Cloud and DevOps Key Management Engineer at New Era Technology

We are redirecting you to the source. If you are not redirected in 3 seconds, please click here.

Cloud and DevOps Key Management Engineer at New Era Technology. Location Information: Remote. . Join New Era Technology, where . People First. is at the heart of everything we do. With a global team of over 4,500 professionals, we’re committed to creating a workplace where everyone feels valued, empowered, and inspired to grow. Our mission is to securely connect people, places, and information with end-to-end technology solutions at scale.. At New Era, you’ll join a team-oriented culture that prioritizes your personal and professional development. Work alongside industry-certified experts, access continuous training, and enjoy competitive benefits. Driven by values like Community, Integrity, Agility, and Commitment, we nurture our people to deliver exceptional customer service.. If you want to make an impact in a supportive, growth-oriented environment, New Era is the place for you. Apply today and help us shape the future of work—together.. Position Summary. . . Client requires a Key Management and DevOps Security Engineer including key management lifecycle automation to support a large information security program in the software services technology industry to design, implement, and maintain robust key management systems and enhance DevOps security practices. . . Key Responsibilities. . . Collaborate with DevOps, engineering, and security teams to integrate secure practices into CI/CD pipelines, ensure compliance with industry standards, and mitigate cryptographic risks. . Design and implement scalable key management systems (KMS) for both cloud (AWS, Azure, GCP, OCI, Alibaba) and on-premise environments. . Automate the entire key lifecycle (generation, rotation, distribution, revocation, and disposal) using scripting (Python, PowerShell, . Bash. ) and DevOps tools. . Ensure integration with cryptographic libraries, HSMs (Hardware Security Modules), and cloud-native KMS services (e.g., AWS KMS, Azure Key Vault, etc.). . Secure CI/CD pipelines by embedding encryption, secrets management, and key rotation into deployment pipelines (e.g., Jenkins, GitLab CI, Azure DevOps, etc.). . Implement secrets management solutions (e.g., HashiCorp Vault, AWS Secrets Manager, etc.) to protect credentials and cryptographic material. . Enforce least privilege access and zero-trust principles in DevOps workflows. . Ensure compliance with standards such as NIST SP 800-57, ISO 27001, and PCI-DSS for cryptographic practices. . Partner with DevOps, engineering, and cloud teams to embed security into infrastructure as code (Terraform, Ansible) and automation workflows. . Work with IT and business teams to onboard applications and implement key management capabilities for cloud-based and on-premise applications and systems. . Document standard operating procedures for maintenance and onboarding of applications. . Create and track metrics for standardizing applications and systems onto key management systems. . . Required Qualifications. . . 3-5+ years of key management, DevOps security, and cloud security engineering experience. . Subject matter expert in cryptographic standards (AES, RSA, ECC), key management protocols (KMIP, PKCS#11), and HSM integration. . Subject matter expert in cloud KMS services (AWS KMS, Azure Key Vault, GCP KMS) and on-premise solutions. . Understanding of Identity Access Management and key management best practices, standards and processes. . Metrics, reporting and dashboard creation required. . Hands-on experience with secrets management tools (HashiCorp Vault, CyberArk) and CI/CD automation (Jenkins, GitHub Actions). . Expertise in scripting (Python, PowerShell, Bash) for automating key lifecycle processes and integrating security into workflows.. . Experience with Infrastructure as Code (Terraform, CloudFormation) and DevOps toolchains. . Must be able to create and maintain documentation on implementations. . Key management subject matter expert capable of implementing key lifecycle workflow automation processes based on cyber security best practices, standards. . Expertise in Public Key Infrastructure (PKI) and symmetric key management to support access management processes for cloud-based and on-premise IT infrastructures. . Must be able to create and maintain documentation on the implementation and operational/maintenance processes. . Ability to work autonomously and under pressure. . Ability to influence others and demonstrate leadership. . Excellent attention to detail. . Strong organizational skills. . Excellent analytical skills. . Excellent documentation skills; demonstrated proficiency in Microsoft Office including Word, Excel and PowerPoint. . Collaborative team worker – both in person and virtually using MS Teams or similar. . Ability to work as liaison between business and information security / information technology. . Flexibility to accommodate working across different time zones. . Excellent interpersonal communication skills with strong spoken and written English. . Business outcomes mindset. . Solid balance of strategic thinking with detail orientation. . Self-starter, ability to take initiative. . . Preferred Qualifications. . . Cybersecurity certifications such as CISSP, CISM a plus. . Experience working at a company with a global footprint and a large enterprise environment. . Experience with containerization (Docker, Kubernetes) and securing secrets in containerized environments (e.g., Kubernetes Secrets Management, Vault). . Familiarity with modern . DevSecOps. practices, including SAST/DAST tools and vulnerability scanning (e.g., OpenSCAP, Tenable, etc.). . Knowledge of post-quantum cryptography and evolving standards (NIST PQC). . Experience with identity and access management (IAM) policies for key management systems. . Below is the pay range of this position for considered candidates based on qualifications and experience.. Pay Range $88—$90 USD. New Era Technology, Inc., and its subsidiaries (“New Era” “we”, “us”, or “our”) in its operating regions worldwide are committed to respecting your privacy and recognize the need for appropriate protection and management of any Personal Data that you may provide us. In this, we are also committed to providing you with a positive experience on our websites and while using our products, services and solutions (“Solutions”).. View our Privacy Policy here . https://www.neweratech.com/us/privacy-policy/. .