EOS RPO
Senior Software Engineer-HashiCorp Vault
Required Qualifications
4+ years of Software Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
Desired Qualifications
Good to have Professional HashiCorp Vault Certification (HVCP or equivalent)
Good to have knowledge of Cloud Security
Good to have OpenShift knowledge
Should be a quick learner and team player
Excellent verbal, written, and interpersonal communication skills. Ability to articulate technical solutions to both technical and business audiences
Ability to deliver & engage with partners effectively in a multi-cultural environment by demonstrating co-ownership & accountability in a matrix structure.
Job Expectations
Independently design, implement, and manage secure, highly available HashiCorp Vault platform with minimal oversight from lead engineers.
Contribute to end-to-end automation of Vault provisioning, configuration, and lifecycle management using Ansible and Terraform.
Develop and enforce platform standards for secrets management, authentication, authorization, and Vault best practices across the organization.
Analyze and solve complex technical challenges, including cloud native and multi-cloud environments.
Implement advanced Vault capabilities, such as static and dynamic secrets, PKI secret engine, dynamic Database secrets, and namespace management.
Guide and support engineering teams, providing Vault expertise, technical recommendations, and onboarding assistance without requiring constant supervision.
Drive continuous improvement, identifying opportunities for automation, performance tuning, reliability enhancements, and security hardening across Vault deployments.
Provide on-call support on rotational basis per team’s schedule.
Technical Skills and Experience
4+ years of overall engineering experience, including 3+ years of hands-on experience with HashiCorp Vault, with a proven track record in enterprise-grade Vault design, deployment, and automation.
Strong experience working in an Agile environment, including backlog grooming, sprint planning, and managing engineering deliverables.
Practical experience with Enterprise Change Management, change control processes, and operating within procedural, compliance-driven environments.
Hands-on expertise with Terraform, Ansible, CI/CD pipelines, and GitHub, with strong understanding of modern automation pipelines for Vault provisioning and configuration.
Deep understanding of the Vault lifecycle, including installation, upgrades, HA deployment, scaling, and cluster maintenance.
Proven experience designing, integrating, and maintaining Vault Secret Engines, including: KV, Database, PKI, Azure, GCP, LDAP, Dynamic secret engines, and secret rotation flows.
Strong experience designing, implementing, and maintaining Vault Auth Engines, such as: LDAP, AppRole, Kubernetes, JWT/OIDC, TLS Certificate authentication.
Hands-on experience implementing Vault Auto-Unseal using HSM-based solutions.