Senior Specialist, Cybersecurity Engineering

MSD

Rahway (NJ)

On-site

USD 117,000 - 184,000

Full time

13 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

MSD is seeking a Privileged Access & Secrets Management Engineer to design, deploy, and operate HashiCorp Vault and privileged access capabilities across on‑prem and cloud environments. You will enable secure secrets delivery, rotation, and lifecycle management while collaborating with identity, automation, and application teams.

The role requires 5+ years of Vault experience, strong automation skills, and the ability to work within a large, matrixed organization.

Qualifications

  • Bachelor’s degree or equivalent experience in CS/IS or related field.
  • 5+ years designing, deploying and supporting Vault in on-prem environments with CI/CD
  • Strong understanding of secrets lifecycle management (dynamic secrets, engines, auth methods)
  • Practical knowledge of privileged access management techniques (vaulting, rotation, least-privilege)
  • Experience integrating security platforms with Windows/Linux, databases, cloud services, and APIs
  • Ability to work in large, global, matrixed organizations and communicate across teams
  • Strong analytical, troubleshooting, problem-solving and communication skills

Responsibilities

  • Design, implement, and support HashiCorp Vault in on-premises environments.
  • Develop reusable patterns, standards, and onboarding guidance for Vault and secrets management across teams.
  • Support Vault integrations with CI/CD platforms, deployment pipelines, automation workflows, and application delivery processes.
  • Enable secure injection, retrieval, rotation, and lifecycle management of secrets used by build, release, and runtime environments.
  • Integrate PAM with enterprise applications, infrastructure and cloud platforms, and APIs.
  • Troubleshoot complex technical issues and support production operations.
  • Develop automation, standards, and operational processes to improve security and audit readiness.

Skills

Strong analytical
Troubleshooting
Effective communication
Cross-functional collaboration
Ability to manage multiple priorities

Education

Bachelor's degree in CS/IS or related field

Tools

HashiCorp Vault
CI/CD Tools
Terraform
Ansible
PowerShell
Python
Active Directory / Entra ID

Job description

Job Description
Privileged Access & Secrets Management Engineer (R3)

HashiCorp Vault & CI/CD Automation

Role Summary

Join our IT Risk Management & Security team and play a key role in protecting a global enterprise’s most critical systems, accounts, and secrets. As a Privileged Access & Secrets Management Engineer, you will design, deploy, and operate HashiCorp Vault and privileged access capabilities that reduce cyber risk and enable secure, automated secrets delivery. This role offers the opportunity to help shape enterprise privileged access and secrets management capabilities while working across identity, automation, cloud, infrastructure, and application teams.

What You’ll Do
  • Design, implement, and support HashiCorp Vault in on-premises environments.

  • Develop reusable patterns, standards, and onboarding guidance for HashiCorp Vault and secrets management across application, infrastructure, and automation teams.

  • Support HashiCorp Vault integrations with CI/CD platforms, deployment pipelines, automation workflows, and application delivery processes.

  • Enable secure injection, retrieval, rotation, and lifecycle management of secrets used by build, release, and runtime environments.

  • Integrate PAM with enterprise applications, infrastructure and cloud platforms, and APIs.

  • Troubleshoot complex technical issues and support production operations.

  • Develop automation, standards, and operational processes that improve security, efficiency, and improve audit readiness.

Required Qualifications
  • Bachelor’s degree (or equivalent experience), preferably in Computer Science, Information Systems, or a related field.

  • 5+ years of experience designing, deploying, and supporting HashiCorp Vault in on-premises environments, including integrations with CI/CD tools, automation frameworks, APIs, and application deployment workflows.

  • Strong understanding of secrets lifecycle management including dynamic secrets, secrets engines, and auth methods for service accounts, workloads, applications, and non-human identities.

  • Practical knowledge of privileged account management techniques: vaulting, password rotation, secrets management, least-privilege access, and service account security.

  • Experience integrating security platforms with Windows, Linux/Unix, databases, cloud services, applications, and APIs.

  • Ability to manage multiple priorities, adapt to change, and work effectively within large, global, matrixed organizations.

  • Strong analytical, troubleshooting, problem-solving, and communication skills, with the ability to collaborate effectively across global teams and explain technical concepts to varied technical and non-technical audiences.

Preferred Qualifications
  • Experience with CI/CD platforms such as GitHub Actions, GitLab CI, Jenkins, Azure DevOps, or similar tools.

  • Experience with infrastructure-as-code and automation tools such as Terraform, Ansible, PowerShell, Python, or similar technologies.

  • Hands-on experience with identity platforms such as Active Directory and Microsoft Entra ID, cloud identity management, etc.

  • Familiarity with ServiceNow for change and incident management and experience automating tasks with PowerShell or similar technologies.

  • Familiarity with NIST, ITIL, or related security frameworks.

  • Relevant certifications such as CISSP, Security+, or similar credentials.

  • Experience in healthcare, life sciences, or other highly regulated industries.

  • Knowledge of Zero Trust principles, cloud security, and modern identity security practices.

Required Skills:

Access Management Software, Access Management Software, Azure Active Directory (AD), Certificate Services, Cloud Security, Cybersecurity, Cybersecurity Analytics, Cybersecurity Operations, Delivery of Security Applications, Design Applications, HashiCorp Vault, Identity Access Management (IAM), Incident Response, Information Assurance, Information Security, IT Security Architecture, Linux, Network Segmentation, Operational Technology (OT) Security, Red Hat Ansible, Security Analysis, Security Analytics, Security Controls, Security Evaluations, Security Fundamentals {+ 9 more}

US and Puerto Rico Residents Only:

Our company is committed to inclusion, ensuring that candidates can engage in a hiring process that exhibits their true capabilities.

Please click here if you need an accommodation during the application or hiring process.

As an Equal Employment Opportunity Employer, we provide equal opportunities to all employees and applicants for employment and prohibit discrimination on the basis of race, color, age, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability status, or other applicable legally protected characteristics.

As a federal contractor, we comply with all affirmative action requirements for protected veterans and individuals with disabilities.

For more information about personal rights under the U.S. Equal Opportunity Employment laws, visit:

EEOC Know Your Rights

EEOC GINA Supplement

We are proud to be a company that embraces the value of bringing together, talented, and committed people with diverse experiences, perspectives, skills and backgrounds.

The fastest way to breakthrough innovation is when people with diverse ideas, broad experiences, backgrounds, and skills come together in an inclusive environment.

We encourage our colleagues to respectfully challenge one another’s thinking and approach problems collectively.

Learn more about your rights, including under California, Colorado and other US State Acts

The salary range for this role is

$117,000.00 - $184,200.00

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Specialist, Cybersecurity Engineering
Senior Specialist, Cybersecurity Engineering

Merck & Co. • Rahway (NJ)

On-site
USD 117,000 - 184,000
Medical insurance
Dental insurance
Vision insurance
+2
Senior Specialist, Cybersecurity Engineering
Senior Specialist, Cybersecurity Engineering

Merck & Co. • West Point (PA)

On-site
USD 117,000 - 184,000
Annual bonus
Long-term incentive
Comprehensive benefits package
Senior Specialist, Cybersecurity Engineering
Senior Specialist, Cybersecurity Engineering

Merck • Pennsylvania

On-site
USD 120,000 - 180,000
Senior Hashicorp Engineer
Senior Hashicorp Engineer

Request Technology, LLC • Chicago (IL)

On-site
USD 140,000 - 190,000
HashiCorp Vault Secrets Engineer
HashiCorp Vault Secrets Engineer

Request Technology, LLC • Chicago (IL)

Hybrid
USD 120,000 - 180,000
Hybrid work model
Privileged Access Management (PAM) Senior Specialist (HashiCorp Vault experience required)
Privileged Access Management (PAM) Senior Specialist (HashiCorp Vault experience required)

Bank of America • Washington

On-site
USD 130,000 - 190,000
Privileged Access Management (PAM) Senior Specialist (HashiCorp Vault experience required)
Privileged Access Management (PAM) Senior Specialist (HashiCorp Vault experience required)

Bank of America • Jersey City (NJ)

On-site
USD 110,000 - 140,000
Salary commensurate with experience
Lead Systems Engineer, Secrets and Vault Engineering
Lead Systems Engineer, Secrets and Vault Engineering

Intercontinental Exchange Holdings, Inc. • New York (NY)

On-site
USD 149,400 - 180,000
Healthcare coverage
401(k) plan
Paid leave
Associate Director, Cybersecurity Engineering
Associate Director, Cybersecurity Engineering

Merck & Co. • West Point (PA)

On-site
USD 142,000 - 224,000
Annual bonus
Long-term incentive
Comprehensive benefits
Privileged Access Management (PAM) Senior Specialist (HashiCorp Vault experience required)
Privileged Access Management (PAM) Senior Specialist (HashiCorp Vault experience required)

Bank of America • Denver (CO)

On-site
USD 140,000 - 200,000