{"schemaVersion":"jobsearcher.job.v1","id":"b25c872b0c249339203ffaad","url":"https://jobsearcher.com/jobs/b25c872b0c249339203ffaad","canonicalUrl":"https://jobsearcher.com/jobs/b25c872b0c249339203ffaad","title":"Security Implementation Engineer","description":"Keeper Security Implementation Engineer Location: Remote Duration: Full time Must have active Secret / Tier 5 Secret Security Clearance or higher.Role SummaryLeads the end-to-end implementation and rollout of the Keeper Security password/secrets management platform across a hybrid environment spanning Microsoft Entra ID, on-premises infrastructure, and AWS. Owns integration design, migration, and handoff to steady-state operations.Key ResponsibilitiesImplementation Planning: Assess current credential management practices across on-prem and AWS environments; design target-state Keeper architecture (vault structure, folder/sharing model, RBAC) aligned to hybrid identity model.Deployment: Install and configure Keeper Enterprise/Keeper Commander CLI; deploy Keeper Gateway on-prem (if using KeeperPAM) for connecting to internal systems, servers, and databases without exposing them directly to the internet.Entra ID Integration: Configure SSO via SAML/OIDC with Entra ID; set up SCIM provisioning for automated user/group lifecycle sync; align Conditional Access policies (MFA, device compliance) with Keeper login requirements.AWS Integration: Implement Keeper Secrets Manager for AWS workloads — EC2, Lambda, ECS/EKS — replacing hardcoded credentials and static IAM keys; integrate with CI/CD pipelines (CodePipeline/GitHub Actions) and infrastructure-as-code (Terraform/CloudFormation).QualificationsExperience implementing PAM/password management platforms (Keeper, CyberArk, etc.) in hybrid environmentsHands-on Entra ID experience: SSO (SAML/OIDC), SCIM provisioning, Conditional AccessOn-prem AD/network experience for gateway-based privileged accessAWS experience: IAM, Secrets Manager equivalents, EC2/Lambda, Terraform/CloudFormation a plusScripting ability (Python, PowerShell, Keeper Commander CLI) for migration/automationSecurity certifications (Security+, CISSP, or Azure/AWS security certs) a plus, especially for federal engagements","company":"Conviso","rawCompany":"conviso","city":"Baltimore","state":"MD","isRemote":false,"isActive":false,"createdAt":"2026-07-15T09:53:33.418Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Security Implementation Engineer","description":"Keeper Security Implementation Engineer Location: Remote Duration: Full time Must have active Secret / Tier 5 Secret Security Clearance or higher.Role SummaryLeads the end-to-end implementation and rollout of the Keeper Security password/secrets management platform across a hybrid environment spanning Microsoft Entra ID, on-premises infrastructure, and AWS. Owns integration design, migration, and handoff to steady-state operations.Key ResponsibilitiesImplementation Planning: Assess current credential management practices across on-prem and AWS environments; design target-state Keeper architecture (vault structure, folder/sharing model, RBAC) aligned to hybrid identity model.Deployment: Install and configure Keeper Enterprise/Keeper Commander CLI; deploy Keeper Gateway on-prem (if using KeeperPAM) for connecting to internal systems, servers, and databases without exposing them directly to the internet.Entra ID Integration: Configure SSO via SAML/OIDC with Entra ID; set up SCIM provisioning for automated user/group lifecycle sync; align Conditional Access policies (MFA, device compliance) with Keeper login requirements.AWS Integration: Implement Keeper Secrets Manager for AWS workloads — EC2, Lambda, ECS/EKS — replacing hardcoded credentials and static IAM keys; integrate with CI/CD pipelines (CodePipeline/GitHub Actions) and infrastructure-as-code (Terraform/CloudFormation).QualificationsExperience implementing PAM/password management platforms (Keeper, CyberArk, etc.) in hybrid environmentsHands-on Entra ID experience: SSO (SAML/OIDC), SCIM provisioning, Conditional AccessOn-prem AD/network experience for gateway-based privileged accessAWS experience: IAM, Secrets Manager equivalents, EC2/Lambda, Terraform/CloudFormation a plusScripting ability (Python, PowerShell, Keeper Commander CLI) for migration/automationSecurity certifications (Security+, CISSP, or Azure/AWS security certs) a plus, especially for federal engagements","datePosted":"2026-07-15T09:53:33.418Z","dateModified":"2026-07-15T09:53:33.418Z","hiringOrganization":{"@type":"Organization","name":"Conviso","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Baltimore","addressRegion":"MD","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"b25c872b0c249339203ffaad"},"url":"https://jobsearcher.com/jobs/b25c872b0c249339203ffaad"}}