JOBSEARCHER

Security Implementation Engineer

Keeper Security Implementation Engineer Location: Remote Duration: Full time Must have active Secret / Tier 5 Secret Security Clearance or higher.Role SummaryLeads the end-to-end implementation and rollout of the Keeper Security password/secrets management platform across a hybrid environment spanning Microsoft Entra ID, on-premises infrastructure, and AWS. Owns integration design, migration, and handoff to steady-state operations.Key ResponsibilitiesImplementation Planning: Assess current credential management practices across on-prem and AWS environments; design target-state Keeper architecture (vault structure, folder/sharing model, RBAC) aligned to hybrid identity model.Deployment: Install and configure Keeper Enterprise/Keeper Commander CLI; deploy Keeper Gateway on-prem (if using KeeperPAM) for connecting to internal systems, servers, and databases without exposing them directly to the internet.Entra ID Integration: Configure SSO via SAML/OIDC with Entra ID; set up SCIM provisioning for automated user/group lifecycle sync; align Conditional Access policies (MFA, device compliance) with Keeper login requirements.AWS Integration: Implement Keeper Secrets Manager for AWS workloads — EC2, Lambda, ECS/EKS — replacing hardcoded credentials and static IAM keys; integrate with CI/CD pipelines (CodePipeline/GitHub Actions) and infrastructure-as-code (Terraform/CloudFormation).QualificationsExperience implementing PAM/password management platforms (Keeper, CyberArk, etc.) in hybrid environmentsHands-on Entra ID experience: SSO (SAML/OIDC), SCIM provisioning, Conditional AccessOn-prem AD/network experience for gateway-based privileged accessAWS experience: IAM, Secrets Manager equivalents, EC2/Lambda, Terraform/CloudFormation a plusScripting ability (Python, PowerShell, Keeper Commander CLI) for migration/automationSecurity certifications (Security+, CISSP, or Azure/AWS security certs) a plus, especially for federal engagements