Verified today
Senior Domain Manager Cloud
About the role
Job Purpose To design, implement, operate, and govern enterprise-grade encryption key management, secrets management, and vault platforms across multi-cloud environments including Azure, AWS, GCP, Oracle Cloud, and IBM Cloud. The role involves supporting day-to-day cloud operations, resolving escalated issues, assisting in large-scale cloud migrations, and ensuring performance, security, and reliability of mission-critical workloads hosted on Azure. Duties and Responsibilities A- Minimum required Accountabilities for this role B- Additional Accountabilities pertaining to the role Major Challenges • Managing consistent encryption and secrets strategy across five different cloud providers • Ensuring high availability and low?latency access to vault services for mission?critical workloads • Handling key rotation and zero?downtime secrets updates for production systems • Meeting strict regulatory and audit requirements in financial services • Securing secrets across diverse runtimes: VMs, containers, Kubernetes, serverless, and legacy systems • Coordinating with multiple teams under tight delivery and security SLAs Required Qualifications and Experience a) Qualifications • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field • 7–10 years of overall IT experience with 5+ years in Cloud Security / Key Management b) Work Experience Key Management & Cryptography Strong hands?on experience with: • Azure Key Vault & Managed HSM • AWS KMS & CloudHSM • GCP Cloud KMS • OCI Vault • IBM Key Protect • Understanding of encryption algorithms, TLS, certificates, PKI, asymmetric/symmetric cryptography • CMK, BYOK, HYOK, envelope encryption patterns • Secrets & Vault Management • Secrets lifecycle management for: Database credentials • API keys, tokens, certificates • Application and platform secrets • HashiCorp Vault architecture, HA setup, and integrations (preferred) Cloud & Platform Integration • Kubernetes secrets integration (AKS, EKS, GKE, OKE) • Secure CI/CD integrations (Azure DevOps, Jenkins, GitHub Actions) • IAM, RBAC, workload identity, and least?privilege access Automation & DevSecOps • Infrastructure as Code using Terraform • Automation using Python, PowerShell, Bash • Policy as Code and security guardrails Monitoring, Audit & Compliance • Key usage logging, audit trails, alerting • Compliance mapping for PCI?DSS, ISO, SOC2, RBI guidelines • Incident management and root cause analysis (RCA)
What you’ll do
- Design, implement, operate, and govern enterprise-grade encryption key management, secrets management, and vault platforms across multi-cloud environments
- Support day-to-day cloud operations and resolve escalated issues
- Assist in large-scale cloud migrations ensuring performance, security, and reliability
- Manage encryption and secrets strategy across Azure, AWS, GCP, Oracle Cloud, and IBM Cloud
- Ensure high availability and low-latency access to vault services for mission-critical workloads
- Handle key rotation and zero-downtime secrets updates for production systems
- Meet regulatory and audit requirements in financial services
- Secure secrets across VMs, containers, Kubernetes, serverless, and legacy systems
What you’ll bring
- Bachelor’s degree in CS/IT/Cybersecurity or related
- 5+ years Cloud Security/Key Management experience
- Azure Key Vault & Managed HSM expertise
- AWS KMS & CloudHSM expertise
- GCP Cloud KMS expertise
- OCI Vault expertise
- IBM Key Protect expertise
- HashiCorp Vault architecture and HA setup
Skills
Education
Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field