Role Summary
Specialist – Secrets Management – Dubai, United Arab Emirates. Banking sector. Computer‑Network Security. Full‑time.
Responsible for implementing, managing, and governing enterprise‑grade secrets management and privileged access mechanisms across on‑premise, cloud, and hybrid environments. Protects sensitive credentials and supports secure banking technology operations.
Salary: 22,000–35,000 AED (estimate; confirm with employer).
Key Responsibilities
- Design, implement, and manage enterprise secrets management solutions for applications, services, infrastructure, and automation environments.
- Operate CyberArk Secrets Management, CCP, Conjur, or equivalent platforms to support secure credential handling.
- Eliminate hard‑coded credentials across applications, scripts, automation workflows, and CI‑CD pipelines.
- Manage secure storage, retrieval, rotation, lifecycle control, and auditability of application secrets, service accounts, API keys, certificates, and tokens.
- Integrate secrets management capabilities with on‑premise systems, AWS, Azure, containerized platforms, and hybrid technology environments.
- Enforce least‑privilege access and Zero Trust principles for privileged accounts and non‑human identities.
- Support compliance with CBUAE, ISO27001, internal audit, risk management, and banking security control requirements.
- Provide audit evidence, access logs, reports, and governance documentation related to secrets usage and privileged access.
- Maintain clear SOPs, platform documentation, control records, and governance artifacts.
- Integrate secrets management with DevOps and DevSecOps pipelines, databases, middleware, enterprise applications, and cloud services.
- Work closely with DevOps, Cloud, Security Operations, Application, and Infrastructure teams to embed secrets securely into delivery workflows.
- Investigate and resolve secrets‑related incidents, access issues, anomalous usage patterns, and policy violations.
- Participate in ITIL change management activities, including impact assessment, approvals, deployment coordination, and post‑change validation.
- Monitor platform health, access behavior, audit logs, and control effectiveness to improve operational resilience and security posture.
Ideal Profile
- Bachelor’s degree in Information Security, Computer Science, or a related field.
- Hands‑on experience with secrets or privileged access management platforms; CyberArk preferred.
- Strong understanding of PAM, secrets lifecycle management, IAM concepts, access governance, and Zero Trust principles.
- Experience managing application secrets, service accounts, API keys, certificates, tokens, and privileged credentials.
- Practical knowledge of Linux, Windows, databases, middleware, and enterprise application service accounts.
- Exposure to AWS, Azure, hybrid environments, containerized platforms, and automation pipelines.
- Knowledge of CI‑CD integration, DevSecOps workflows, SIEM integration, monitoring, and audit logging.
- Experience working in banking, financial services, or another regulated environment.
- Familiarity with security frameworks, audit processes, risk assessments, and compliance control testing.
- Ability to translate security requirements into practical, scalable, and implementable technical controls.
- Strong analytical mindset for investigating incidents, access exceptions, and policy violations.
- Good documentation skills for SOPs, governance evidence, audit reports, and operational procedures.
- CyberArk PAM or Secrets Management certification preferred.
- CISSP, CISM, IAM, or equivalent security certification an advantage.
Skills Set
- Secrets management
- Privileged Access Management
- CyberArk Secrets Management, CCP, Conjur
- Credential lifecycle management
- Service account governance
- API keys, certificates, and tokens
- IAM and access governance
- Least‑privilege access
- Zero Trust security principles
- AWS and Azure integration
- DevOps and DevSecOps pipelines
- CI‑CD secrets integration
- Linux and Windows service accounts
- Database and middleware credential management
- SIEM integration and audit logging
- ITIL change management
- CBUAE and ISO27001 compliance
- Security incident investigation
- SOPs and governance documentation
Benefits
- Work on critical banking cybersecurity controls in a regulated financial technology environment.
- Gain exposure to CyberArk, secrets lifecycle management, PAM, IAM, cloud security, and DevSecOps integration.
- Help reduce credential risk by improving secure storage, rotation, access control, and auditability.
- Collaborate with cloud, application, security operations, infrastructure, and governance teams on high‑impact initiatives.
- Opportunity to grow into PAM engineering, IAM security, cloud security, or cybersecurity governance roles.