Roles & Responsibilities
- Lead and coordinate remediation of hardcoded secrets across repositories and environments (tools like GitLeaks or similar).
- Partner with engineering and DevOps teams to implement secure secrets management practices (vaulting, rotation, access control).
- Track and report on remediation progress, ensuring timelines are met.
- Develop and maintain documentation, playbooks, and workflows for remediation.
- Support automation and integration of secrets scanning in CI/CD pipelines.
- Monitor and deliver metrics on secrets exposure and remediation.
- Stay current with industry best practices, tools, and trends in application security and secrets management.
Must-Have
- 3+ years of experience in application security, vulnerability management, or technical coordination.
- Strong familiarity with secrets scanning and secure management tools (e.g., GitLeaks, Akeyless, HashiCorp Vault, AWS Secrets Manager).
- Excellent coordination, communication, and documentation skills.
- Bachelor’s degree in Computer Science, Cybersecurity, or related field.
Nice-to-Have
- Experience with cloud-native environments (AWS, Azure, GCP).
- Knowledge of secure software development lifecycle (SSDLC).
- Ability to manage multiple remediation efforts simultaneously.
- Strong analytical and problem-solving abilities.