API Security Lead Engineer

8 - 10 years

25 - 30 Lacs

Posted:2 days ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Job Summary:
You will focus on securing API interactions within an organisation, with a specific emphasis on using HashiCorp Vault for secrets management and access control. You will involve a blend of security engineering, architectural design, and leadership responsibilities. You will be also responsible for designing, implementing, and managing secure API access and secrets management solutions using HashiCorp Vault.

Your Responsibilities:
  • Designing and Implementing Vault Solutions: Architecting, deploying, and managing HashiCorp Vault for secure secrets management, identity-based access, and data encryption across different environments (cloud, on-premises).
  • Leading the design and implementation of secure API authentication, authorization, and data protection mechanisms, using Vaults capabilities for dynamic secrets, token management, and encryption as a service.
  • Secure API integrations across platforms, ensuring understanding of enterprise security standards and compliance requirements.
  • Manage secrets and credentials for applications, including policy enforcement and automated rotation.
  • Automate security configurations and enforcement across environments using infrastructure-as-code and configuration management tools.
  • Collaborate with DevOps, IAM, and application teams to embed security into the API lifecycle and CI/CD pipelines.
  • Conduct API security assessments, penetration testing, and remediation planning.
  • Monitor API traffic and logs for anomalies, and respond to incidents involving API.
  • Integrate HashiCorp Vault / CyberArk Vault with applications to secure API keys, tokens, and other credentials.
  • Develop and implement secure API authentication and authorization mechanisms using Vault.
  • Ensure data handling for API interactions.
The Essentials - You Will Have:
  • Bachelors / Masters Degree in computer science, software engineering, management information systems, or related field or equivalent relevant years of experience.
The Preferred - You Might Also Have:
  • Requires minimum 8-10 years of experience in Cyber Security, API Security Vault Management.
  • Hands-on experience with API security tools and platforms (e.g., MuleSoft, Apigee, or AWS API Gateway).
  • Experience with secrets management solutions (e.g., HashiCorp Vault, CyberArk Conjur).
  • Familiarity with configuration management and automation tools (e.g., SALT, Ansible, or Terraform).
  • Good exposure in OAuth2, OpenID Connect, JWT, and API gateway security patterns.
  • Experience with cloud-native environments (AWS, Azure, or GCP).
  • Proficiency in scripting and automation (e.g., Python, Bash, or YAML).
  • Security certifications (e.g., CISSP, CCSP, GIAC, or API-specific credentials).
  • Experience with container security and Kubernetes.

Mock Interview

Practice Video Interview with JobPe AI

Start Cyber Security Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now
Rockwell Automation logo
Rockwell Automation

Industrial Automation

Milwaukee

RecommendedJobs for You

hyderabad, ahmedabad, bengaluru