- Company Name
- Entasis Partners
- Job Title
- Non-Human Identity Manager
- Job Description
-
**Job Title:** Non‑Human Identity Manager
**Role Summary:**
Lead the design, implementation, and governance of identity and access solutions for non‑human entities (service accounts, application credentials, secrets) across hybrid cloud and on‑premises environments. Align IAM/PAM practices with DevOps processes to ensure secure, automated lifecycle management and regulatory compliance.
**Expectations:**
- Deliver secure, scalable strategies for non‑human identity management.
- Define and enforce policies, lifecycle controls, and audit standards.
- Drive automation of secrets management within CI/CD pipelines.
- Collaborate with development, cloud engineering, and security teams.
**Key Responsibilities:**
- Architect and implement solutions for service‑account and secret management (e.g., HashiCorp Vault, CyberArk Conjur, AWS Secrets Manager, Azure Key Vault).
- Develop and enforce governance frameworks and lifecycle policies for non‑human identities.
- Integrate secrets‑management tools into CI/CD workflows (Terraform, Jenkins, GitHub Actions, GitLab, Azure DevOps).
- Produce compliance‑ready designs meeting audit, regulatory, and internal security requirements.
- Translate IAM/PAM principles into DevOps‑friendly processes and provide guidance to cross‑functional teams.
- Script and automate routine tasks using Python, PowerShell, or Bash.
**Required Skills:**
- Proven IAM/PAM experience with a focus on non‑human identity lifecycle management.
- Hands‑on expertise with secrets‑management platforms (Vault, Conjur, AWS Secrets Manager, Azure Key Vault, etc.).
- Strong DevOps background, including CI/CD pipeline tooling (Terraform, Jenkins, GitHub Actions, GitLab, Azure DevOps).
- Proficiency in automation/scripting languages (Python, PowerShell, Bash).
- Familiarity with cloud IAM services in AWS, Azure, or GCP.
- Knowledge of security frameworks (e.g., NIST, ISO 27001) and best practices.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, Engineering, or related field (or equivalent professional experience).
- Relevant certifications preferred: Certified Identity and Access Manager (CIAM), Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), or vendor‑specific credentials (e.g., HashiCorp Vault Associate, CyberArk Certified Specialist).