurity, identity, or security engineering.
Strong hands-on experience with CyberArk PAM/Vault and CyberArk Secrets Manager.
Experience with Conjur On-Prem deployment, configuration, and integration.
Experience integrating secrets management with OpenShift/Kubernetes and GitLab CI/CD.
Solid working knowledge of RBAC, credential rotation, Safes, CPM, policies, secret retrieval, and privileged access controls.
Experience with HA/DR, TLS/certificates, audit logging, networking, and security hardening.
Strong troubleshooting, documentation, and communication skills.
Ability to work independently on assigned tasks and collaboratively within a delivery team.
Nice-to-Have Skills:
CyberArk Sentry – Secrets Manager (SECRET-SEN) or CyberArk CDE – Secrets certification is strongly preferred.
Additional CyberArk certifications, such as Defender, Sentry PAM, or CDE – PAM.
DevSecOps, APIs, automation, Infrastructure as Code, and CI/CD experience.
Experience with container security and automated application onboarding.
Familiarity with security/compliance frameworks and vulnerability management.
Programming/scripting experience such as Python, Bash, or PowerShell. #LI-RR1