Back to jobs
S
Hiring companySAP

Verified today

Non-Human Identities Management Engineer

Bangalore, KA, IN

About the role

SAP is seeking a Non-Human Identities (NHI) Management Engineer in Bangalore, KA, IN, to build and scale automated, secure, and self-service capabilities for managing non-human identities across enterprise environments. Day-to-day work includes designing automation frameworks for credential, secret, and certificate lifecycle governance; integrating secrets management platforms into CI/CD pipelines; developing discovery automation for unmanaged identities; engineering event-driven workflows for rotation and policy enforcement; building infrastructure-as-code patterns for vault provisioning; and enabling application teams through self-service onboarding. The role collaborates with security operations and engineering teams to automate incident response and enforce security best practices, continuously monitoring and validating NHI access. Work model is hybrid.

What you’ll do

  • Build and scale automated, secure, and self-service capabilities for managing non-human identities across enterprise environments
  • Design and implement automation frameworks that govern the full lifecycle of credentials, secrets, and certificates—ensuring secure, compliant, and efficient access for applications, services, and pip
  • Integrate secrets management platforms into CI/CD pipelines, enabling dynamic and secure secrets delivery at runtime
  • Develop automation to continuously discover unmanaged or misconfigured identities across cloud and on-prem landscapes, reducing risk and improving visibility
  • Engineer event-driven workflows for credential rotation, expiry management, and policy enforcement
  • Build infrastructure-as-code patterns to standardize vault provisioning and configuration
  • Enable application teams through self-service onboarding capabilities, accelerating adoption of secure secrets management without friction
  • Collaborate with security operations and engineering teams to automate incident response and enforce security best practices, ensuring NHI access is continuously monitored, validated, and aligned with

What you’ll bring

  • Proven experience in security engineering, DevSecOps, or IAM/PAM domains, with a focus on non-human identity and secrets management
  • Strong hands-on expertise with secrets management platforms (e.g., CyberArk, HashiCorp Vault, cloud-native secret managers) and their configuration (auth methods, policies, secrets engines)
  • Solid understanding of NHI lifecycle management including credential rotation, certificate management, and secure onboarding practices
  • Experience integrating secrets management into CI/CD pipelines and enabling secure, pipeline-native secret injection
  • Proficiency in automation and infrastructure-as-code tools (e.g., Terraform, scripting languages such as Python or Bash)
  • Experience with cloud platforms (AWS, Azure, GCP) and containerized environments (Kubernetes) in the context of identity and secrets security
  • Ability to design and implement automated workflows for discovery, rotation, policy enforcement, and compliance validation
  • Strong troubleshooting skills to resolve integration and deployment challenges across platforms and applications

Nice to have

  • Experience with security testing practices (including chaos testing or penetration testing support)
  • Exposure to event-driven architectures and orchestration tools

Skills

Secrets ManagementNon-Human IdentityCI/CD IntegrationInfrastructure as CodeAutomation FrameworksCloud PlatformsKubernetesEvent-Driven Workflows